theKnife-wp-by-DODOR


依旧简单题,先看题目image-20260131210447820

然后就根据hint用dirsearch来扫描可能的路径

dirsearch -u http://cloud-1.hgame.vidar.club:31708/ -e php,html,bak,txt,zip,jar -t 50

image-20260131210642340

得到后门的路径/php-backdoor.php,后用蚁剑连接,发现文件列表中的flag。image-20260131210802887

得到flag。


Author: DODOR
Reprint policy: All articles in this blog are used except for special statements CC BY 4.0 reprint policy. If reproduced, please indicate source DODOR !
  TOC