Anwendung - System Anwendung - System

Diese Herausforderungen werden Ihnen helfen, die Schwachstellen von Anwendungen zu verstehen.

Das Ziel ist es, zusätzliche Rechte zu erhalten, indem die Schwächen des Programms ausgenutzt werden und ein Kennwort zur Validierung von Aufrufen auf dem Portal erhalten wird.

Voraussetzung ist:
 GDB.
 Kenntnisse in ASM.
 Kenntnisse in der Sprache C.

challenges 93 Premium Übungen

Ergebnis Name Validierung Anzahl der Punkte  Erklärung der Punktevergabe Schwierigkeitsgrad  Schwierigkeitsgrad Autor Bewertung  Bewertung Musterlösung date
pas_valide ELF x86 - Stack buffer overflow basic 5 1% 1911 50 Lu33Y 0 8. Februar 2012
pas_valide ELF x86 - Stack buffer and integer overflow 1% 2022 50 Lu33Y 0 8. Februar 2012
pas_valide ELF x86 - Format string bug basic 1 4% 10073 15 Lu33Y 0 8. Februar 2012
pas_valide ELF x86 - Race condition 2% 6511 20 Lu33Y 0 8. Februar 2012
pas_valide ELF x86 - Stack buffer overflow basic 4 1% 2993 30 Lu33Y 0 8. Februar 2012
pas_valide ELF x86 - BSS buffer overflow 2% 4295 30 Lu33Y 1 8. Februar 2012
pas_valide LinKern x64 - SLUB off-by-one 1% 93 115 Tosh 0 9. Mai 2019
pas_valide ELF x86 - Hardened binary 7 1% 276 115 Tosh 0 21. Januar 2013
pas_valide ELF x86 - Remote BSS buffer overflow 1% 763 75 Tosh 0 6. Februar 2012
pas_valide ELF x86 - Remote Format String bug 1% 980 75 Tosh 0 6. Februar 2012
pas_valide ELF x64 - Remote Heap buffer overflow 1 1% 191 115 Tosh 0 26. Juni 2015
pas_valide ELF x86 - Hardened binary 1 1% 818 100 sm0k 0 11. Februar 2012
pas_valide ELF x86 - Hardened binary 2 1% 648 100 sm0k 0 11. Februar 2012
pas_valide ELF x86 - Hardened binary 4 1% 453 100 sm0k 0 11. Februar 2012
pas_valide ELF x86 - Hardened binary 5 1% 352 110 sm0k 0 11. Februar 2012
pas_valide ELF x86 - Hardened binary 6 1% 332 115 sm0k 0 11. Februar 2012
pas_valide ELF x86 - Hardened binary 3 1% 385 100 sm0k 0 11. Februar 2012
pas_valide ELF x64 - Stack buffer overflow - advanced 1% 1518 55 Arod 0 5. Juni 2015
pas_valide ELF x64 - Sigreturn Oriented Programming 1% 295 90 Arod 0 25. Juni 2015
pas_valide ELF x64 - Stack buffer overflow - basic 3% 7763 20 Arod 0 31. Mai 2015
pas_valide ELF x86 - Information leakage with Stack Smashing Protector 1% 928 60 Arod 0 20. Mai 2015
pas_valide ELF x86 - Stack buffer overflow basic 6 1% 3180 30 TiWim 1 10. März 2016
pas_valide ELF x86 - Stack buffer overflow - C++ vtables 1% 959 40 sebbb 0 20. Juli 2015
pas_valide ELF MIPS - Basic ROP 1% 183 40 dagger 0 7. Oktober 2018
pas_valide ELF x86 - Stack buffer overflow basic 1 7% 23244 5 Lyes 3 25. März 2015
pas_valide ELF x86 - Blind remote format string bug 1% 332 80 Lyes 0 8. Juni 2015
pas_valide ELF x86 - Stack buffer overflow basic 3 2% 5198 25 Lyes 0 10. April 2015
pas_valide ELF x86 - Stack buffer overflow basic 2 5% 16184 10 Lyes 1 10. April 2015
pas_valide ELF x86 - Format string bug basic 2 2% 5167 20 Lyes 0 8. April 2015
pas_valide ELF x86 - Format String Bug Basic 3 1% 1373 35 Lyes 0 27. Mai 2015
pas_valide ELF x64 - Basic heap overflow 1% 1612 10 sourcePerrier 0 13. Februar 2023
pas_valide LinKern MIPSel - Vulnerable ioctl 1% 72 100 pickle 0 23. Oktober 2018
pas_valide ELF x64 - Browser exploit - BitString 1% 39 135 pickle 0 15. Dezember 2018
pas_valide ELF ARM - Format String bug 1% 100 110 pickle 0 14. März 2017
pas_valide ELF ARM - Use After Free 1% 113 110 pickle 0 22. März 2017
pas_valide LinKern ARM - Stack Overflow 1% 72 110 pickle 0 24. Juli 2017
pas_valide LinKern ARM - vulnerable syscall 1% 169 85 pickle 0 22. März 2017
