ELF ARM - Heap Overflow

120 Punkte  0x0

Can you pwn the heap without convenient pointers to overwrite?

Autor

pickle,  

Stufe  Schwierigkeitsgrad

Validierung

24 Herausforderer 1%

Bewertung  Bewertung

11 votes

Bitte loggen Sie sich ein um auf diese Seite zugreifen zu können

  Musterlösung

Ergebnisse der Übungen Ergebnisse der Übungen

Nickname Übungen Sprache date
macz   ELF ARM - Heap Overflow 23. Dezember 2019 zu  21:45
Tomtombinary   ELF ARM - Heap Overflow 12. September 2019 zu  13:52
nonstandardmodel   ELF ARM - Heap Overflow 9. Mai 2019 zu  10:35
venom   ELF ARM - Heap Overflow 1. November 2018 zu  14:48
Jrmbt   ELF ARM - Heap Overflow 25. Oktober 2018 zu  18:54
Kurt   ELF ARM - Heap Overflow 2. Oktober 2018 zu  21:45
hTm1zZwW   ELF ARM - Heap Overflow 24. Februar 2018 zu  00:16
Kileak   ELF ARM - Heap Overflow 20. Februar 2018 zu  18:13
XeR   ELF ARM - Heap Overflow 4. Februar 2018 zu  21:59
panda   ELF ARM - Heap Overflow 16. Dezember 2017 zu  17:50

