点击此处获得更好的阅读体验
WriteUp来源
by anishbadhri
题目描述
This is a super secure portal with a really unusual HTML file. Try to login.
题目考点
解题思路
In the sourcecode, an unreadable script is at the end. The javascript code can be deobfuscated to an extent with http://www.jsnice.org/. The script still has a lot of useless functions. On replacing all necessary values into the corresponding locations, we get a final script of
1 | window["localStorage"]["setItem"]("9-12", "BE*"); |
From here, its clearly visible that that the password is just rearranging this into increasing order of key. On entering the password, the flag is obtained.
Password: 5W$Fbb=+nBE*pg4t^7M
Flag
1 | csictf{l3t_m3_c0nfus3_y0u} |