当前位置:网站首页>Part of the second Shanxi Network Security Skills Competition (Enterprise Group) WP (VI)
Part of the second Shanxi Network Security Skills Competition (Enterprise Group) WP (VI)
2022-07-20 21:15:00 【Dish @ just one word】
Preface
I had the pleasure of attending 2022 The competition of the enterprise group of the second network security skills competition in Shanxi Province , This is the first time to participate ctf match , In order to accumulate practical experience , The ranking is a little unexpected .
Tips : The following is the main body of this article .
One 、 subject
subject :
Miscellaneous questions , Violent attachment .
The attachment :
Violent attachment .docx
Two 、 The problem solving steps
1. Their thinking
Open the document and prompt for the password , No other hints were found . The combination title should be the blasting password . adopt office2join Calculating the hash value , Reuse hashcat Hanging dictionary explosion .
2. The problem solving process
stay kali Find office2join The location of , Computing documents hash value .
┌──(kali㉿kali)-[/usr/share/john]
└─$ python3 office2john.py /home/kali/sharedir/ Violent attachment .docx 1 ⨯
Violent attachment .docx:$office$*2007*20*128*16*51111afe3dcf9f849d17e7d2c2943a11*2452d40ae102d796bd9d4afe2ecc923b*12f7b759047f3ccfc8ac147c08d952ea37557704
Remove the file name , Generate file.hash file
┌──(kali㉿kali)-[~/sharedir]
└─$ cat file.hash
$office$*2007*20*128*16*51111afe3dcf9f849d17e7d2c2943a11*2452d40ae102d796bd9d4afe2ecc923b*12f7b759047f3ccfc8ac147c08d952ea37557704
Use hashcat Hang up the dictionary to crack
┌──(kali㉿kali)-[~/sharedir]
└─$ hashcat -m 9400 -a 0 file.hash rockyou.txt
The result of the explosion
$office$*2007*20*128*16*51111afe3dcf9f849d17e7d2c2943a11*2452d40ae102d796bd9d4afe2ecc923b*12f7b759047f3ccfc8ac147c08d952ea37557704:2345
Session..........: hashcat
Status...........: Cracked
Hash.Name........: MS Office 2007
Hash.Target......: $office$*2007*20*128*16*51111afe3dcf9f849d17e7d2c29...557704
Time.Started.....: Sun Jul 17 23:40:28 2022 (3 mins, 24 secs)
Time.Estimated...: Sun Jul 17 23:43:52 2022 (0 secs)
Guess.Base.......: File (rockyou.txt)
Guess.Queue......: 1/1 (100.00%)
Speed.#1.........: 945 H/s (5.24ms) @ Accel:1024 Loops:64 Thr:1 Vec:8
Recovered........: 1/1 (100.00%) Digests
Progress.........: 192512/14344385 (1.34%)
Rejected.........: 0/192512 (0.00%)
Restore.Point....: 188416/14344385 (1.31%)
Restore.Sub.#1...: Salt:0 Amplifier:0-1 Iteration:49984-50000
Candidates.#1....: becky21 -> 083081
Status Tips Cracked, Indicates that the password has been successfully cracked , Turn up , You can see the following :
$office$*2007*20*128*16*51111afe3dcf9f849d17e7d2c2943a11*2452d40ae102d796bd9d4afe2ecc923b*12f7b759047f3ccfc8ac147c08d952ea37557704:2345
The red background part is the cracked password .
Input password , open WORD file , There is a hint :Flag Just below
Remove the blocked picture ,flag Present form !
flag{9c2965fa13be342b8e70a50410bc76bd}
3、 ... and 、 summary
It was not solved during the game , The idea has been , But the lack of office2join( Offline competition ), So I gave up .
When the game is resumed , Find out kali The file itself , File path :/usr/share/john.
边栏推荐
猜你喜欢
【开发教程5】疯壳·ARM功能手机-串口实验教程
pytest+yaml框架环境配置和使用教程
IMG failed to load the image, showing the oneror event accounting for the bitmap
DNS principle and configuration
如何保障 MySQL 和 Redis 的数据一致性?
Seata 多语言体系建设
Animation, and basic use of animation
安全浏览器怎么安装蓝色书签插件?
Easy gene chip SEQ analysis method: practical workflow and advanced applications
数据分布优化:如何应对数据倾斜?
随机推荐
【组合逻辑电路】——通用译码器
DNS principle and configuration
Solution to the first game of 2022 Hangzhou Electric Multi school league
cookie增删改查和异常
数据库设计流程
数字经济时代下如何满足多种云环境安全需求?
DBC2000是什么?DBC2000数据库文件详解
毕设项目系列教程-智慧校园管理系统
Mktdt02 txt
[combinational logic circuit] - display decoder
对Coinbase中长期前景的冷静评估
HTC全新VR一体机Vive Focus Plus发布:定价5699元!
Anaconda安装Jupyter
A review of the latest introduction to neural data compression
數字經濟時代下如何滿足多種雲環境安全需求?
QT下载安装教程
2022杭电多校联赛第一场 题解
生成器的使用原则及方法以及利用生成器实现简易项目(内含详细解说传参问题)
shell之nohup后台运行
Ajout, suppression, modification et exception de cookies