"Cyber security Technology" teaches you to censor elements to play out your fan

Source: Internet
Author: User






  Google Chrome provides a review element feature, just right click on "Review Element" (first name), you can open chrome Inspector, get the page load time of various elements, JavaScript functions, object and other information. This chapter is mainly about  review elements.





  0X01analysis of the various parts of the review element







Borrowing analysis page Baidu: www.baidu.com



Right-click Review element



Elements is the HTML source code and you press a F12.



  







Sources is a directory of files



  







Resources you know, the cookie will show up here.



  







In elements, we'll find a small section on the right side of the computer.



  







This is a small overview of each HTML part of JS and CSS, which also allows us to modify, learn JS or CSS has a great help, for like we have just entered the small white use, can be described as a natural learning tools and learning place.



However, we can also use the review element to modify HTML, JS, or CSS on this page.



But he will not save, yes will not save.



To modify the HTML, we can double-click the code, such as:



  







If you want to change a big paragraph, you can right-click



  







Click Edit as HTML



Effects such as:



  







Also because of this all kinds of crooks use censorship elements to deceive buyers, such as what I infiltrated a station to receive a disciple, then I infiltrated Baidu!



  







Here I also warn the crooks, do not come out to play a good practice.



  





  0x02 using review elements to modify unknown objects



  Let's get familiar with CSS and JS modification methods:



We take the website of my Group Micro security group as teacher-training website: Www.sgzsec.com said that this set of source code online, but the whole HTML we have changed, even the CSS has changed, this modification process is taken as a teaching.



  







We use this contact for example, by the way to show the member list, yes are handsome, I understand your heart. Don't boast about us, we'll change the handsome.







Right-click to review the element.



  







This is the familiar little section.



If we want to make a change to him, we have to know him.



You know Baidu what the walk up, translation remember also bring, browser also has own translation.



Let's start with a few words that are important for modification:



font-size--Font Size



background--background



color--Color



height--height



width--width



line-height--Line Height



......



quantifier units, the font is generally based on PT, height, width, line high general to EM-based, there are some amplification and reduction is the main, this general has read the primary mathematics books are known, or degree Niang can also.



The general font color, background color will show a small square + the color of the color, anyway.



  







A palette will appear when you click.



  







Then you can make the color palette as you like, but remember that you can't close it immediately after you finish grading



  







To remember his color code



And then we're going to make a copy, assuming I get a #ffffff, white.



  The effect is as follows:



  







found that the relative position of the color is not the same is originally black.



Original such as:



  







Isn't interesting!



It is so simple, you do not counsel, this is only a review element, he will not save, you have to rest assured of the bold to change, try to always drive you!



That's the inspiration for this article!



  



  0x03 Using review elements hi



This area of my scope is relatively small, because of the hexadecimal, what coding is relatively narrow understanding, so I borrowed Mister House security team an article



  Website: www.hi-ourlife.com



Borrowing article address: http://www.hi-ourlife.com/index.php/post/154.html



Article title: I Spring and autumn security Warrior 30 strong birth Challenge



Let's take a look at the basic part of the article.



First topic:



  









[AppleScript] Plain text view copy code



?



1alert ("flag{a2714506-b3e2-417d-bac9-e8d078ed4d96}")



  



The answer is in a pop-up window program.



But it may be less obvious now, because the program ape is not stupid.



The second problem:



  









[AppleScript] Plain text view copy code



?



1



  



Also in the source code.



I'll give it a second thought, but I can actually make the answer come up by modifying the background of the CSS or HTML, but it's a bit more direct than that.



Third problem:



  









I first give the Spring and Autumn Program ape story ability to play a full mark, the sentence as far as possible to become beautiful.



  





[AppleScript] Plain text view copy code



?



1function aaa () {eval (" 32:64:39:30:61:39:30:38:31:63:62:38:64:61:63:38:61:64:65:65:61:34:63:33:61:66:30:33:34:39:32:61 ")}



  



Then remove the ":" will find this is a hexadecimal array



And then on the tool.



This topic can be used to modify the JS and CSS methods +sources to find useful things in the directory



Fourth question:



  







[AppleScript] Plain text view copy code



?



or a review element, but this is a string of Unicode encodings but I'm a little bit confused, but I know I'm definitely going to use the converter, so we need to learn more coding code.





  0X04 Summary



  These topics are all around the review elements to answer, some background procedures may be the existence of such negligence, the story tells us to dig carefully.



?



  0x05 Warm Tips



  Perhaps this article in some people's eyes is a relatively weak, but I send this post is for some learning HTML, JS, CSS small partners to learn, to help them, hoping to help them, welcome you to join.



This article source: Http://bbs.ichunqiu.com/thread-9104-1-1.html?from=bky



"Cyber security Technology" teaches you to censor elements to play out your fan


Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.