首页
关于
注册说明
留言板
Search
1
1Panel安装php swoole 扩展教程,以日主题ritheme为例
39 阅读
2
独角数卡宝塔搭建保姆式教程
34 阅读
3
微信/QQ防红PHP网站跳转浏览器方法源码
16 阅读
4
虚拟机安装Typecho后配置伪静态不知道是Apache还是Nginx、IIS怎么办?
12 阅读
5
网站手机能访问电脑不能访问的解决办法?
11 阅读
PHP学习
WEB前端
编程书籍
网站/服务器
源码测试
登录
/
注册
Search
标签搜索
PHP
WordPress
网站搬家
宝塔面板
Typecho
php基础知识
php基础
服务器
内网穿透
伪静态
数据库
变量
var_dump
print_r
独角数卡
宝塔
1panel
网卡设置
WP主题
网站加密
泡饼
累计撰写
53
篇文章
累计收到
3
条评论
首页
栏目
PHP学习
WEB前端
编程书籍
网站/服务器
源码测试
页面
关于
注册说明
留言板
搜索到
1
篇与
的结果
子比主题7.7版本绕过授权教程操作步骤
更新7.7版本(2024-04-15)伪站文件,搭建方法没变{sub}<?php $url = $_SERVER['REQUEST_URI']; function getRandom($length) { $characters = 'abcdefghijklmnopqrstuvwxyz1234567890'; $randomString = ''; for ($i = 0; $i < $length; $i++) { $index = rand(0, strlen($characters) - 1); $randomString .= $characters[$index]; } return $randomString; } function generate_randstr($url) { $key = strrev(md5($url)); $num1 = rand(70,99); $num1r = strrev(strval($num1)); $num2 = rand(70,99); $num2r = strrev(strval($num2)); $key = substr($key,23).substr($key,0,23); $keystr = substr_replace($key,getRandom(3),$num1-69,0); $randstr = getRandom(3).$num1r.getRandom(rand(5,10)).$keystr.getRandom(100-$num2).$num2r; return $randstr; } header('Content-Type: application/json; charset=UTF-8'); if(strpos($url, '/api/auth') !== false){ $time = time(); $token = md5(uniqid(mt_rand(), true) . microtime()); $randstr = generate_randstr($_POST['url']); $sign = md5($randstr.$time.$token.'ok'); $data = ['error'=>true, 'error_code'=>0, 'msg'=>'', 'time'=>$time, 'token'=>$token, 'randstr'=>$randstr, 'code'=>base64_encode('恭喜您,授权验证成功'), 'sign'=>$sign]; echo json_encode($data); } elseif(strpos($url, '/api/update') !== false){ $version = $_POST['version']; $data = ['result'=>false, 'aut_error'=>false, 'msg'=>'暂无更新,您当前的版本已是最新版', 'version'=>$version]; echo serialize($data); }{/sub}7.7主题文件:{sub}{cloud title="zibll-V7.7" type="lz" url="https://sgdhuo.lanzouq.com/iBHKk21voegj" password="无"/}{cloud title="zibll-V7.7" type="ct" url="https://url08.ctfile.com/f/811508-1272409417-22ebbb" password="3100"/}{/sub}{dotted startColor="#ff6c6c" endColor="#1989fa"/}7.6 版本(2024-02-01)绕过授权{alert type="warning"}需要本地搭建1个伪授权站{/alert}7.6原版主题:{sub}{cloud title="zibll-V7.6" type="lz" url="https://sgdhuo.lanzouq.com/iRlMZ21vot2f" password="无"/}{cloud title="zibll-V7.6" type="ct" url="https://url08.ctfile.com/f/811508-1272409426-9fdf75" password="3100"/}{/sub}伪站搭建 (以apache2为例)1.www下新建zibll目录, 添加index.php文件:{sub}<?php $url = $_SERVER['REQUEST_URI']; function getRandom($length) { $characters = 'abcdefghijklmnopqrstuvwxyz1234567890'; $randomString = ''; for ($i = 0; $i < $length; $i++) { $index = rand(0, strlen($characters) - 1); $randomString .= $characters[$index]; } return $randomString; } function generate_randstr($url) { $key = strrev(md5($url)); $num1 = rand(70,99); $num1r = strrev(strval($num1)); $num2 = rand(70,99); $num2r = strrev(strval($num2)); $key = substr($key,22).substr($key,0,22); $keystr = substr_replace($key,getRandom(3),$num1-69,0); $randstr = getRandom(3).$num1r.getRandom(rand(5,10)).$keystr.getRandom(100-$num2).$num2r; return $randstr; } header('Content-Type: application/json; charset=UTF-8'); if(strpos($url, '/api/auth') !== false){ $time = time(); $token = md5(uniqid(mt_rand(), true) . microtime()); $randstr = generate_randstr($_POST['url']); $sign = md5($randstr.$time.$token.'ok'); $data = ['error'=>true, 'error_code'=>0, 'msg'=>'', 'time'=>$time, 'token'=>$token, 'randstr'=>$randstr, 'code'=>base64_encode('恭喜您,授权验证成功'), 'sign'=>$sign]; echo json_encode($data); } elseif(strpos($url, '/api/update') !== false){ $version = $_POST['version']; $data = ['result'=>false, 'aut_error'=>false, 'msg'=>'暂无更新,您当前的版本已是最新版', 'version'=>$version]; echo serialize($data); }{/sub}2.添加伪静态.htaccess文件:<IfModule mod_rewrite.c> Options +FollowSymlinks RewriteEngine On RewriteCond %{REQUEST_FILENAME} !-d RewriteCond %{REQUEST_FILENAME} !-f RewriteRule ^(.*)$ index.php/$1 [QSA,PT,L] </IfModule>3.添加VirtualHost:nano /etc/apache2/sites-enabled/000-default.conf ## 添加api.zibll.com <VirtualHost *:80> ServerAdmin webmaster@localhost ServerName api.zibll.com DocumentRoot /var/www/zibll ErrorLog ${APACHE_LOG_DIR}/error.log #CustomLog ${APACHE_LOG_DIR}/access.log combined </VirtualHost> nano /etc/apache2/sites-enabled/4.添加HTTPS,SSL用自签证书:cd /etc/apache2/ssl # 私钥文件 openssl genrsa -out private.key 2048 ## 证书请求文件 默认回车即可 openssl req -new -key private.key -out server.csr ## 自签名证书 openssl x509 -req -days 365 -in server.csr -signkey private.key -out server.crt cat server.crt private.key > server.pem nano /etc/apache2/sites-enabled/default-ssl.conf ## 添加api.zibll.com <VirtualHost *:443> ServerAdmin webmaster@localhost ServerName api.zibll.com DocumentRoot /var/www/zibll LogLevel error SSLEngine on SSLCertificateFile /etc/apache2/ssl/server.crt SSLCertificateKeyFile /etc/apache2/ssl/private.key </VirtualHost>BT搭建伪授权站1.创建api.zibll.com网站,将上面index.php添加到网站目录2.网站设置->SSL添加自签证书private.key和server.pem3.添加伪静态4.伪静态代码location / { try_files $uri $uri/ /index.php?$query_string; }5.修改hosts:nano /etc/hosts # 添加 127.0.0.1 api.zibll.com service apache2 restart6.登录后台,点击授权{alert type="info"}zibll子比主题V6.5更新就带来了全新的卡密充值功能,zibll子比主题更新V7.4后,新增卡密兑换会员、卡密兑换积分的功能。{/alert}
2024年06月15日
10 阅读
0 评论
0 点赞