Username: 
Password: 
Restrict session to IP 

pointers?  Go to the The Last Hope challenge

Global Rank: 537
Totalscore: 47160
Posts: 37
Thanks: 21
UpVotes: 24
Registered: 12y 36d
stormsurfer`s Avatar



Last Seen: 7y 147d
The User is Offline
pointers?
Google/translate2Thank You!1Good Post!1Bad Post! link
Can I get some pointers on this? I've been working on it for a few good hours now and got nothing, it's very frustrating. I cracked it and removed the anti ptrace function to be able to use gdb on it, but I don't see the username any where. I didn't even began to look in the password section.

I also think I disabled the CAPS check, but not sure what the lc function does, at first I tought it check the lenghts of the username string but then I noticed I only enter it when I use all caps in the username (like AAAAA). in any case I can find my username string in the stack but I don't see the real username any where. I feel like I'm shooting blanks.

also does the md5 strings in the binary have anything do to with the user or pass? or they just decoy?
Global Rank: 54
Totalscore: 255344
Posts: 156
Thanks: 132
UpVotes: 163
Registered: 16y 268d





Last Seen: 2d 9h
The User is Offline
RE: pointers?
Google/translate2Thank You!2Good Post!1Bad Post! link
You did something wrong along the way Drool
Global Rank: 671
Totalscore: 38731
Posts: 19
Thanks: 17
UpVotes: 24
Registered: 7y 14d
FranzT`s Avatar
Last Seen: 3d 12h
The User is Offline
RE: pointers?
Google/translate2Thank You!1Good Post!1Bad Post! link
I did it the hard way: decompile everything -- the program is small enough to be done manually -- then analyze the code.
It was fun.
Global Rank: 7387
Totalscore: 1346
Posts: 3
Thanks: 3
UpVotes: 3
Registered: 5y 127d
Last Seen: 1y 123d
The User is Offline
RE: pointers?
Google/translate1Thank You!1Good Post!0Bad Post! link
read http://www.exploit-db.com/papers/13234/ , use ida + gdb +python
Redknee, ckclark, tunelko, silenttrack, n0tHappy, nonfungiblesecurity, stormsurfer, quangntenemy, TheHiveMind, Z, balicocat, Ge0, samuraiblanco, arraez, jcquinterov, hophuocthinh, alfamen2, burhanudinn123, Ben_Dover, stephanduran89, braddie0, SwolloW, dangarbri have subscribed to this thread and receive emails on new posts.
1 people are watching the thread at the moment.
This thread has been viewed 13774 times.