Author:颖奇L'Amore Blog:www.gem-love.com This CTF made me learn a new XSS+SSRF trick, thanks for p4 team. WEB - My Cats HAI! WANNA SEE MAI KATZ? OR MAYBE YOU WANNA SEE SOM FLAG?…
Author:颖奇L'Amore Blog:www.gem-love.com 比赛地址:https://2020.angstromctf.com/ WEB The Magic Word 考点:inspect element 打开之后是个单页面,查看元素发现如下代码: var msg = document.getElementById("magic"…
Author:颖奇L'Amore Blog:www.gem-love.com 日本的比赛,比赛时间和XCTF完美重合,XCTF就全程自闭,这个比赛也全程自闭 Can you guess it? (338pt) 这题挺好玩的,上来就可以得到源码: <?php include 'config.php'; // FLAG is defined in…