Writeup 4 N1BOOK 常见的搜集

Writeup 4 N1BOOK 常见的搜集

访问:

http 复制代码
http://challenge-207524c33423218f.sandbox.ctfhub.com:10800/robots.txt

页面显示:

复制代码
User-agent: *
Disallow:
/flag1_is_her3_fun.txt

继续访问:

http 复制代码
http://challenge-207524c33423218f.sandbox.ctfhub.com:10800/flag1_is_her3_fun.txt

页面显示:

复制代码
flag1:n1book{info_1

拿到 1/3 的 flag。

访问:

http 复制代码
http://challenge-207524c33423218f.sandbox.ctfhub.com:10800/index.php~

页面显示:

复制代码
敏感文件
Hello, CTFer!

信息搜集之所以重要,是因为其往往会带给我们一些意想不到的东西

hack fun

flag2:s_v3ry_im 

拿到 2/3 的 flag。

访问:

http 复制代码
http://challenge-207524c33423218f.sandbox.ctfhub.com:10800/.index.php.swp

浏览器自动下载文件:index.php.swp

用记事本打开,查找 flag,得到:

php 复制代码
<?php echo 'flag3:p0rtant_hack}';?>

拿到 3/3 的 flag。

拼接在一起,得到最终的 Flag:

复制代码
n1book{info_1s_v3ry_imp0rtant_hack}

Rambo

2026年10月07日

🎉🎉🎉

相关推荐
hengdonghui1 天前
Writeup 4 N1BOOK SQL注入-1
ctf·sql注入·union·字符型注入
hengdonghui2 天前
Writeup 4 红帽杯 2021 WebsiteManger
web·ctf·ssrf·sql布尔盲注
hengdonghui4 天前
Writeup 4 2020 - 之江杯 - 异常的流量分析
wireshark·ctf·流量分析
hengdonghui4 天前
Writeup 4 津门杯 2021 Web hate_php
php·web·ctf·通配符
hengdonghui4 天前
Writeup 4 红帽杯 2021 Web Find_It
web·ctf·备份文件泄露
hengdonghui5 天前
Writeup 4 强网杯 2019 强网先锋打野
ctf·misc·zsteg
hengdonghui5 天前
Writeup 4 NUAA 2017 robots
android·ctf·re
hengdonghui6 天前
Writeup 4 CSS CTF Semester 2 2026 - Lamp Drill
ctf·re
hengdonghui6 天前
Writeup 4 CSS CTF Semester 2 2026 Cryptography Chrono I
ctf·维吉尼亚密码·crypto