当前位置:网站首页>全国大学生信息安全赛创新实践赛初赛---misc(永恒的夜)
全国大学生信息安全赛创新实践赛初赛---misc(永恒的夜)
2022-07-06 02:36:00 【爱喝旺仔的旺旺】
紧张的期末总算结束了,正好有时间总结一下前段时间比赛的一个misc题目,层层套娃非常有意思。
题目附件:
链接:https://pan.baidu.com/s/1lZ6YCyyY3hdMx2_ymLlsyA
提取码:viy2
--来自百度网盘超级会员V1的分享
拿到图片,老规矩用010打开文件:
在文件的最后发现一串异常的数据
题目提示这个题是lsb隐写
上工具分析一下图片的色道
在这个色道发现了一串类似摩斯密码的东西
分析对应色道的文件找到这串密文
题目还提示了一点使用password的lsb隐写,联想到github上的一个项目cloacked-pixel
项目地址:GitHub - livz/cloacked-pixel: LSB steganography and detection
利用a2通道当中的信息读取出当中隐藏的信息输出为一个txt文档
打开txt文档
pk文件头 明显为压缩包 修改文件后缀为zip 提示有密码
这时我们联想到一开始图片最后的那串数据 尝试各种解密方式 最后用md5解出
得到最后的解压密码
解压 得到一张图片
无法打开 提示文件损坏
这里常规思路是根据crc爆破出图片的正确宽高,让图片正常解析。这里用了一个比较取巧的方式
修改图片名为flag.data 再用gimp打开图片 调整宽度即可得到最后的flag
边栏推荐
- HDU_p1237_简单计算器_stack
- Is there a case where sqlcdc monitors multiple tables and then associates them to sink to another table? All operations in MySQL
- [Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 18
- 高数_向量代数_单位向量_向量与坐标轴的夹角
- 剑指 Offer 30. 包含min函数的栈
- Sword finger offer 30 Stack containing min function
- 零基础自学STM32-复习篇2——使用结构体封装GPIO寄存器
- I changed the driver to 5.1.35, but it is still the same error. I can succeed even now, but I will report this every time I do an SQL operation
- [Wu Enda machine learning] week5 programming assignment EX4 - neural network learning
- [Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 15
猜你喜欢
剑指 Offer 30. 包含min函数的栈
Zero foundation self-study STM32 - Review 2 - encapsulating GPIO registers with structures
Structural theme model (I) STM package workflow
Pat grade a 1033 to fill or not to fill
LeetCode 103. Binary tree zigzag level order transverse - Binary Tree Series Question 5
[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 22
2022 edition illustrated network pdf
Microsoft speech synthesis assistant v1.3 text to speech tool, real speech AI generator
[untitled] a query SQL execution process in the database
Yyds dry inventory comparison of several database storage engines
随机推荐
High number_ Vector algebra_ Unit vector_ Angle between vector and coordinate axis
一个复制也能玩出花来
[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 14
[Digital IC manual tearing code] Verilog asynchronous reset synchronous release | topic | principle | design | simulation
[postgraduate entrance examination English] prepare for 2023, learn list5 words
DDoS "fire drill" service urges companies to be prepared
Patch NTP server at the beginning of DDoS counterattack
Li Kou today's question -729 My schedule I
RobotFramework入门(三)WebUI自动化之百度搜索
Pat grade a 1033 to fill or not to fill
好用的 JS 脚本
【MySQL 15】Could not increase number of max_ open_ files to more than 10000 (request: 65535)
Large scale DDoS attacks take Myanmar offline
Multiple solutions to one problem, asp Net core application startup initialization n schemes [Part 1]
Data preparation
剑指 Offer 30. 包含min函数的栈
【MySQL 15】Could not increase number of max_open_files to more than 10000 (request: 65535)
sql表名作为参数传递
[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 16
[matlab] access of variables and files