20190929 (picoCTF 2019) === ###### tags: `Write-up`、`2019`、`九月`、`組內讀書會` [toc] # 會議紀錄 ## 時間地點 時間:2019/09/29 14:00 ~ 16:00 地點:逢甲大學 資電館 237 ## 出席成員 實體出席:可晴、飛飛、Amanda、Sarah 線上出席:CCC、威威、Bakery ## ![](https://i.imgur.com/tLxx6sR.png =50x ) picoctf.com picoCTF is a free computer security game targeted at middle and high school students, created by security experts at Carnegie Mellon University. # Write-up https://hackmd.io/@HG-CTF/r18K90ZFB ## 提問區 - mus1c - Points: 300 - https://2019shell1.picoctf.com/static/cec2afb810628ca35e9fcb031408a9dd/lyrics.txt - I wrote you a song. Put it in the picoCTF{} flag format - Hints : Do you think you can master rockstar? > [name=ddaa] 應該是按照歌詞把 Put xxx into ooo 進行替換, 替換到最後的就會是 flag - flag_shop - Points: 200 - There's a flag shop selling stuff, can you buy a flag? Source. Connect with nc 2019shell1.picoctf.com 60851. - Hints:Two's compliment can do some weird things when numbers get really big! > [name=ddaa] 題目跟敘述好像對不起來 (?), Worldwide 可能是把經緯度的地名當成文字之類的, flag_shop 有邏輯漏洞可以發大財 - Java Script Kiddie - Points: 400 - The image link appears broken...https://2019shell1.picoctf.com/problem/37330 or http://2019shell1.picoctf.com:37330 - Hints:This is only a JavaScript problem. picoCTF{FLAG}