本帖最后由 str_cg 于 2022-3-30 10:33 编辑
已解决,敏感信息已删除
最近馋海底捞了,想做一个洞见者监控,但是不知道为啥用python一直提示请求参数校验失败,在burpsuite里重放一直没问题,如下图所示:
请各位大佬帮忙看下
python源码如下:
[Python] 纯文本查看 复制代码 import requests
session = requests.session()
burp0_url = "https://app.anonym-hi.com:443/base/mobile/api/tasklist"
burp0_headers = {"sign": "xxxx
"token": xxxx
"RN": "0",
"flag": "1",
"lang": "zh_cn",
"deviceid": "566cede657d661a64328946b1fd6d535",
"deviceType": "M2007J1SC",
"osType": "Xiaomi",
"versionCode": "28",
"versionName": "2.3.5",
"Content-Type": "application/json; charset=UTF-8",
"Connection": "Keep-Alive",
"Accept-Encoding": "gzip",
"User-Agent": "okhttp/3.12.0"}
burp0_json={"city": "440600",
"country": "",
"current": 1,
"lnglat": "113.12370758617541,23.00645597470435",
"orderType": 1,
"size": 10,
"tenant_id": ""}
res = session.post(burp0_url, headers=burp0_headers, json=burp0_json)
print(res.text) |