½Ã½ºÅÛ ÇØÅ·

 1574, 6/79 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   starboy7
   buflabÀ̶ó´Â °ÍÀ» ÇÏ°í Àִµ¥..

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_system&no=1443 [º¹»ç]


¿ì¼± ¾ÆÁ÷ Ãʺ¸¶ó´Â °ÍÀ» ¾Ë·Áµå¸®¸ç..
buflabÀ̶ó´Â °ÍÀ» Çб³ ÄÄÇ»ÅͽýºÅÛ°³·Ð½Ã°£¿¡ ÇÏ°í ÀÖ½À´Ï´Ù.

0,1´Ü°è ¼º°øÇÏ°í 2´Ü°è(firecracker)¶ó´Â °÷¿¡¼­

[buf(12)][sfp(4)][ret(4)]ÀÌ·¸°Ô µÇ¼­

¸¸µé°íÀÚ ÇÏ´Â ¹Ù´Â globalº¯¼ö¿¡´Ù°¡ ÀúÀÇ °íÀ¯°ªÀ» ³ÖÀº ÈÄ ¿øÇÏ´Â ÇÔ¼ö·Î µ¹¾Æ°¡´Â °Çµ¥¿ä.

±×·¡¼­

mov $0x°íÀ¯°ª8ÀÚ,%eax
mov %eax, globalº¯¼öÁÖ¼Ò
push ÇÔ¼öÁÖ¼Ò
ret
bufÁÖ¼Ò

ÀÌ·¸°Ô ÇÏ°í gcc -c .... , objdump -d ... Çؼ­

b8 f8 60 d0 62                
89 04 25 bc a1 04 08
68 f0 8c 04 08
c3
1c bd ff ff
¸¦ ¾ò¾ú½À´Ï´Ù.
±×·±µ¥ ¹®Á¦´Â c3 ¾Õ±îÁö 15¹ÙÀÌÆ®°¡ ³ª¿Í¾ßµÇ´Âµ¥ ¾Æ¹«¸® »ý°¢Çصµ
16¹ÙÀÌÆ®°¡ ÃÖ´ëÀÎ °Í °°½À´Ï´Ù.(mov °íÀ¯°ª,globalº¯¼ö·Î ¹Ù·Î)

1.¾î¶»°Ô ÇØ°áÇؾߵdzª¿ä Á¦°¡ Áö±Ý À߸ø »ý°¢ÇÏ°í ÀÖ´Â °ÍÀÎÁö.

2.±×¸®°í Á¦°¡ Áö±Ý bufÁÖ¼Ò¸¦ ¾òÀ» ¶§
buf°¡ ÀÖ´Â ÇÔ¼ö¿¡¼­ p /x $eax·Î buf·Î ¾ò¾ú´Âµ¥ ÀÌ ¹æ¹ýÀÌ ¸ÂÀ»±î¿ä
p /x &global_valueÇß´ø °Íó·³ p /x &buf·Î´Â ¾ÈµÇ³ª¿ä.


