½Ã½ºÅÛ ÇØÅ·

 1574, 4/79 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   hackxx123
   http://NULL
   pwnable.kr passcode ¹®Á¦ Áú¹®µå¸³´Ï´Ù(Ç®ÀÌ ¾Æ´Õ´Ï´Ù)

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_system&no=1924 [º¹»ç]


pwnalbe.kr passcode¹®Á¦¸¦ putty¸¦ ÀÌ¿ëÇÏ¿© Á¢¼ÓÀ» Çß½À´Ï´Ù.

passcode¶ó´Â ½ÇÇà ÆÄÀÏ°ú passcode.c ¼Ò½º ÆÄÀÏÀÌÀÖ½À´Ï´Ù. ³»¿ëÀº

#include <stdio.h>
#include <stdlib.h>

void login(){
        int passcode1;
        int passcode2;

        printf("enter passcode1 : ");
        scanf("%d", passcode1);       ///////////À̺κÐ!!!
        fflush(stdin);

        // ha! mommy told me that 32bit is vulnerable to bruteforcing :)
        printf("enter passcode2 : ");
        scanf("%d", passcode2);       ///////////À̺κÐ!!!

        printf("checking...\n");
        if(passcode1==338150 && passcode2==13371337){
                printf("Login OK!\n");
                system("/bin/cat flag");
        }
        else{
                printf("Login Failed!\n");
                exit(0);
        }
}

void welcome(){
        char name[100];
        printf("enter you name : ");
        scanf("%100s", name);
        printf("Welcome %s!\n", name);
}

int main(){
        printf("Toddler's Secure Login System 1.0 beta.\n");

        welcome();
        login();

        // something after login...
        printf("Now I can safely trust you that you have credential :)\n");
        return 0;
}

Áß¿äÇÑ°Ç ¿©±â¼­        ///////////À̺κÐ!!! À̶ó°í ÀûÇô ÀÖ´Â
scanf("%d", passcode1);
scanf("%d", passcode1);
ÀÌ µÎ ¹®Àå¿¡¼­ &°¡ ¾ø±â ¶§¹®¿¡ passcode1°¡ °¡Áö°í ÀÖ´Â ¾²·¹±â °ªÀÇ ÁÖ¼Ò¿¡ ÀÔ·Â °ªÀ» ³Ö°Ô µÇÀܾƿä? ±×·±µ¥ ¾²·¹±â °ªÀÌ À¯È¿ÇÏÁö ¾ÊÀº ÁÖ¼Ò°ªÀ̶ó¸é segmentation falult ¸Þ½ÃÁö°¡ Ãâ·Â µÇ´Â °É ¾Ë°íÀִµ¥¿ä
ÀÌ»óÇÏ°Ô ÇÁ·Î±×·¥À» ½ÇÇà ½ÃÄѼ­ ¼ýÀÚ¸¦ ³ÖÀ¸¸é segmentation fault ¸Þ½ÃÁö°¡ Ãâ·ÂÀÌ µÇ´Âµ¥ ¿µ¾î ¾ËÆĺªÀ» ÀÔ·ÂÇϸé ÀÔ·ÂÀÌ µÇ´õ¶ó±¸¿ä...
±×¸®°í fflush ÇÔ¼ö°¡ Àִµ¥µµ scanf("%d", passcode1); ¹®ÀåÀÇ ¾ËÆĺª ÀÔ·ÂÀ» ¹Þ°í ³ª¸é scanf("%d", passcode1); À̹®ÀåÀº ÀÔ·Â ¹ÞÀ» ±âȸµµ
¾øÀÌ °Ç³Ê ¶Ù°í ´ÙÀ½ ¹®ÀåµéÀÌ ½ÇÇàÀÌ µË´Ï´Ù... ¾î¶² ÀÌÀ¯ÀÎÁö »ý°¢À» ÇغÁµµ ¾Ë±æÀÌ ¾ø¾î¼­ ÀÌ·¸°Ô Áú¹® µå¸³´Ï´Ù!!




  Hit : 2028     Date : 2018/06/07 10:24



    
gihacker ¿ì¼± login() ÇÔ¼öÀü¿¡ welcome() ÇÔ¼ö¿¡¼­ 100¹ÙÀÌÆ®¸¦ ÀԷ¹޴µ¥.

±× ÀԷ¹ÞÀº 100¹ÙÀÌÆ®°¡ ±×´ë·Î ½ºÅÿ¡ ³²¾Æ¼­ Login ÇÔ¼öÀÇ passcode º¯¼öµéÀÌ ¾²·¹±â°ªÀ̾ƴÑ

welcome ÇÔ¼öÀÇ name º¯¼öÀÇ °ªÀ¸·Î ³²¾ÆÀÖ½À´Ï´Ù. ÀÌ°É ÀÌ¿ëÇؼ­ Ǫ½Ã¸éµË´Ï´Ù
2018/06/07  
gihacker ±×¸®°í ¿µ¾î ·Î Ä¡¸é ÀԷµǴÂÀÌÀ¯´Â %d Á¤¼öÇüÀ¸·Î ÀԷ¹ÞÀ¸´Ï ¹®ÀÚ¿­À» ³ÖÀ¸¸é ¹«½ÃµÇ¼­ null °ªÀÌ µé¾î°¡´Â°Í°°³×¿ä 2018/06/07  
1514   level1¹ø ¹®Á¦ Áú¹®µå¸³´Ï´Ù.[3]     in_reason
06/26 1740
1513     [re] level1¹ø ¹®Á¦ Áú¹®µå¸³´Ï´Ù.     in_reason
06/26 1387
  pwnable.kr passcode ¹®Á¦ Áú¹®µå¸³´Ï´Ù(Ç®ÀÌ ¾Æ´Õ´Ï´Ù)[2]     hackxx123
06/07 2027
1511   Á¤È®ÇÑ ¸Þ¸ð¸® ÁÖ¼Ò¸¦ ±¸ÇÏ°í ½Í½À´Ï´Ù.[2]     krimson701
05/14 1862
1510   ȯ°æº¯¼ö¸¦ ÀÌ¿ëÇÑ bof     krimson701
05/08 1836
1509   ¾È³çÇϼ¼¿ä Eggshell¿¡ ´ëÇØ Áú¹® ÀÖ½À´Ï´Ù.[1]     Dork
03/24 2415
1508   ¸®´ª½º ¾î¼Àºí¸®¾î¸¦ È®½ÇÇÏ°Ô ÀÌÇØÇÏ°í ½Í½À´Ï´Ù.[4]     ka0r1
02/22 2036
1507   ftz level13 Áú¹®.....[2]     dbguswls030
01/23 2070
1506   fc3À» ÇÏ´Ù°¡ ±Ã±ÝÇÑ°Ô »ý°å½À´Ï´Ù     ljs0652
01/22 1715
1505   Á¦°¡ ½Ã½ºÅÛÇØÅ·À» °øºÎÇÏ·Á´Âµ¥ µµ¿ÍÁÖ¼¼¿ä!![2]     t0mcr00se
01/18 2355
1504   ¾È³çÇϼ¼¿ä FTZ Level4 °ü·Ã Áú¹®µå¸³´Ï´Ù.[2]     Dork
01/09 3334
1503   FTZ 18¹ø ¹®Á¦[2]     ka0r1
01/06 1836
1502   FTZ 19¹ø ¹®Á¦ °ü·Ã Áú¹®ÀÔ´Ï´Ù.[2]     tjdalstjr938
01/04 1922
1501   ȯ°æº¯¼ö¸¦ ÀÌ¿ëÇÑ BOF °ø°Ý½Ã Àǹ®Á¡ Áú¹®ÀÔ´Ï´Ù.[5]     tjdalstjr938
01/02 2313
1500   ÆÄÀÏ¿¡ setuid¸¦ ¼³Á¤ ¹× setreuid()ÇÔ¼ö     you88311
12/28 2497
1499   ¸®´ª½º or À©µµ¿ì ±¸Á¶ °øºÎ¹æ¹ý¿¡ ´ëÇؼ­     libera826
12/25 1961
1498   ÀÌ µÎ°³ÀÇ ¸í·É¾îÀÇ Â÷ÀÌÁ¡ÀÌ ¹º°¡¿ä?[2]     ka0r1
12/20 2064
1497   level13¿¡¼­(2)[2]     ka0r1
12/19 1916
1496   ÀÔ¹®ÀÚÀε¥ droidjack , spynote Áú¹®     jwjw9900
12/19 3143
1495   level13¿¡¼­[2]     ka0r1
12/19 1858
[1][2][3] 4 [5][6][7][8][9][10]..[79]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org