½Ã½ºÅÛ ÇØÅ·

 1574, 1/79 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   hackxx123
   http://NULL
   pwnable.kr passcode ¹®Á¦ Áú¹®µå¸³´Ï´Ù(Ç®ÀÌ ¾Æ´Õ´Ï´Ù)

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_system&no=1924 [º¹»ç]


pwnalbe.kr passcode¹®Á¦¸¦ putty¸¦ ÀÌ¿ëÇÏ¿© Á¢¼ÓÀ» Çß½À´Ï´Ù.

passcode¶ó´Â ½ÇÇà ÆÄÀÏ°ú passcode.c ¼Ò½º ÆÄÀÏÀÌÀÖ½À´Ï´Ù. ³»¿ëÀº

#include <stdio.h>
#include <stdlib.h>

void login(){
        int passcode1;
        int passcode2;

        printf("enter passcode1 : ");
        scanf("%d", passcode1);       ///////////À̺κÐ!!!
        fflush(stdin);

        // ha! mommy told me that 32bit is vulnerable to bruteforcing :)
        printf("enter passcode2 : ");
        scanf("%d", passcode2);       ///////////À̺κÐ!!!

        printf("checking...\n");
        if(passcode1==338150 && passcode2==13371337){
                printf("Login OK!\n");
                system("/bin/cat flag");
        }
        else{
                printf("Login Failed!\n");
                exit(0);
        }
}

void welcome(){
        char name[100];
        printf("enter you name : ");
        scanf("%100s", name);
        printf("Welcome %s!\n", name);
}

int main(){
        printf("Toddler's Secure Login System 1.0 beta.\n");

        welcome();
        login();

        // something after login...
        printf("Now I can safely trust you that you have credential :)\n");
        return 0;
}

Áß¿äÇÑ°Ç ¿©±â¼­        ///////////À̺κÐ!!! À̶ó°í ÀûÇô ÀÖ´Â
scanf("%d", passcode1);
scanf("%d", passcode1);
ÀÌ µÎ ¹®Àå¿¡¼­ &°¡ ¾ø±â ¶§¹®¿¡ passcode1°¡ °¡Áö°í ÀÖ´Â ¾²·¹±â °ªÀÇ ÁÖ¼Ò¿¡ ÀÔ·Â °ªÀ» ³Ö°Ô µÇÀܾƿä? ±×·±µ¥ ¾²·¹±â °ªÀÌ À¯È¿ÇÏÁö ¾ÊÀº ÁÖ¼Ò°ªÀ̶ó¸é segmentation falult ¸Þ½ÃÁö°¡ Ãâ·Â µÇ´Â °É ¾Ë°íÀִµ¥¿ä
ÀÌ»óÇÏ°Ô ÇÁ·Î±×·¥À» ½ÇÇà ½ÃÄѼ­ ¼ýÀÚ¸¦ ³ÖÀ¸¸é segmentation fault ¸Þ½ÃÁö°¡ Ãâ·ÂÀÌ µÇ´Âµ¥ ¿µ¾î ¾ËÆĺªÀ» ÀÔ·ÂÇϸé ÀÔ·ÂÀÌ µÇ´õ¶ó±¸¿ä...
±×¸®°í fflush ÇÔ¼ö°¡ Àִµ¥µµ scanf("%d", passcode1); ¹®ÀåÀÇ ¾ËÆĺª ÀÔ·ÂÀ» ¹Þ°í ³ª¸é scanf("%d", passcode1); À̹®ÀåÀº ÀÔ·Â ¹ÞÀ» ±âȸµµ
¾øÀÌ °Ç³Ê ¶Ù°í ´ÙÀ½ ¹®ÀåµéÀÌ ½ÇÇàÀÌ µË´Ï´Ù... ¾î¶² ÀÌÀ¯ÀÎÁö »ý°¢À» ÇغÁµµ ¾Ë±æÀÌ ¾ø¾î¼­ ÀÌ·¸°Ô Áú¹® µå¸³´Ï´Ù!!




  Hit : 2083     Date : 2018/06/07 10:24



    
gihacker ¿ì¼± login() ÇÔ¼öÀü¿¡ welcome() ÇÔ¼ö¿¡¼­ 100¹ÙÀÌÆ®¸¦ ÀԷ¹޴µ¥.

