当前位置:网站首页>Answer to the second stage of the assignment of "information security management and evaluation" of the higher vocational group of the 2018 Jiangsu Vocational College skills competition
Answer to the second stage of the assignment of "information security management and evaluation" of the higher vocational group of the 2018 Jiangsu Vocational College skills competition
2022-07-07 06:59:00 【Wangzai sec】
Standard for evaluation
- The file contains vulnerability attack and defense
- flag{707aldu7lz} 20 branch
Through the audit code , structure url, obtain flag

- flag{yps4fg13zb} 20 branch
adopt php Input stream execution php Code , Get all files in the current directory

- Flag{@jtcm5skp} 20 branch

Read the encrypted source code , And then use hackbar Decrypt , obtain flag
- flag{g61n2lr7lp} 20 branch
View the files in the current directory , Find out flag.zip

Get current directory path , by c:\www

Read... In the compressed file zip.txt file

- stay xp To create a txt file , Write the following code 10 branch


Because it is forbidden to include url With medium http, So build ftp To include 10 branch
- Web Penetration test
- flag{password is admin123} 20 branch


- flag{right backstage} 20 branch
- flag{upload successfully} 20 branch

- flag{Good Job} 20 branch

- flag{dcn$} 20 branch

- ARP Protocol security attack and defense
- arp –a see kali and DCFW Of ip And mac 20 branch

- launch ARP Spoofing After the attack ,arp –a see kali and DCFW Of ip And mac, Find out ip Different ,mac identical 20 branch
- echo 1 > /proc/sys/net/ipv4/ip_forward Open the forward 5 branch
![]()
Catch post package , Get the plaintext account password 15 branch
- Open under the global situation am enable 5 branch
Enter the configuration under the interface :
am port 5 branch
am mac-ip-pool MAC IP 10 branch

- Proceed again arp cheating , then mac No change 20 branch
Four . Mission 4 CTF
1)Flag{W31c0met0j51t} 20 branch

2) Flag{tr1pl3k1ll} 30 branch
find flag word 10 branch

Successfully found flag{tr1pl3k1ll} 20 branch

3) Flag{14mWh1t3H4t} 50 branch
Put the picture in Binwalk View in 10 branch

Base64 Decrypt 10 branch
Rot13 Decrypt , obtain Flag 30 branch

边栏推荐
- 【NOI模拟赛】区域划分(结论,构造)
- This article introduces you to the characteristics, purposes and basic function examples of static routing
- Stack and queue-p79-10 [2014 unified examination real question]
- Config distributed configuration center
- ESXI挂载移动(机械)硬盘详细教程
- Cloudcompare point pair selection
- [noi simulation] regional division (conclusion, structure)
- Jetpack compose is much more than a UI framework~
- Which foreign language periodicals are famous in geology?
- LVS+Keepalived(DR模式)学习笔记
猜你喜欢

How to install swoole under window

多个kubernetes集群如何实现共享同一个存储

网络基础 —— 报头、封装和解包

MySQL的主从复制原理

当前发布的SKU(销售规格)信息中包含疑似与宝贝无关的字

【NOI模拟赛】区域划分(结论,构造)

2018年江苏省职业院校技能大赛高职组“信息安全管理与评估”赛项任务书

Prompt for channel security on the super-v / device defender side when installing vmmare

大促过后,销量与流量兼具,是否真的高枕无忧?

Jetpack compose is much more than a UI framework~
随机推荐
Config distributed configuration center
String (explanation)
什么情况下考虑分库分表
工具类:对象转map 驼峰转下划线 下划线转驼峰
Navicat importing 15g data reports an error [2013 - lost connection to MySQL server during query] [1153: got a packet bigger]
品牌·咨询标准化
ViewModelProvider.of 过时方法解决
Learning notes | data Xiaobai uses dataease to make a large data screen
Initial experience of addresssanitizer Technology
Big coffee gathering | nextarch foundation cloud development meetup is coming
from .onnxruntime_pybind11_state import * # noqa ddddocr运行报错
MySQL (x)
.net core 访问不常见的静态文件类型(MIME 类型)
【mysqld】Can't create/write to file
MySql用户权限
Can't you really do it when you are 35 years old?
企业如何进行数据治理?分享数据治理4个方面的经验总结
服装门店如何盈利?
oracle如何备份索引
企業如何進行數據治理?分享數據治理4個方面的經驗總結