97, 4/5 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   healer
   Á¦¸ñ_¾øÀ½.png (0 Byte), Download : 17     [¿À¸¥ÂÊ ¹öÆ° ´­·¯ ´Ù¿î ¹Þ±â]
   ¸®¹ö½Ì __security_cookie

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_Reversing&no=111 [º¹»ç]



00EA16BE ºÎÅÍ 00EA16CB ±îÁö ³ë¶û»ö ¹Ú½º¿¡¼­
ÀÌÀ¯°¡ ±Ã±ÝÇÕ´Ï´Ù.

1. EAX¿¡´Ù°¡ __security_cookieÀÌ°É ³Ö´Â ÀÌÀ¯
2. ±×¸®°í XOR EAX, EBP¸¦ XORÇÏ´Â ÀÌÀ¯
3. MOV EBP-4, EAX  ¿Ö EBP-4¿¡´Ù°¡ EAX¸¦ ³Ö´Â ÀÌÀ¯
4. LEA EAX, EBP-14ÀÇ ÁÖ¼Ò¸¦ ³Ö´Â ÀÌÀ¯
5. EAX¸¦ ³Ö´Â ÀÌÀ¯

  Hit : 3604     Date : 2017/07/17 12:27



    
healer 00EA16A0 > 55 PUSH EBP ; IsPasswordOK()
00EA16A1 8BEC MOV EBP,ESP
00EA16A3 81EC DC000000 SUB ESP,0DC
00EA16A9 53 PUSH EBX
00EA16AA 56 PUSH ESI
00EA16AB 57 PUSH EDI
00EA16AC 8DBD 24FFFFFF LEA EDI,DWORD PTR SS:[EBP-DC]
00EA16B2 B9 37000000 MOV ECX,37
00EA16B7 B8 CCCCCCCC MOV EAX,CCCCCCCC
00EA16BC F3:AB REP STOS DWORD PTR ES:[EDI]
00EA16BE A1 0490EA00 MOV EAX,DWORD PTR DS:[__security_cookie]
00EA16C3 33C5 XOR EAX,EBP
00EA16C5 8945 FC MOV DWORD PTR SS:[EBP-4],EAX
00EA16C8 8D45 EC LEA EAX,DWORD PTR SS:[EBP-14]
00EA16CB 50 PUSH EAX

»çÁøÀÌ ¾È¿Ã¶ó°¡³×¿ä óÀ½À̶ó¼­...
2017/07/17  
pwnnnt bof ¹æÁö°°³×¿ä. 2017/07/18  
sTRAYdOG 1. EAX¿¡´Ù°¡ __security_cookieÀÌ°É ³Ö´Â ÀÌÀ¯
2¹ø XOR ¿¬»êÀ» À§Çؼ­.
2. ±×¸®°í XOR EAX, EBP¸¦ XORÇÏ´Â ÀÌÀ¯
¾Ë¼ö¾øÁÒ. ¿¬»ê°á°ú EAX¸¦ ³ªÁß¿¡ »ç¿ëÇÏ°ÚÁÒ.
3. MOV EBP-4, EAX ¿Ö EBP-4¿¡´Ù°¡ EAX¸¦ ³Ö´Â ÀÌÀ¯
[EBP-4]´Â Áö¿ªº¯¼öÁÒ. ¿©±â´Ù ÀúÀåÇϳªº¸ÁÒ. ³ªÁß¿¡ ÇÔ¼ö¸¦ ³ª°¡¸é ÀÌ°Ô ¹ÝȯµÉÁöµµ.
4. LEA EAX, EBP-14ÀÇ ÁÖ¼Ò¸¦ ³Ö´Â ÀÌÀ¯
[EBP-14]¿¡ ¸ð°¡ ÀÖ´ÂÁö ¼Ò½º¸¸À¸·Î ¾Ë ¼ö ¾ø¾î¿ä
5. EAX¸¦ ³Ö´Â ÀÌÀ¯
½ºÅÿ¡ ³Ö´Â°ÍÀε¥ ³ªÁß¿¡ ²¨³¾¶ó´Â °ÍÀÌÁÒ.

Á¦°¡º¸±â¿£ Äڵ常º¸¸é 3¹ø XoR¿¬»êÀÌ ÇÔ¼öÀÇ ÁÖ¸ñÀûÀ̶ó°í º¸ÀÔ´Ï´Ù.
2017/07/30  
37   ¼¼³»±â°¡ Áú¹®Á»ÇÏ°Ù½À´Ï´Ù[1]     hrl733
11/06 2820
36   [Ãʺ¸] ¸®ÅϾîµå·¹½º Áú¹®ÀÔ´Ï´Ù[2]     hjt7942
05/19 3183
35   ida string window °ü·Ã ¹®Á¦[2]     heartbits
08/20 2692
  ¸®¹ö½Ì __security_cookie[3]     healer
07/17 3603
33   Äڵ忣Áø Basic 02¿¡¼­     healer
04/08 2170
32   À©µµ¿ì ¸®¹ö½Ì°ú ¾Èµå·ÎÀÌµå ¸®¹ö½Ì..[1]     hallohackers
01/26 3254
31   IDA¿¡¼­ dllÀ» ½ÇÇà ½ÃÅ°¸ç µð¹ö±ëÇÏ´Â ¹æ¹ý?[1]     hajacrew
06/21 5810
30   ·¹Áö½ºÅÍ¿¡ ´ëÇؼ­....[3]     hackedby
10/01 2701
29   ¿Ã¸®µð¹ö°Å Ä¿¸Çµå¶óÀÎ[3]     h@cking2013
01/28 4649
28   ¢Â ½ºº¸ºª,¾ÆÀ̺ñ¾¾ºª¢º 777betd.COM ¢¸½ºº¸ºª°¡ÀÔ,½ºº¸ºªÃÑÆÇ ¢Â     gwanpo4048
03/17 2840
27   ¸®¹ö½Ì ¿£Áö´Ï¾î¸µ °øºÎ??[3]     GaOnNuRI
04/30 4140
26   ¾î¼Àºí¸®¾î °øºÎ ÇÒ‹š¿ä ~~~[2]     gadia1
07/04 3469
25   ´Ü¼ø ¸®¹ö½Ì °ü·Ã Áú¹®[8]     ewqqw
06/11 2966
24   ÇÁ·Î±×·¥ ƯÁ¤ ¿µ¿ª ½ÇÇà °¨Áö.[2]     Einsteins
08/24 3450
23   ¸®¹ö½ÌÀÇ·ÚÇÏ·ÁÇÕ´Ï´Ù[1]     eastgm
01/31 3576
22   IDA remote linux debugging ÇÏ´Â Áß ¿¡·¯°¡ ¶ß´Âµ¥¿ä..     dudgb2380
08/17 2743
21   ollydbg ¿Í ida ¿¡ °üÇؼ­[3]     doyunsang
11/19 9070
20   ¸®´ª½º¿¡´Â ollydbg°°Àº µð¹ö°Å ¾ø³ª¿ä?[4]     creeper
11/21 9204
19   ÀÌ°Å ¿ÖÀִ°Å¡?[2]     creeper
11/21 2785
18   ¸®¹ö½Ì, Å©·¢¹Ì ±îºÃ´õ´Ï¡¦ Ãæ°Ý[1]     creeper
12/01 4126
[1][2][3] 4 [5]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org