From 6e9bf5f026bfae02f93f579bd361fd41c6a08b55 Mon Sep 17 00:00:00 2001 From: s0uthwood Date: Tue, 18 Apr 2023 19:18:27 +0800 Subject: [PATCH] Update BUAACTF2023 checkin flag --- .DS_Store | Bin 0 -> 6148 bytes index.html | 2 +- index.xml | 2 +- page/2/index.html | 2 +- page/about/index.html | 9 +++++---- page/index.xml | 2 +- page/search/index.json | 2 +- scss/style.min.css | 2 +- 8 files changed, 11 insertions(+), 10 deletions(-) create mode 100644 .DS_Store diff --git a/.DS_Store b/.DS_Store new file mode 100644 index 0000000000000000000000000000000000000000..f1acf6e8d5a281990f82235a63f717e3fd6d2e69 GIT binary patch literal 6148 zcmeHK%}T>S5Z-O8O({YS3Oz1(E!fr~h?fxS3mDOZN=-3(nuHD8u{u+`w_cwPM}09Ik2Za= zJ|7MGVth86cw@ee6&cI&fRI!A_05L!e z5Cgl%fH@1S?(UUN6%zx*zz+=I{ve>0lQo&M{bO)ai_?m0=#Ua`kxOYIU#+70$S$k$Pf)7^pMQ)I%H3|10=q zwm$OfDKsJmh=G5`0B=pai3>%Uv-Mkfc-9JNPtZ^>u0#a{^x7o=2Dp#(lvDc!>JaA` WEH&aRXjkcgbP-U5P)7{>0s~(a(o6&Z literal 0 HcmV?d00001 diff --git a/index.html b/index.html index 8c02b08..1be6ce0 100644 --- a/index.html +++ b/index.html @@ -1,7 +1,7 @@ - + or4nge diff --git a/index.xml b/index.xml index 375c2bc..c108bba 100644 --- a/index.xml +++ b/index.xml @@ -265,7 +265,7 @@ flag2通过这种方式获取:</p> </figure> 发现yso里正好有一个现成的</p> -<pre tabindex="0"><code>Spring2 @mbechler spring-core:4.1.4.RELEASE, spring-aop:4.1.4.RELEASE, aop +<pre tabindex="0"><code>Spring2 @mbechler spring-core:4.1.4.RELEASE, spring-aop:4.1.4.RELEASE, aop alliance:1.0, commons-logging:1.2 </code></pre><p>就想当然的去复现spring2的链子,后来发现spring版本对不上已经来不及了。 fastjson最经典的部分是自动触发getter来getProperties加载字节码,如何触发getter可以通过JSON.parse触发,也可以通过toJSONString触发,很有意思的是JSON这个类的tostring就是toJSONString diff --git a/page/2/index.html b/page/2/index.html index 96108fe..b34980e 100644 --- a/page/2/index.html +++ b/page/2/index.html @@ -1,7 +1,7 @@ - + or4nge diff --git a/page/about/index.html b/page/about/index.html index 36c38af..3ded081 100644 --- a/page/about/index.html +++ b/page/about/index.html @@ -2,7 +2,7 @@

About

or4nge 战队成立于2020年,由北京航空航天大学赛博安全协会的小伙伴组成。

-

Members

+
BUAACTF{W3lc0m3_t0_BUAACTF2023_3NjoY_l-l@ck1ng!}
+

Members

Captains