±× ÀԷ¹ÞÀº 100¹ÙÀÌÆ®°¡ ±×´ë·Î ½ºÅÿ¡ ³²¾Æ¼­ Login ÇÔ¼öÀÇ passcode º¯¼öµéÀÌ ¾²·¹±â°ªÀ̾ƴÑ

welcome ÇÔ¼öÀÇ name º¯¼öÀÇ °ªÀ¸·Î ³²¾ÆÀÖ½À´Ï´Ù. ÀÌ°É ÀÌ¿ëÇؼ­ Ǫ½Ã¸éµË´Ï´Ù
2018/06/07  
gihacker ±×¸®°í ¿µ¾î ·Î Ä¡¸é ÀԷµǴÂÀÌÀ¯´Â %d Á¤¼öÇüÀ¸·Î ÀԷ¹ÞÀ¸´Ï ¹®ÀÚ¿­À» ³ÖÀ¸¸é ¹«½ÃµÇ¼­ null °ªÀÌ µé¾î°¡´Â°Í°°³×¿ä 2018/06/07  
1574   pwnable.kr echo1 Áú¹®2 (½ºÆ÷ ÁÖÀÇ)[2]     turttle2s
10/05 1277
1573   LOB GATE¹®Á¦ Ç®¸é¼­ ±Ã±ÝÇÑÁ¡[3]     hackxx123
08/24 1002
1572   libc°ü·Ã - 2[5]     lMaxl04
08/24 912
1571   ASLRÀÌ °É·ÁÀÖÀ»¶§ ret¿¡ ROPÀ¸·Î jmp %espÀ» »ç¿ëÇÑ °æ¿ì.[3]     lMaxl04
06/29 1176
1570   ¸®¸ðÆ® ȯ°æ¿¡¼­ÀÇ ½ºÅà ÁÖ¼Ò È®ÀÎ ¹æ¹ýÀÌ ±Ã±ÝÇÕ´Ï´Ù.[2]     lMaxl04
06/16 967
1569   ÇØÅ· ÇÁ¸®¼­¹ö ¾ø¾îÁ³³ª¿ä?[1]     terfkim
04/15 1749
1568   ½ºÅÿ¡ µ¥ÀÌÅÍ ³ÖÀ» ¶§ SIGSEGV[4]     turttle2s
02/04 1483
1567   pwnable.kr echo1 Áú¹®[2]     turttle2s
06/17 1752
1566   ROP strcpy °ü·Ã Áú¹®ÀÔ´Ï´Ù.[3]     heeyoung0511
06/16 1598
1565   Level2 -> Level3 ¿¡¼­ vi¿Í /usr/bin/EditorÀÇ Â÷ÀÌ[2]     hyemin1826
07/18 1898
1564   Trainer3 ftz.hackerschool.org È£½ºÆ® Á¢¼Ó ºÒ°¡[1]     hyemin1826
07/18 3244
1563   dllÀÎÁ§¼Ç ½ÇÇèÁß Áú¹® µå¸³´Ï´Ù.[1]     kkk477
05/31 1878
1562   ÆÐŶ º¹È£È­¸¦ ¸¶½ºÅÍ ÇÏ·Á¸é ¾î¶² °úÁ¤ÀÌ ÀÖ¾î¾ßÇϳª¿ä?     sa0814
04/01 1715
1561   »ç±â[2]     jas08
03/31 2014
1560   ½Ã½ºÅÛ ÄÝÀÌ °¡´ÉÇÑ ¸Þ¸ð¸® ¿µ¿ª°ú ºÒ°¡´ÉÇÑ ¸Þ¸ð¸® ¿µ¿ªÀÌ Á¸ÀçÇϳª¿ä?     ocal
03/30 1753
1559   pwntools »ç¿ë½Ã¿Í ±âº» socket ¸ðµâ ÀÌ¿ë½Ã Â÷ÀÌ?[4]     ocal
01/09 2301
1558   lob level19(nightmare) °ü·ÃÁú¹®[1]     dnjsdnwja
12/18 1765
1557   ftz level2 Áú¹®ÀÖ½À´Ï´Ù[1]     kihyun1998
12/13 1858
1556   ftz level2¹ø Ǫ´Âµ¥¿ä ±ÇÇÑÀÌ...     kihyun1998
12/06 1725
1555   ½Ã½ºÅÛÇØÅ·ÇÒ¶§ [3]     thsrhkdwns
12/05 2214
1 [2][3][4][5][6][7][8][9][10]..[79]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org