|
62精币
链接 http://tdaddql.cn/register?ss=55652 有无大哥能给小弟解答一下发验证ma的这个 XSRF-TOKEN= laravel_session= random= id= _token= 有什么关系 怎么来的
昨天写的时候把他们设成固定值了,昨天能用好好的今天就直接嘎了,然后觉得应该是有关系的重新抓包之后修改 XSRF-TOKEN= laravel_session= 的时候{
"message": "CSRF token mismatch."
}出现这个 猜测他们之间是有关系的,但奈何技术有限找不到其中的关系,XSRF-TOKEN= laravel_session= 他们两个beas64编码过的
POST http://tdaddql.cn/sendCaptcha HTTP/1.1
Host: tdaddql.cn
Connection: keep-alive
Content-Length: 111
Accept: */*
X-Requested-With: XMLHttpRequest
User-Agent: Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1 Edg/113.0.0.0
Content-Type: application/x-www-form-urlencoded; charset=UTF-8
Origin: http://tdaddql.cn
Accept-Encoding: gzip, deflate
Accept-Language: zh-CN,zh;q=0.9,en;q=0.8,en-GB;q=0.7,en-US;q=0.6
Cookie: XSRF-TOKEN=eyJpdiI6IlhYNXd1dllRRFErVlVyRVd3UnU1eHc9PSIsInZhbHVlIjoiYXVmc0s2T0xndmNIa2E0TVRjbzV6MVBQbVlyS2lyUEVPTTBnOXo4KzA2WEwyMmQ1aHhBME9vUmljd2ZJS3hNMzRoZEZhUWg4aVhrSXM1anZBSVcxZjdqN3k3amtpSnppa2c0UWVJcG9yWTFSSCtSNk1qWENFY2tKcEhZVGRNYlIiLCJtYWMiOiJhYWUyZDJlZDY1MmI5ZDE3ODM0NGQzNWE2YmI4NWY4YTRkYjY2ZGJjYjgxYzk0YzYzYzY2YTMwMTJlODI0MTNhIiwidGFnIjoiIn0%3D; laravel_session=eyJpdiI6Ik9yanVVRFdzUVRUUDR2ZGtJMHYxK2c9PSIsInZhbHVlIjoiUGZPVHZ1emRzVmRKY3dPQnlHc08vbzJ3cXpHSklEeVIwM1BYd3lnSC9VQTFMS05WSTVHbFhrSE9iUTEreGZiY0JsNDhHZXZ6M281K2pFM2pObFVnOGtMdnlYTWxvMzlncE93UmNlcU9uZ0xsblJtSUJCRmJhK29VQ0Y0VG1QalgiLCJtYWMiOiIwZTBhMjgzMWM3Y2U0OTIwOGI2ODZlMzhmNmY2ZGY2MGNiODZkMjJlZDQ0ZTkwZTA2ZDIzMGRlMmU2MzI1NTFhIiwidGFnIjoiIn0%3D
phone=15990317421&random=S0524132617231&id=322838&type=register&_token=V7gpXvxVCz71JWN9VRCdc3FXHXzifycqjtBEaQ4n
HTTP/1.1 200 OK
Date: Wed, 24 May 2023 05:54:47 GMT
Content-Type: application/json
Connection: keep-alive
Keep-Alive: timeout=120
Server: nginx
Cache-Control: no-cache, private
Set-Cookie: XSRF-TOKEN=eyJpdiI6ImZEeFRwejlFZ0ZKZDRFUzJCd1M2OGc9PSIsInZhbHVlIjoid3IzNW1RenVPWDhaNFkzN3RZWXJuZGxpbVpKZEkrZXJTZUI2MThPVE9nVEJ0MEN3L0FHdXhtVHhPWHI4aDdrc041S25BVFl4VWRiNHFCbWNSWlpsai9OcUVnMWRFZjN1VFMrVldTL2ZuYkI0dFZML1dQMkZnNStod3dxSTlvRnYiLCJtYWMiOiI2YjdjMDk1MmM1M2E4Nzg1MjIyMGYxZmU4OTFiMDYyZjA0MGNlZjk4NWE4NjdmNDQzYTFiNGNjY2U4N2RiNmM4IiwidGFnIjoiIn0%3D; expires=Wed, 24-May-2023 07:54:47 GMT; Max-Age=7200; path=/; samesite=lax
Set-Cookie: laravel_session=eyJpdiI6Ik5sQWs5Sk9JQVVub2prVzJuM3RsaUE9PSIsInZhbHVlIjoibGJyYU9DcG9CbFR1eEQrSUNuTW4xbzlRU01tWG4zTjgweVl0Z1ltTncrZG5QZnBLN1JQV2RvV1Q5ZW04eVdacHZnSWRQYy9YSCtJUGcyNGtRSy9iekxyLzN2cjBDa0cwRkNFNEo1dzU2S0U4RWJUZ0lSbEtjOG9NcjY2eEQ4OVEiLCJtYWMiOiJiMDViYWJkYzkyZGNlNWM3YWM3Zjc4N2QwMzIyZjZiYzg3ZTJiNjI2NzNlNjQ5ZDQzNDI1MjFkNGE0MzgxMWNmIiwidGFnIjoiIn0%3D; expires=Wed, 24-May-2023 07:54:47 GMT; Max-Age=7200; path=/; httponly; samesite=lax
Content-Length: 97
{"code":0,"msg":"\u77ed\u4fe1\u53d1\u9001\u6210\u529f","data":"c63ce9076e41aca4ed1037bd49ca5442"}
|
最佳答案
查看完整内容
XSRF-TOKEN= laravel_session= (这两个是网页返回的 ) id=(这个是区的随机数) _token= random= 没有到这两个参数
补充内容 (2023-5-24 15:37):
数据都是 这个网页返回 的http://tdaddql.cn/register?ss=55652 自己去找找 就知道了
|