poniedziałek, 9 października 2017

Protostart CTF - heap0 - walkthrough

During last few days I had a pleasure to learn a little bit more about heap exploitation in Linux. I decided that it will be a good moment to take a look for a ProtostarCTF. Below you will find few details about it...

Challenge is pretty easy. We need to overwrite pointer of the winner() function. As you can see, name field in "struct data" is prepared for 64characters. Let's use more and address-of-winner to exploit it:

I think that's all for this challenge. See you next time ;)