pas_valide ELF ARM - Heap Off-by-One 1% 72 115 pickle 0 11. März 2017
pas_valide ELF MIPS - URLEncoded Format String bug 1% 39 100 pickle 0 7. Oktober 2018
pas_valide ELF ARM - Stack buffer overflow - basic 1% 1404 25 pickle 1 9. März 2017
pas_valide ELF ARM - Stack Spraying 1% 284 30 pickle 0 2. April 2017
pas_valide LinKern x64 - RowHammer 1% 106 115 pickle 0 17. März 2019
pas_valide ELF x64 - Browser exploit - Intro 1% 105 70 pickle 0 2. November 2018
pas_valide ELF ARM - Race condition 1% 158 70 pickle 0 3. Juni 2017
pas_valide ELF ARM - Heap buffer overflow - Wilderness 1% 46 120 pickle 0 25. März 2017
pas_valide ELF ARM - Basic ROP 1% 870 40 pickle 0 11. März 2017
pas_valide ELF ARM - Heap Overflow 1% 58 120 pickle 0 2. April 2017
pas_valide ELF x64 - Seccomp Whitelist 1% 92 120 pickle 0 3. Juni 2017
pas_valide ELF ARM - Alphanumeric shellcode 1% 51 100 pickle 0 16. März 2017
pas_valide ELF x86 - Use After Free - basic 1% 1997 25 Esad 0 26. Mai 2019
pas_valide ELF x64 - Double free 1% 1032 25 Esad 0 23. März 2021
pas_valide ELF x64 - Off-by-one bug 1% 155 110 NeedToLearn 0 19. Mai 2016
pas_valide LinKern x64 - reentrant code 1% 197 100 franb 0 1. März 2016
pas_valide ELF ARM - Heap format string bug 1% 91 105 franb 0 3. Juni 2017
pas_valide LinKern x64 - Memory exploration 1% 142 120 franb 0 27. Juli 2016
pas_valide ELF MIPS - Stack buffer overflow - No NX 1% 548 25 franb 0 28. September 2018
pas_valide ELF x86 - Blind ROP 1% 157 120 franb 0 9. Oktober 2016
pas_valide ELF x86 - Remote stack buffer overflow - Hardened 1% 195 115 franb 0 17. August 2016
pas_valide ELF x64 - Blind ROP 1% 118 135 franb 0 10. März 2018
pas_valide LinKern x86 - basic ROP 1% 297 110 franb 0 6. Mai 2016
pas_valide ELF ARM64 - Multithreading 1% 20 140 franb 0 13. Februar 2023
pas_valide LinKern x64 - Race condition 1% 354 95 franb 0 16. Februar 2016
pas_valide LinKern x86 - Null pointer dereference 1% 519 90 franb 0 16. Februar 2016
pas_valide LinKern x86 - Buffer overflow basic 1 1% 546 85 franb 0 16. Februar 2016
pas_valide ELF x64 - Remote heap buffer overflow - tcache 1% 314 80 franb 0 5. Februar 2017
pas_valide ELF x64 - Heap feng-shui 1% 96 110 laxa 0 4. August 2017
pas_valide ELF x64 - ret2dl_init 1% 48 70 kikko 0 27. Mai 2021
pas_valide ELF x86 - Stack buffer overflow - ret2dl_resolve 1% 405 50 kikko 0 28. Februar 2019
pas_valide PE32 - Advanced stack buffer overflow 1% 250 35 Ech0 0 3. Dezember 2019
pas_valide PE32+ Format string bug 1% 106 45 Ech0 0 3. Dezember 2019
pas_valide PE32 - Stack buffer overflow basic 1% 2231 10 Ech0 0 3. Dezember 2019
pas_valide PE32+ Basic ROP 1% 74 75 Ech0 0 6. Dezember 2019
pas_valide ELF x86 - Out of bounds attack - French Paradox 1% 131 70 sbrk 0 17. September 2017
pas_valide ELF x86 - Bug Hunting - Several issues 1% 137 50 sbrk 0 19. Januar 2018
pas_valide ELF x64 - Logic bug 1% 244 50 sbrk 1 8. Juli 2017
pas_valide ELF x64 - Stack buffer overflow - PIE 1% 1108 30 HomardBoy 0 26. März 2021
pas_valide ELF x64 - Blind SROP 1% 11 100 s1m 0 28. Dezember 2023
pas_valide ELF x64 - Buggy VM 1% 72 70 NonStandardModel 0 10. Juni 2022
pas_valide ELF x64 - FILE structure hijacking 1% 67 110 voydstack 0 27. Mai 2021
pas_valide ELF x64 - Heap Filling 1% 109 60 voydstack 0 27. Mai 2021
pas_valide ELF x64 - Advanced Heap Exploitation - Heap Leakless & Fortified 1% 55 135 nobodyisnobody 0 27. Mai 2021
pas_valide ELF RISC-V - Intro - let’s do the ROP 1% 67 40 nobodyisnobody 0 13. Februar 2023
pas_valide ELF x64 - