Hi

ThinkPHP5 utilizes WebSocket to achieve site-wide announcement push

Original link: https://5ime.cn/ws-notify.html WebSocket is a protocol for full-duplex communication over a single TCP connection, allowing the server to actively push data to the client. Recently, I was developing the公告实时推送in MoeCTF . I originally wanted to implement it through轮询, but after thinking about轮询, the client actively sends requests to the server. If a single user

ThinkPHP5 utilizes WebSocket to achieve site-wide announcement push Read More »

The development road of MoeCTF from 0

Original link: https://5ime.cn/moectf.html The most familiar language PHP was used for platform development, and finally ThinkPHP was used for development. The back-end all returned JSON data, and the front-end rendered pages in real time through ajax , which took nearly a week of development. Since MoeCTF is positioned as a (small) team ‘s internal training

The development road of MoeCTF from 0 Read More »

Shandong Province Network and Information Security and Management Administrator Vocational Skills Competition Writeup

Original link: https://5ime.cn/2022-sd.html Web Open the environment comment prompts to access robots.txt After accessing robots.txt , you will get two files source.php and flag.php . Accessing source.php prompts post to pass admin Just tried the commit and got only 127.0.0.1 can get the flag!! 1 admin = 1 Simply fuzz it, add the X-Client-ip header

Shandong Province Network and Information Security and Management Administrator Vocational Skills Competition Writeup Read More »

Guan’an Cup 2022 Writeup

Original link: https://5ime.cn/isg-2022.html There are many things to do at the beginning of the school, and the time of Guan’an and Wangding perfectly coincides, and it is simple to paddle. Misc DISG Hacker Li Ming edited an important file on his disk and deleted it immediately. We got his disk image file. Can you help

Guan’an Cup 2022 Writeup Read More »

Net Ding Cup 2022 Writeup

Original link: https://5ime.cn/wangdingcup-2022.html There are many things to do at the beginning of school, and the time of Wangding and Guan’an coincide perfectly, and it is simple to paddle. Crypto crypto091 Xiao A mustered up the courage to ask the goddess for a phone number, but the goddess must test him. The goddess said she

Net Ding Cup 2022 Writeup Read More »

The 6th Strong Net Cup Writeup

Original link: https://5ime.cn/qwb-2022.html write in front The Qiangwang Cup is not badly called the Strong Pwn Cup, with 17 Pwn questions. I don’t know what happened in previous years. There are many recurring CVE questions this year. I don’t know whether other questions have CVE. 1 2 3 myJWT CVE- 2022 – 21449 WP -UM

The 6th Strong Net Cup Writeup Read More »

Power Cup 2022 Writeup

Original link: https://5ime.cn/qgb-2022.html write in front I feel that the competition experience is average. It is understandable that after all, this competition is the first time. The sign-in question was squatted on time at 8:59 , and the sign-in question was only at 9:01 ? ! At first I thought there was no sign in

Power Cup 2022 Writeup Read More »

PHP simulates comments to generate short URLs for Weibo t.cn

Original link: https://5ime.cn/sinaurl.html In fact, as early as 2018年I wrote that PHP calls Sina API to generate short URLs , but 2020年Weibo released an announcement on the implementation of the external chain whitelist mechanism on the Weibo platform , restricting that only白名单内域名can be generated normally. , the非白名单域名jump will show a prompt message, and you can

PHP simulates comments to generate short URLs for Weibo t.cn Read More »