当前位置:网站首页>《从0到1:CTFer成长之路》书籍配套题目(周更)
《从0到1:CTFer成长之路》书籍配套题目(周更)
2022-07-06 06:39:00 【借zj文章[de]BvxiE】
常见的搜集
放出提示:
使用dirbuster工具进行网页目录扫描,⼯具是kali⾃带,
cd /usr/share/dirbuster
java -jar DirBuster-1.0-RC1.jar
用URL Fuzz,可以指定目录,指定扫描admin目录下面的所有文件,dir代表字典的每一行
/admin/{dir}.php 这样就是爆破admin目录下所有php文件
或者
或者是 dirsearch 教程,
额,环境也查了,,,没扫出来,尝试自己直接做
/robots.txt

得到提示,访问可得:flag1:n1book{info_1
/index.php~

得到提示,访问可得:flag2:s_v3ry_im
.index.php.swp
会得到一个文件
这题看了wp,软件还是没整明白,过几天再试试。
粗心的小李

Git测试,使用GitHack脚本对其进行测试,教程!kali有自带的Git、Python2和Python3。转战虚拟机…主要我下半天GitHack,一直失败!
找到原因了!!!解决不了,四处查找资料发现还有一个工具scrabble可以代替它,教程链接!
在文件夹中打开终端,
./scrabble +网址
ls查看
cat +文件
SQL注入-1
找注入点,
边栏推荐
- Delete external table source data
- [English] Verb Classification of grammatical reconstruction -- English rabbit learning notes (2)
- Data security -- 13 -- data security lifecycle management
- Database basics exercise part 2
- Simple use of MySQL database: add, delete, modify and query
- Fedora/REHL 安装 semanage
- Modify the list page on the basis of jeecg boot code generation (combined with customized components)
- Map of mL: Based on the adult census income two classification prediction data set (whether the predicted annual income exceeds 50K), use the map value to realize the interpretable case of xgboost mod
- A 27-year-old without a diploma, wants to work hard on self-study programming, and has the opportunity to become a programmer?
- 基于购买行为数据对超市顾客进行市场细分(RFM模型)
猜你喜欢

Lesson 7 tensorflow realizes convolutional neural network

How to do a good job in financial literature translation?

机器学习植物叶片识别

Modify the list page on the basis of jeecg boot code generation (combined with customized components)

电子书-CHM-上线CS

女生学软件测试难不难 入门门槛低,学起来还是比较简单的

Fedora/rehl installation semanage

论文翻译英译中,怎样做翻译效果好?
![[English] Grammar remodeling: the core framework of English Learning -- English rabbit learning notes (1)](/img/02/41dcdcc6e8f12d76b9c1ef838af97d.png)
[English] Grammar remodeling: the core framework of English Learning -- English rabbit learning notes (1)

Monotonic stack
随机推荐
Market segmentation of supermarket customers based on purchase behavior data (RFM model)
Office-DOC加载宏-上线CS
如何做好互联网金融的英语翻译
Chapter 7 - thread pool of shared model
详解SQL中Groupings Sets 语句的功能和底层实现逻辑
Distributed system basic (V) protocol (I)
What is the difference between int (1) and int (10)? Senior developers can't tell!
Every API has its foundation when a building rises from the ground
Number of query fields
SAP SD发货流程中托盘的管理
LeetCode - 152 乘积最大子数组
Reflex WMS中阶系列3:显示已发货可换组
翻译公司证件盖章的价格是多少
成功解决AttributeError: Can only use .cat accessor with a ‘category‘ dtype
电子书-CHM-上线CS
钓鱼&文件名反转&office远程模板
Explain in detail the functions and underlying implementation logic of the groups sets statement in SQL
MySQL high frequency interview 20 questions, necessary (important)
Call, apply, bind rewrite, easy to understand with comments
The ECU of 21 Audi q5l 45tfsi brushes is upgraded to master special adjustment, and the horsepower is safely and stably increased to 305 horsepower