 75 Übungen

Ergebnis Name Validierung Anzahl der Punkte  Erklärung der Punktevergabe Schwierigkeitsgrad  Schwierigkeitsgrad Autor Bewertung  Bewertung Musterlösung
pas_valide ELF x86 - Stack buffer overflow basic 1 8% 13265 5 Lyes 2
pas_valide ELF x86 - Stack buffer overflow basic 2 6% 9626 10 Lyes 1
pas_valide PE32 - Stack buffer overflow basic 1% 260 10 Ech0 0
pas_valide ELF x86 - Format string bug basic 1 4% 6302 15 Lu33Y 0
pas_valide ELF x64 - Stack buffer overflow - basic 3% 4731 20 Arod 0
pas_valide ELF x86 - Format string bug basic 2 2% 3098 20 Lyes 0
pas_valide ELF x86 - Race condition 3% 4299 20 Lu33Y 0
pas_valide ELF ARM - Stack buffer overflow - basic 1% 811 25 pickle 1
pas_valide ELF MIPS - Stack buffer overflow - No NX 1% 240 25 franb 0
pas_valide ELF x86 - Stack buffer overflow basic 3 2% 3092 25 Lyes 0
pas_valide ELF x86 - Use After Free - basic 1% 614 25 Esad 0
pas_valide PE32 - Advanced stack buffer overflow 1% 41 25 Ech0 0
pas_valide PE32+ Egg Hunter 1% 12 25 Ech0 0
pas_valide ELF ARM - Stack Spraying 1% 146 30 pickle 0
pas_valide ELF x86 - BSS buffer overflow 2% 3124 30 Lu33Y 1
pas_valide ELF x86 - Stack buffer overflow basic 4 2% 2076 30 Lu33Y 0
pas_valide ELF x86 - Stack buffer overflow basic 6 2% 1811 30 TiWim 1
pas_valide ELF x86 - Format String Bug Basic 3 1% 822 35 Lyes 0
pas_valide ELF ARM - Basic ROP 1% 411 40 pickle 0
pas_valide ELF MIPS - Basic ROP 1% 74 40 dagger 0
pas_valide ELF x86 - Stack buffer overflow - C++ vtables 1% 586 40 sebbb 0
pas_valide ELF x64 - Logic bug 1% 127 50 sbrk 0
pas_valide ELF x86 - Bug Hunting - Several issues 1% 65 50 sbrk 0
pas_valide ELF x86 - Stack buffer and integer overflow 1% 1509 50 Lu33Y 0
pas_valide ELF x86 - Stack buffer overflow - ret2dl_resolve 1% 106 50 kikko 0
pas_valide ELF x86 - Stack buffer overflow basic 5 1% 1377 50 Lu33Y 0
pas_valide ELF x64 - Stack buffer overflow - advanced 1% 843 55 Arod 0
pas_valide ELF MIPS - Format String Glitch 1% 33 60 pickle, martin 0
pas_valide ELF x86 - Information leakage with Stack Smashing Protector 1% 620 60 Arod 0
pas_valide ELF ARM - Race condition 1% 90 70 pickle 0
pas_valide ELF x64 - Browser exploit - Intro 1% 46 70 pickle 0
pas_valide ELF x86 - Out of bounds attack - French Paradox 1% 73 70 sbrk 0
pas_valide ELF x86 - Remote BSS buffer overflow 1% 648 75 Tosh 0
pas_valide ELF x86 - Remote Format String bug 1% 799 75 Tosh 0
pas_valide PE32+ Basic ROP 1% 1 75 Ech0 0
pas_valide ELF x64 - Remote heap buffer overflow - fastbin 1% 189 80 franb 0
pas_valide ELF x86 - Blind remote format string bug 1% 219 80 Lyes 0
pas_valide LinKern ARM - vulnerable syscall 1% 81 85 pickle 0
pas_valide LinKern x86 - Buffer overflow basic 1 1% 313 85 franb 0
pas_valide LinKern x86 - Null pointer dereference 1% 324 90 franb 0
pas_valide LinKern x64 - Race condition 1% 196 95 franb 0
pas_valide ELF ARM - Alphanumeric shellcode 1% 25 100 pickle 0
pas_valide ELF MIPS - URLEncoded Format String bug 1% 16 100 pickle 0
pas_valide ELF x86 - Hardened binary 1 1% 543 100 sm0k 0
pas_valide ELF x86 - Hardened binary 2 1% 431 100 sm0k 0
pas_valide ELF x86 - Hardened binary 3 1% 273 100 sm0k 0
pas_valide ELF x86 - Hardened binary 4 1% 309 100 sm0k 0
pas_valide LinKern MIPSel - Vulnerable ioctl 1% 28 100 pickle 0
pas_valide LinKern x64 - reentrant code 1% 104 100 franb 0
pas_valide ELF ARM - Heap format string bug 1% 50 105 franb 0
pas_valide ELF x64 - Sigreturn Oriented Programming 1% 176 105 Arod 0
pas_valide ELF ARM - Format String bug 1% 59 110 pickle 0
pas_valide ELF ARM - Use After Free 1% 58 110 pickle 0
pas_valide ELF x64 - Heap feng-shui 1% 44 110 laxa 0
pas_valide ELF x64 - Off-by-one bug 1% 91 110 NeedToLearn 0
pas_valide ELF x86 - Hardened binary 5 1% 231 110 sm0k 0
pas_valide LinKern ARM - Stack Overflow 1% 34 110 pickle 0
pas_valide LinKern x86 - basic ROP 1% 156 110 franb 0
pas_valide ELF ARM - Heap Off-by-One 1% 33 115 pickle 0
pas_valide ELF x64 - Remote Heap buffer overflow 1 1% 111 115 Tosh 0
pas_valide ELF x86 - Hardened binary 6 1% 214 115 sm0k 0
pas_valide ELF x86 - Hardened binary 7 1% 179 115 Tosh 0
pas_valide ELF x86 - Remote stack buffer overflow - Hardened 1% 103 115 franb 0
pas_valide LinKern x64 - RowHammer 1% 32 115 pickle 0
pas_valide LinKern x64 - SLUB off-by-one 1% 21 115 Tosh 0
pas_valide ELF ARM - Heap buffer overflow - Wilderness 1% 22 120 pickle 0
pas_valide ELF ARM - Heap Overflow 1% 24 120 pickle 0
pas_valide ELF x64 - Seccomp Whitelist 1% 36 120 pickle 0
pas_valide ELF x86 - Blind ROP 1% 77 120 franb 0
pas_valide Linkern x64 - Memory exploration 1% 70 120 franb 0
pas_valide WinKern x64 - Advanced stack buffer overflow - ROP 1% 1 120 __syscall, Synacktiv 0
pas_valide WinKern x64 - Use After Free 1% 1 120 __syscall, Synacktiv 0
pas_valide ELF x64 - Remote Heap buffer overflow 2 1% 82 130 Tosh, Fritz 0
pas_valide ELF x64 - Blind ROP 1% 48 135 franb 0
pas_valide ELF x64 - Browser exploit - BitString 1% 17 135 pickle 0