当前位置:网站首页>攻防世界 MISC 进阶区 Ditf
攻防世界 MISC 进阶区 Ditf
2022-07-04 22:17:00 【春风拂槛露华浓。】
Ditf
题目给了个02的图片(好耶,是老婆!)
先用stegsolve打开看看
左右点没有发现
看看format
一点就卡死,试了几次,应该是图片问题
把图片放kali里打开
CRC error
那肯定就是宽高有问题喽
将高度04改成05
图片上出现字符
StRe1izia
尝试后发现并不是flag,那应该就是解压什么的密码
用binwalk查看是否有文件包含
有rar压缩包
将修改过高度的图片(原图解压会报错)用kali foremost 分离
解压outpu里rar文件夹里的压缩包
用大鲨鱼打开,第一步先搜索flag
无果
既然和图片有关,搜索png
往下翻
追踪kiss.png这个包的http流

ZmxhZ3tPel80bmRfSGlyMF9sb3YzX0ZvcjN2ZXJ9
是base64加密
解密https://base64.us/
得到flag
flag{
Oz_4nd_Hir0_lov3_For3ver}
边栏推荐
- TLA+ 入门教程(1):形式化方法简介
- sobel过滤器
- PostgreSQL server programming aggregation and grouping
- [the 2023 autumn recruitment of MIHA tour] open [the only exclusive internal push code of school recruitment eytuc]
- How to reset the password of MySQL root account
- PostgreSQLSQL高级技巧透视表
- 力扣_回文数
- Li Kou 98: verify binary search tree
- UML diagram memory skills
- [cooking record] - stir fried 1000 pieces of green pepper
猜你喜欢

SPSS installation and activation tutorial (including network disk link)

Google Earth Engine(GEE)——Tasks升级,实现RUN ALL可以一键下载任务类型中的所有影像

It is said that software testing is very simple, but why are there so many dissuasions?

达梦数据凭什么被称为国产数据库“第一股”?

2022-07-04: what is the output of the following go language code? A:true; B:false; C: Compilation error. package main import “fmt“ func main() { fmt.Pri

业务太忙,真的是没时间搞自动化理由吗?

Locust性能测试 —— 环境搭建及使用

PMO: compare the sample efficiency of 25 molecular optimization methods

Locust performance test - environment construction and use

Xiangjiang Kunpeng joined the shengteng Wanli partnership program and continued to write a new chapter of cooperation with Huawei
随机推荐
[cooking record] - stir fried 1000 pieces of green pepper
醒悟的日子,我是怎么一步一步走向软件测试的道路
The table is backed up in ODPs. Why check m in the metabase_ Table, the logical sizes of the two tables are inconsistent, but the number of
Li Kou 98: verify binary search tree
Practice and principle of PostgreSQL join
安装人大金仓数据库
业务太忙,真的是没时间搞自动化理由吗?
md5工具类
抖音实战~评论数量同步更新
Postgresqlql advanced skills pivot table
Detailed explanation of flask context
Energy momentum: how to achieve carbon neutralization in the power industry?
MySQL storage data encryption
繁華落盡、物是人非:個人站長該何去何從
PostgreSQLSQL高级技巧透视表
Prosperity is exhausted, things are right and people are wrong: where should personal webmasters go
Wake up day, how do I step by step towards the road of software testing
leetcode 72. Edit distance edit distance (medium)
Business is too busy. Is there really no reason to have time for automation?
LOGO特训营 第三节 首字母创意手法