当前位置:网站首页>A snare - Cookie spoofing
A snare - Cookie spoofing
2022-06-12 10:25:00 【Free gift, juvenile】
Title Description :
Open the given link to get a very long string in the web page .

The code uses md5 Cracking failed , I don't know what the encoding method is . url Parameter transfer is generally done with base64 code .
About base64 Coding principle , You can check the details online , Here we can simply say that the three characters of the original text are replaced by four characters , The principle is :3 individual 8 Bits converted to 4 individual 6 digit , Every 6 The number of digits only indicates ‘a’~‘z’,'A'~'Z','0'~'9','+' and '\' , common 64 individual . So if the original character is not a multiple of three , You need to add at the end 1~2 individual ‘=’ character , It will be automatically removed when decoding . therefore base64 The number of characters after encoding is a multiple of four .
We see url Parameter is ZmxhZy50eHQ, The number of characters is 11, So when decoding, you need to add a... At the end of the string '=', Solve the original as “flag.txt” .

边栏推荐
- Golang start service background daemon
- Pagoda chevereto1.6.2 the latest version of stepping on the pit tutorial in Chinese
- See if you fall into the trap of "labeling" customers and users?
- 2021-02-22
- conda 安装tensorflow 测试tensorflow
- Basic use of scratch
- How to refund the pre-sale deposit of JD 618 in 2022? Can JD 618 deposit be refunded?
- Quickly build oncyber io
- MySQL 4 Database table storage structure & tablespace
- PHP: seven cattle cloud upload file
猜你喜欢

Add jar package under idea2018 web project

机器学习之数据处理与可视化【鸢尾花数据分类|特征属性比较】

2022京東618預售定金怎麼退?京東618定金能退嗎?

Redis (II) Memory mapped data structure

2022京东618预售定金怎么退?京东618定金能退吗?

properties中文乱码

1268_ Implementation of FreeRTOS task context switching

MySQL user and permission management, role management
![[CEGUI] resource loading process](/img/52/819843db21549b5e5031258f2c5cb0.jpg)
[CEGUI] resource loading process

验收标准到底是不是测试用例?
随机推荐
Detailed explanation and use of redis data types: key and string types
【ParquetEncodingException: empty fields are illegal, the field should be ommited completely instead
One test for twoorthree years, recording some thoughts on test exchange experience
The difference between static method locking and non static method locking
2. factory mode
2022京东618预售定金怎么退?京东618定金能退吗?
CONDA install tensorflow test tensorflow
Composer command
How to play the 618 super cat games on Taobao? Here comes the introduction to the overall activities of the Super Cat Games
How Qualcomm platform modifies special voltage
[DDS] dds-rpc implementation based on opendds
2021-03-26
[CEGUI] window environment compilation
93. obtain all IP addresses of the Intranet
Timers in golang
Checkpoint of the four cornerstones of Flink
Halcon combined with C # to detect surface defects -- affine transformation (III)
3. Abstract Factory
MySQL 7 affair
MySQL user and permission management, role management