<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0"><channel><title>PHP无字母数字 | baozongwi's blog</title><link>https://baozongwi.xyz/tags/php%E6%97%A0%E5%AD%97%E6%AF%8D%E6%95%B0%E5%AD%97/</link><description>Currently exploring Java security and internal network penetration, with CTFs as a hobby.</description><generator>Hugo</generator><language>zh-cn</language><item><title>shuangyuCTF2024</title><link>https://baozongwi.xyz/p/shuangyuctf2024/</link><pubDate>Sun, 06 Oct 2024 20:29:53 +0000</pubDate><guid>https://baozongwi.xyz/p/shuangyuctf2024/</guid><description>0x01 这次打的不舒服，总感觉奇奇怪怪 0x02 question web签到 查看源码可得 shuangyuCTF-web1 &lt;?php highlight_file('index.php'); // 密码锁PHP代码 // 这是一个超级复杂的密码生成函数（其实并不复杂） function …</description></item><item><title>记一次RCE</title><link>https://baozongwi.xyz/p/rce-case-study/</link><pubDate>Fri, 09 Aug 2024 17:30:24 +0000</pubDate><guid>https://baozongwi.xyz/p/rce-case-study/</guid><description>0x01 前言 今天随便搞了一个比赛,结果吧,我勒个刚,第一个RCE就绕不出来 0x02 action &lt;?php error_reporting(0); highlight_file(__FILE__); function count_string_char($str) { $arr = []; foreach …</description></item></channel></rss>