|
网上好多资料,似乎都不用chrome调试。一、打开无痕窗口和fiddler
二、抓包后获得提交内容uid=手机号&pwd=3e3f4c38965055259079f80abe4b91c646510ddf157adf4c82a7e17e167e52f668181b4368ef1f0a53b299bc81753d13ec63e891a4b143a931b678f2a776d67d6a3ac97e70432afe3ed6528759febe1ba10676196d7dd1d27f3d46f0bbf8878aff31c86465e215b368ad785490fd6ad7b3a634e242bd157394efe23a7f659cb1&Service=soufun-passport-web&AutoLogin=1&Operatetype=0&Gt=35c3d8dffffd310ca05d87cea3b52786&Challenge=f758e1f2c756b2bfdc9431751abee813&Validate=5075551cbdc5a60a5855edff7856c4bd
三、因为知道是 rsa加密 直接fiddler搜了下rsa 在网页中有
setMaxDigits(129);
var key_to_encode = new RSAKeyPair("010001", "", "978C0A92D2173439707498F0944AA476B1B62595877DD6FA87F6E2AC6DCB3D0BF0B82857439C99B5091192BC134889DFF60C562EC54EFBA4FF2F9D55ADBCCEA4A2FBA80CB398ED501280A007C83AF30C3D1A142D6133C63012B90AB26AC60C898FB66EDC3192C3EC4FF66925A64003B72496099F4F09A9FB72A2CF9E4D770C41");
四、搜索 key_to_encode 看哪里用到
pwd: encryptedString(key_to_encode, that.password.val()),
五、搜索encryptedString 发现在 rsa.min.js中
copy整个rsa.min.js 经WT_JS 不用修改 直接加载成功。
后面几个参数应该是滑块的,滑块准备后面再整
|
|