defense-in-depth
·
CTF Write Up/b01lers CTF
코드 분석더보기app.pyBLACKLIST 필터링, EXPLAIN QUERY PLAN 쿼리로 WAF가 걸려있다.@app.route('/info/', methods=['GET'])def get_user_info(name): if len(name) > 100: return jsonify({"Message": "Why the long name? Are you Tung Tung Tung Tung Tung Tung Tung Sahua????"}), 403 try: db = get_db() cursor = db.cursor() except Exception: print(traceback.format_exc()) return jsonify..