1
strstr()函数:大小写敏感,用大写的PHP://来绕过过滤
/?page=PHP://filter/read=convert.base64-encode/resource=fl4gisisish3r3.php
2MRCTF2020_你能看懂音符吗
010查看,标识头错误修复
使用binwalk,音符解密https://www.qqxiuzi.cn/bianma/wenbenjiami.php?s=yinyue
3
动态调试:
运行程序就提示找不到LICENSE
IDA这题直接图形模式,F2下断点,F9运行跟着分支走
------要存在一个文件,并对文件的字数和内容做了点要求,满足就好
再运行程序就给出了flag

4Base64 Decoding
Base64编码的字符串:"SGVsbG8gQ1RGIQ=="------ "Hello CTF!"
5

熟悉写简单的python
v8 = "ebmarah"
v9 = ":\"AL_RT^L*.?+6/46"
v7 = 7
flag = ""
for i in range(0,len(v9)):
flag += chr(ord(v8[i%v7]) ^ ord(v9[i]))
print(flag)
1.11

写个python
v8 = "ebmarah"
v9 = ":\"AL_RT^L*.?+6/46"
v7 = 7
flag = ""
for i in range(0,len(v9)):
flag += chr(ord(v8[i%v7]) ^ ord(v6[i]))
print(flag)