๐’ƒ๐’†๐’‚๐’–๐’•๐’š ๐’Š๐’๐’•๐’†๐’๐’๐’Š๐’ˆ๐’†๐’๐’•
728x90
๋ฐ˜์‘ํ˜•
article thumbnail
LOB goblin
Wargame/CTF(Capture The Flag) 2015. 9. 15. 03:27

์ ‘์†์„ ํ•˜๊ณ  (cp ๊ฐ™์€ ๊ฒƒ์€ ๋ฌด์‹œํ•˜๊ฒ ์Šต๋‹ˆ๋‹ค) ์†Œ์Šค๋ฅผ ํ™•์ธ ํ•˜๋ฉด ์ด๋ฒˆ์— ๋˜ํ•œ buffer๊ฐ€ 16์ธ๊ฒƒ์„ ํ™•์ธ ํ•  ์ˆ˜์žˆ๋‹ค.๋จผ์ € vi ๋ฅผ ์ด์šฉํ•˜์—ฌ ํ”„๋กœ๊ทธ๋ž˜๋ฐ GOGO!! ์œ„์™€๊ฐ™์ด #include #include int main(int argc, char *argv[]){long shell;shell = system ์ฃผ์†Œ๊ฐ’;๋‚˜๋จธ์ง€๋Š” ๋™์ผ ํ•˜๊ฒŒ ํ”„๋กœ๊ทธ๋ž˜๋ฐ์„ ํ•˜๊ณ  gcc๋ฅผ ์ด์šฉํ•ด ์ปดํŒŒ์ผ์„ ํ•œ๋‹ค. ์ด์ œ system ์ฃผ์†Œ๊ฐ’์„ ๋ณด๊ธฐ์œ„ํ•ด gdb๋ฅผ ์ด์šฉํ•ด ๋“ค์–ด๊ฐ„ํ›„ b main๋ช…๋ น์–ด๋ฅผ ์ด์šฉํ•˜์—ฌ ๋ฉ”์ธ์— ๋ธŒ๋ ˆ์ดํฌ ํฌ์ธํŠธ๋ฅผ ๊ฑด๋‹ค.๊ทธํ›„ p system์ด๋ผ๋Š” ๋ช…๋ น์–ด๋ฅผ ์ด์šฉํ•˜์—ฌ system ์ฃผ์†Œ๊ฐ’์„ ํ™•์ธํ•œ๋‹ค.(ํ”„๋กœ๊ทธ๋ž˜๋ฐํ• ๋•Œ ์ž…๋ ฅํ•ด์•ผํ•จ) ์ด์ œ payload๋ฅผ ์งœ๋ณด๋ฉด (python -c 'print "\x90"*20+"AAAAA(ebp+8..

728x90
๋ฐ˜์‘ํ˜•
profile on loading

Loading...