poniedziałek, 9 października 2017

Protostart CTF - heap1 - walkthrough

In our last challenge we were able to overwrite the pointer of winner(). Let's see if we can expoit heap1 available also in ProtostarCTF. Details below...


I'm using ltrace to check behaviour of the program:


Now we will get puts GOT address as well as the winner() address:


...and we have a winner! ;)

Cheers
 

Brak komentarzy:

Prześlij komentarz