htb chase題發(fā)現(xiàn)很多知識(shí)盲點(diǎn)
1.wireshark follow 可以看會(huì)話,原來(lái)做某一ctf網(wǎng)站時(shí)用過(guò),忘記了。
2.red team工具集:
https://www.ired.team/offensive-security/defense-evasion/downloading-file-with-certutil
其實(shí)自己也從wireshark包中獲取到了密文,一直沒(méi)找到合適的解包工具,
3.解包工具
https://gchq.github.io/CyberChef/
使用magic