CafeM0ca

[LOB]level14 giant 본문

Hacking/LOB(Red Hat)

[LOB]level14 giant

M0ca 2018. 1. 18. 03:58
반응형

ID:giant  

PW:one step closer

hmm.. use ret sled.

ret sled: return ret ret ret.... eip point next 4byte

stack

buf | sfp | ret | ret's ret | ret's ret's ret| ret's ret's ret's ret|


shellcode put on argv[1]

Oh.. No addr.


add stack addr(possible). after ret, instruction point NOP(sleeeeeeed)

expoit


maybe easy . this way will be use FC3

반응형

'Hacking > LOB(Red Hat)' 카테고리의 다른 글

[LOB]level16 zombie_assassin  (0) 2018.01.19
[LOB]level15 assassin  (0) 2018.01.18
[LOB]level13 bugbear  (0) 2018.01.17
[LOB]level12 darkknight  (0) 2018.01.04
[LOB]level11 golem  (0) 2018.01.04
Comments