杂项

[GXY]Baby nc(判断数大小)

Posted on 2020-01-27,1 min read
from pwn import *
context.log_level='debug'
r=remote("183.129.189.60",10014)
flag='34028236692093846346337460'
for a in range(10):
    for i in range(10):
    	guess=str(flag)+str(i)+(27-1-len(flag))*'0'
        r.sendline(guess)
        result=r.recv(10)
        if 'big' in result:
            flag+=str(i-1)
            break
        if i==9 and 'small' in result:
            flag+='9'
            break
    print(flag)

脚本如下
运行到一般会报错。就将输出的flag替换掉脚本中的flag
在修改最后一位时。会爆出flag

下一篇: LCTF bestphp’s revenge(SOAP反序列化)→