  Hit : 5433     Date : 2010/11/16 12:12



    
¸Û¸Û BUFLABÀÌ ¾îµðÁÒ? óÀ½ µè³×¿ä~
¼­¹ö ÁÖ¼Ò.. ȤÀº C ¼Ò½º ÄÚµå or ¹ÙÀ̳ʸ®¸¦ ÇÔ²² ¿Ã·ÁÁÖ½Ã¸é ´äº¯µå¸®±â°¡
½¬¿ï °Í °°½À´Ï´Ù.
2010/11/19  
starboy7 ³×À̹ö¿¡´Ù°¡ buflab Ä¡½Ã¸é ³ª¿À½Ã±ä ÇÒÅÙµ¥ ¤¾¤¾ ¹«Æ° Àß ÇØ°áÇß½À´Ï´Ù. ÀÌÁ¦¼­¾ß ´Ù½Ã µé¾î¿ÍºÃ³×¿ä. ¤¾¤¾; ±× ¶§´Â ³Ê¹« ±ÞÇؼ­¿ä.. execstack ÀÌ¿ëÇß´õ´Ï µ¹¾Æ°¬³×¿ä..;;; ¸ô¶ú½À´Ï´Ù ¤§¤§ 2010/11/27  
1474   BIOS Æнº¿öµå ¹®Á¦Àä...[4]     abcd941212
05/06 5472
1473   Æ÷Æ®½ºÄµÀ̶û Æ÷Æ®¸·±â/¿­±â¿¡ °üÇؼ­..[2]     ceel
01/18 5470
1472   netbus 1.7 À» ½ÇÇàÇÏ°í connect ¸¦ Ŭ¸¯Çصµ ¹ÝÀÀÀÌ ¾ø½À´Ï´Ù.[3]     whk5810
04/15 5447
1471   »ó´ë¹æ ¾ÆÀÌÇǸ¦ ¾Ë¼öÀִ¹æ¹ýÀÌ ¸Ó°¡ÀÖÀ»±î¿ä?[2]     aq300
06/29 5445
  buflabÀ̶ó´Â °ÍÀ» ÇÏ°í Àִµ¥..[2]     starboy7
11/16 5432
1469     [re] °í¼ö´Ôµé..Á¦¹ß....     ¼ÒÀ¯
09/16 5432
1468   ²À Á» ÀоîÁÖ½Ã°í µµ¿ò ¸»¾¸ ºÎŹµå¸±²²¿ä...     ÃÖ¹ÎÁÖ
06/23 5413
1467   ascii armor °ü·Ã Áú¹®[1]     evernick
01/19 5400
1466   Àç°¡ ±× ÇØÅ·¸¸È­ ´ÙºÁµµ ÇØÅ·Çϴ¹ýÀ»¸ô¸£°Ù³×¿ä ¤Ð¤Ð[2]     dltmdeh22
12/01 5397
1465   À©µµ¿ì ÇØÅ·¿¡´ëÇÏ¿©...[2]     hgk617
06/17 5392
1464   ³» ÄÄÇ»ÅÍ ÇØÅ·À¸·Î ³»°¡ ÇÏ´Â ³»¿ëÀ» ¸ðµÎ º¼¼öÀÖ´øµ¥¿ä[7]     kkkk4321
06/10 5389
1463   ¼­¹ö¸¦ ÇØÅ·ÇÒ ¶© Å͹̳ο¡ Á¢¼ÓÇؾ߸¸ Çϳª¿ä?[5]     supershop
03/06 5365
1462   ÀÚ±âÄÄ ÇØÅ·Çϱ⠴ÙÀÌ·ºÆ®ÀÌ¿ë[1]     ulhack
11/05 5314
1461   ³Ý¹ö½º¶§¹®¿¡ Á¦¹ß ¤Ì¤Ì[2]     ³»°¡¼¼»óÀÇÁß½ÉÀÌ´Ù
05/24 5271
1460   ÀÌ ÇØÅ·ÇÁ·Î±×·¥ÂÍ Ã£¾ÆÁÖ¼¼¿ä.[6]     exit4123
05/23 5268
1459   metasploit¿¡ ÀÚ¼¼È÷ ¾Æ½Ã´ÂºÐ~?     neit
09/01 5265
1458   ¿øÃÊÀûÀÎ ÇØÅ·Áú¹®Çϳª;[3]     Åʱ¸
03/28 5264
1457     [re] ÇØÅ·À¸·Î ÀÌ·±°Íµµ °¡´ÉÇÑ°¡¿ä>?[1]     ¼ÒÀ¯
10/08 5257
1456   Ç÷¡½ÃÆÄÀÏÀ» ¾Ïȣȭ½ÃÄÑ°í[5]     ¿³Àå¼ö
01/10 5256
1455   ip ÃßÀû¿¡ °üÇÑ °Çµ¥¿ä[4]     qudcjf1594
01/31 5248
[1][2][3][4][5] 6 [7][8][9][10]..[79]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org