Premium Only Content
Leaking Secret Data with a Heap Overflow - "Leek" Pwn Challenge [Angstrom CTF 2023]
Video walkthrough for the binary exploitation (pwn) challenge, "Leek" from the Angstrom capture the flag (CTF) competition 2023. The challenge involves performing a heap overflow to overwrite all null bytes between our user input chunk and secret data chunk so that when puts() is called, it prints both chunks (there's no null terminator separating them). After this, we need to repair the header of the chunk we modified so that the program can continue execution. We repeat this process of leaking and submitting the random (secret) bytes 100 times, at which point we receive the flag! Write-ups/tutorials aimed at beginners - Hope you enjoy 🙂 #Angstrom #AngstromCTF #CTF #Pentesting #OffSec #Pwn #BinaryExploitation #Reversing #ReverseEngineering
↢Social Media↣
Twitter: https://twitter.com/_CryptoCat
GitHub: https://github.com/Crypto-Cat/CTF
HackTheBox: https://app.hackthebox.eu/profile/11897
LinkedIn: https://www.linkedin.com/in/cryptocat
Reddit: https://www.reddit.com/user/_CryptoCat23
YouTube: https://www.youtube.com/CryptoCat23
Twitch: https://www.twitch.tv/cryptocat23
↢AngstromCTF↣
https://ctftime.org/event/1859
https://2023.angstromctf.com/challenges
https://discord.gg/Dduuscw
https://twitter.com/angstromctf
↢Resources↣
Ghidra: https://ghidra-sre.org/CheatSheet.html
Volatility: https://github.com/volatilityfoundation/volatility/wiki/Linux
PwnTools: https://github.com/Gallopsled/pwntools-tutorial
CyberChef: https://gchq.github.io/CyberChef
DCode: https://www.dcode.fr/en
HackTricks: https://book.hacktricks.xyz/pentesting-methodology
CTF Tools: https://github.com/apsdehal/awesome-ctf
Forensics: https://cugu.github.io/awesome-forensics
Decompile Code: https://www.decompiler.com
Run Code: https://tio.run
↢Chapters↣
Start: 0:00
Patch lib-c (pwninit): 0:20
Test the program functionality: 1:05
Check the binary protections (checksec): 1:37
Analyse decompiled code (ghidra): 3:53
Recap of analysis: 6:51
PwnTools script: 8:40
Setup breakpoints: 14:38
Debug with GDB (pwndbg): 15:33
Heap recap (chunk structure): 16:20
Reviewing vulnerability / exploit: 18:01
Finish PwnTools script: 20:40
Test against remote server: 24:13
Final recap: 25:07
End: 25:56
-
15:01
GritsGG
12 hours agoSolo Dubulars! Most Winning Warzone Player Dominates Lobby!
55 -
13:12
The Pascal Show
16 hours ago $0.01 earnedTYLER'S ARREST FOOTAGE MISSING?! Local Police Claim Tyler Robinson Arrest Footage Has BEEN DELETED?!
48 -
LIVE
Lofi Girl
2 years agoSynthwave Radio 🌌 - beats to chill/game to
319 watching -
1:37:16
omarelattar
17 hours agoEx-Mafia Boss: I Made $8 Million Every Week Until The FBI Destroyed My Life! What I Learned...
10 -
57:44
TruthStream with Joe and Scott
1 day agoShe's of Love podcast and Joe co-Hosted interview, Mother Claudia and Daughter Juliette: Traveling, Home School, Staying Grounded, Recreating oneself, SolarPunk #514
3.26K -
2:32:42
CAMELOT331
2 days agoCAMELCAST 107 | CECIL SAYS | My Last Stream? Being Kicked Off Youtube
1.78K2 -
1:16:28
Man in America
15 hours agoThe Study They Tried to BURY: Covid Shots Cause MASSIVE Spike in Cancer w/ Dr. Makis
171K36 -
2:07:43
Inverted World Live
8 hours agoNASA Finds Strange Rock on Mars w/ Cody Dennison | Ep. 145
95.4K5 -
3:29:04
TimcastIRL
7 hours agoTrump Calls For DEATH Of Democrats For Sedition, White House WALKS IT BACK | Timcast IRL
244K130 -
24:13
Jasmin Laine
11 hours agoPoilievre Can’t Stop LAUGHING—Liberals IMPLODE After U.S. Ambassador Calls Them Out
24.6K21