½Ã½ºÅÛ ÇØÅ·

 1574, 2/79 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   turttle2s
   GOT Overwrite

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_system&no=1956 [º¹»ç]


  1 #include <stdio.h>
  2 #include <stdlib.h>
  3
  4 void main(int argc, char *argv[]){
  5     if(argc == 2){
  6         puts(argv[1]);
  7     }
  8 }


gdb·Î putsÀÇ GOTÁÖ¼Ò¸¦ system ÁÖ¼Ò·Î ¹Ù²Ù°í ½ÇÇàÀ» ½ÃÄ×½À´Ï´Ù.
argv[1]Àº "/bin/sh" Áá°í¿ä.
½©ÀÌ µûÁö±ä Çϴµ¥ ls¸í·ÉÀ» ÁÖ¸é Error°¡ ¶ß¸é¼­ ½©À̼­ ³ª°¡Áý´Ï´Ù.
Á¤»óÀûÀÎ systemÇÔ¼ö ÄÝÀÌ ¾Æ´Ï¶ó¼­ ¿¡·¯°¡ ¶ß´Â°Ç°¡¿ä?


  Hit : 1840     Date : 2019/01/31 10:05



    
jsw5258 gdb ¿¡¼­ ½©ÀÌ ½ÇÇàµÇ¸é gdb°¡ ³ª°¡Áö´Â °ÍÀ¸·Î ¾Ë°íÀÖ½À´Ï´Ù. 2019/02/09  
turttle2s ¾ÆÇÏ.

±×·³ GOT Overwrite À¸·Î ½©Àº ¸øµû´Â °Ç°¡¿ä?
2019/02/11  
qw3709 ½ºÅÃÇÁ·¹ÀÓÀ» »ý°¢Çغ¸¼¼¿© ret¿¡ ÇÔ¼ö¸¦ ³ÖÀ¸¸é system | ret | ÀÎÀÚÇü½ÄÀε¥ retºÎºÐÀ» ºñ¿ö³õÀ¸¸é systemÀÌ ½ÇÇàµÈÈÄ¿¡ ¾Æ¹«°ªÀ̾øÀ¸´Ï ¿¡·¯°¡³ªÁö¾ÊÀ»±î¿ä 2019/02/13  
turttle2s systemÇÔ¼ö·Î "/bin/sh"¸¦ ½ÇÇà½ÃÅ°¸é ½©À» ³ª¿Í¾ß systemÇÔ¼ö°¡ Á¾·áµÇ°í retÁÖ¼Ò·Î µ¹¾Æ°¡Áö ¾Ê³ª¿ä?
±×¸®°í Redhat ¿¾³¯¹öÀü¿¡¼­´Â gdb»ó¿¡¼­ ½©À» µû°í ls¸¦ Ä¡¸é ¿À·ù¾øÀÌ ¸í·ÉÀÌ À߸ÔÈ÷´Âµ¥ ÀÌÀ¯¸¦ ¸ð¸£°Ú½À´Ï´Ù...
2019/02/15  
jsw5258 got overwrite·Î ½©ÀÌ ¾ÈµûÁö´Â°ÍÀÌ ¾Æ´Ï°í gdb»ó¿¡¼­´Â ½©¿¡¼­ interactiveÇÏ°Ô »ç¿ëÀ» ¸øÇÑ´Ù´Â ¶æÀ̾ú½À´Ï´ç ÇØ´ç ÆäÀ̷ε带 ±×³É ¹ÙÀ̳ʸ®¿¡´Ù°¡ ¸Ô¿©º¸¼¼¿ë 2019/02/20  
turttle2s Èø
°¨»çÇÕ´Ï´ç
2019/02/25  
1554   [LOB Redhat] succubus -> nightmare[3]     turttle2s
09/26 1649
1553   read()·Î got leakÀÌ °¡´ÉÇÑ°¡¿ä?[1]     turttle2s
09/26 1650
1552   pwntools ¾²½Ã´Â ºÐµé ~[6]     turttle2s
09/17 1865
1551   system("/bin/sh") ¿Í execve("/bin/sh",0,0)[2]     turttle2s
09/16 2373
1550   ROP Áú¹®ÀÔ´Ï´Ù[2]     turttle2s
09/09 2104
1549   BOF¸¦ ÇÏ´Â ÀÌÀ¯°¡ ¹«¾ùÀΰ¡¿ä?[7]     turttle2s
09/03 2353
1548   rop ´ÙÀ½¿¡ ¹¹¸¦ °øºÎÇÏ´Â°Ô ÁÁÀ»±î¿ä?[1]     tloet
08/26 1990
1547   [ LOB ] skeleton -> golem[3]     turttle2s
08/21 1548
1546   Á¦°¡ ½Ã½ºÅÛ ÇØÅ·ÂÊÀ¸·Î °¡º¸·Á ÇÕ´Ï´Ù.[3]     gun7935
08/01 1975
1545   PLT GOT Áú¹®[3]     turttle2s
07/30 1490
1544   setreuidÇÔ¼ö¿Í setuidºñÆ® °ü°è[1]     park345601
07/26 1332
1543   lob remote bof[6]     park345601
07/25 1422
1542   pwntools ¸¦ ÀÌ¿ëÇÑ exploit ÄÚµå Áú¹®[3]     turttle2s
06/07 1497
1541   Á»ºñ ¹ÙÀÌ·¯½º ¹®ÀÇ °Ç[1]     kirr2
04/14 1819
1540     [re] Á»ºñ ¹ÙÀÌ·¯½º ¹®ÀÇ °Ç     ÇѽÂÀç
05/23 1379
1539   ¹é½Å¿ìȸÁú¹®µå¸³´Ï´Ù (¾Ç¿ë¸ñÀû¾Æ´Ï¿¡¿ë)[3]     kangyung0447
03/01 2017
1538   pythonÀ¸·Î ÀÎÀÚ¸¦ ³ÖÀ» ¶§[1]     turttle2s
02/23 1558
  GOT Overwrite[6]     turttle2s
01/31 1839
1536   RTL Áú¹® ÀÔ´Ï´Ù[4]     turttle2s
01/11 2731
1535   iptime a3004nd uart¸¦ ÅëÇÑ ½© Á¢±Ù ½Ãµµ Áú¹®µå¸³´Ï´Ù.[1]     cho6206
12/30 3969
[1] 2 [3][4][5][6][7][8][9][10]..[79]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org