½Ã½ºÅÛ ÇØÅ·

 1574, 8/79 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   vngkv123
   aslr ȯ°æ¿¡¼­...

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_system&no=1854 [º¹»ç]


64ºñÆ® µ¿Àû¸µÅ·»óÅ¿¡¼­, Äڵ尡 Á¤¸» readÇÔ¼ö¿Í return 0¸¸ Á¸ÀçÇÏ°í ¾î¶°ÇÑ Ãâ·ÂÇÔ¼ö°¡ Á¸ÀçÇÏÁö¾ÊÀ»¶§(16¹ÙÀÌÆ® ¹öÆÛ¿¡ 0x400¸¸Å­ read), read@got ¿£Æ®¸®¿¡ ÀÖ´Â °¡Á®¿Â readÁÖ¼Ò 1¹ÙÀÌÆ®¸¦ ÇÔ¼ö³» syscall·Î overwriteÇÏ¿© eax³ª rax·¹Áö½ºÅÍ¿¡ 1À» ³Ö°í  writeÇÔ¼ö¸¦ È£ÃâÇÏ´Â°Ô ÀÖ´øµ¥ Ȥ½Ã ÀÌ ¹æ¹ý¿¡ ´ëÇØ ¾Æ½Ã´Â ºÐ ÀÖ³ª¿ë?

libc¸¦ ¸ð¸£´Âȯ°æ¿¡¼­ ¾î¶»°Ô ÇØ´ç syscallÀÇ À§Ä¡¸¦ ¾Ë¾Æ¼­ 1¹ÙÀÌÆ® ¿À¹ö¶óÀÌÆ®¸¦ ÇÏ°í eax³ª rax(µÑ ´Ù ¾îÂ÷ÇÇ °ÅÀÇ °°Áö¸¸)¿¡ 1À» ³Ö¾îÁÖ´ÂÁö ¸ð¸£°Ú³×¿ä ... °¡Á¬µµ ¾ø´Â°Å °°´øµ¥..

https://devcraft.io/posts/2017/04/09/start-hard-asis-ctf-quals-2017.html

Àǹ®Á¡À» Ç°Àº asis 2017 start_hard¶ó´Â ¹®Á¦ÀÇ ¶óÀÌÆ®¾÷Àε¥ Ȥ½Ã ´äÇØÁÖ½Ç ¼ö ÀÖ´Â ºÐ °è¼ËÀ¸¸é ÁÁ°Ú½À´Ï´Ù ¤Ð

¶ÇÇÑ, ASLRȯ°æ¿¡¼­ ºÐ¸í libcÁÖ¼Òµµ ¹Ù²î¾î got entry¿¡ ¿Ã¶ó°¡´Â ÇÔ¼ö ÁÖ¼Òµµ Ç×»ó ¹Ù²ð°ÍÀε¥ ¿Ö gdb»ó¿¡¼­
got entry¸¦ run¹Ýº¹Çϸ鼭 º¸¸é ÁÖ¼Ò°¡ °è¼Ó ±×´ë·Î´øµ¥ ¿Ö±×·±°ÅÁÕ

  Hit : 2589     Date : 2017/04/12 04:31



    
vngkv123 syscallÀ» read·Î 1¹ÙÀÌÆ® ¿À¹ö¶óÀÌÆ® Çҽÿ¡ readÇÔ¼ö°¡ Å©±â¸¦ ¹ÝȯÇϱ⶧¹®¿¡ 1ÀÌ ¹ÝȯµÇ¼­ eax¿¡ 1ÀÌ ÀÖ´Â°Ç ¾Ë¾Ò½À´Ï´ç !! 2017/04/12  
ÇØÄð·¯ gdb¿¡¼­ ASLRÀ» ²ö »óÅ·Π½ÇÇàÇÒ ¼ö ÀÖ½À´Ï´Ù
https://outflux.net/blog/archives/2010/07/03/gdb-turns-off-aslr/
ÄÑÁø»óÅ¿¡¼­ µ¹¸®°í½ÍÀ¸½Ã¸é À§ ¸µÅ© Âü°íÇÏ½Ã¸é µË´Ï´Ù
2017/04/13  
1434   metasploit Áú¹®     kkhan97
05/27 2576
1433   strippedµÈ ¹ÙÀ̳ʸ®ÆÄÀÏÀ» µð¹ö±ëÇÒ¶§...[5]     vngkv123
04/01 2587
  aslr ȯ°æ¿¡¼­...[2]     vngkv123
04/12 2588
1431   realmode¿¡¼­ÀÇ ºÎÆ®ÄÚµå[3]     intmain1202
07/22 2595
1430     [re] ¿©±â¼­ Á¦°øÇÏ´Â ftz¿¡¼­ ·¹º§3´Ü°è ³Ñ¾î°¥¶§[1]     crazyuni
05/25 2595
1429     [re] Áö±Ý ftz ÆÄÀÏ»ý¼º µÇ½Ã³ª¿ä??¤Ð¤Ð     ÇѽÂÀç
08/18 2597
1428   hackcool´Ô °í¸¿½À´Ï´Ù. ±×·±µ¥ ±Ã±ÝÇÑ °ÍÀÌ Àִµ¥¿ä[3]     nutrue
08/23 2625
1427   pwn3r´Ô boom100¹®Á¦¿ä[5]     sehkmg
02/20 2630
1426   BOf°ü·Ã Áú¹®ÀÔ´Ï´Ù. [1]     miny480
05/29 2640
1425   ¹öÆÛ¿À¹öÇ÷οì Áú¹®ÀÔ´Ï´Ù.[1]     siosio24
11/07 2643
1424   ¶óÀ̺귯¸®ÆÄÀÏ »ç¿ë[1]     exqa123
02/05 2645
1423   ¤·¤¤¤·     junh2507
06/14 2651
1422   ÀâÁú¹®[4]     Nawsurus
08/27 2651
1421   vmware ÀԷ¹ý      ghj4890
07/27 2653
1420     [re] ¹öÆÛ¿À¹öÇ÷οì brute force ¿¡°üÇؼ­...     hihi2623
10/15 2655
1419   windows2003 °èÁ¤ Áú¹®...[7]     geneve27
08/17 2656
1418   À©µµ¿ìÁî ȯ°æ¿¡¼­ÀÇ setuid?[3]     namjmnam
12/31 2658
1417   À§¿¡ ´ëÇлýÀÖ´Â ºÎºÐÀÌ¿ä. Áú¹®ÇÕ´Ï´Ù.[1]     f787878
02/07 2659
1416     [re] µµ¼­°ü¿¡ ½©ÄÚµå ¹®¼­¸¦ º¸¸é¼­...     light2
08/02 2661
1415   ½©Äڵ带 ÀÌ¿ëÇؼ­ bof ¸¦ ÇÒ¶§[4]     tkakr7458
05/22 2670
[1][2][3][4][5][6][7] 8 [9][10]..[79]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org