当前位置:网站首页>《从0到1:CTFer成长之路》书籍配套题目(周更)
《从0到1:CTFer成长之路》书籍配套题目(周更)
2022-07-06 06:39:00 【借zj文章[de]BvxiE】
常见的搜集
放出提示:
使用dirbuster工具进行网页目录扫描,⼯具是kali⾃带,
cd /usr/share/dirbuster
java -jar DirBuster-1.0-RC1.jar
用URL Fuzz,可以指定目录,指定扫描admin目录下面的所有文件,dir代表字典的每一行
/admin/{dir}.php 这样就是爆破admin目录下所有php文件
或者
或者是 dirsearch 教程,
额,环境也查了,,,没扫出来,尝试自己直接做
/robots.txt

得到提示,访问可得:flag1:n1book{info_1
/index.php~

得到提示,访问可得:flag2:s_v3ry_im
.index.php.swp
会得到一个文件
这题看了wp,软件还是没整明白,过几天再试试。
粗心的小李

Git测试,使用GitHack脚本对其进行测试,教程!kali有自带的Git、Python2和Python3。转战虚拟机…主要我下半天GitHack,一直失败!
找到原因了!!!解决不了,四处查找资料发现还有一个工具scrabble可以代替它,教程链接!
在文件夹中打开终端,
./scrabble +网址
ls查看
cat +文件
SQL注入-1
找注入点,
边栏推荐
- 电子书-CHM-上线CS
- Biomedical localization translation services
- AI on the cloud makes earth science research easier
- How much is it to translate Chinese into English for one minute?
- What are the characteristics of trademark translation and how to translate it?
- Leetcode daily question (1997. first day where you have been in all the rooms)
- How much is the price for the seal of the certificate
- 成功解决TypeError: data type ‘category‘ not understood
- Is it difficult for girls to learn software testing? The threshold for entry is low, and learning is relatively simple
- Difference between backtracking and recursion
猜你喜欢

基于PyTorch和Fast RCNN快速实现目标识别

SQL Server manager studio(SSMS)安装教程

Chapter 7 - thread pool of shared model

如何做好金融文献翻译?

Market segmentation of supermarket customers based on purchase behavior data (RFM model)

Biomedical localization translation services

Financial German translation, a professional translation company in Beijing

医疗软件检测机构怎么找,一航软件测评是专家

SQL Server Manager studio (SSMS) installation tutorial

利用快捷方式-LNK-上线CS
随机推荐
Today's summer solstice
Bitcoinwin (BCW): 借贷平台Celsius隐瞒亏损3.5万枚ETH 或资不抵债
On the first day of clock in, click to open a surprise, and the switch statement is explained in detail
[ 英語 ] 語法重塑 之 動詞分類 —— 英語兔學習筆記(2)
成功解决TypeError: data type ‘category‘ not understood
Reflex WMS medium level series 3: display shipped replaceable groups
Advanced MySQL: Basics (1-4 Lectures)
How to convert flv file to MP4 file? A simple solution
Office-DOC加载宏-上线CS
Day 245/300 JS foreach data cannot be updated to the object after multi-layer nesting
云服务器 AccessKey 密钥泄露利用
Biomedical English contract translation, characteristics of Vocabulary Translation
Grouping convolution and DW convolution, residuals and inverted residuals, bottleneck and linearbottleneck
基于购买行为数据对超市顾客进行市场细分(RFM模型)
云上有AI,让地球科学研究更省力
Simple query cost estimation
Facebook AI & Oxford proposed a video transformer with "track attention" to perform SOTA in video action recognition tasks
Biomedical localization translation services
详解SQL中Groupings Sets 语句的功能和底层实现逻辑
Explain in detail the functions and underlying implementation logic of the groups sets statement in SQL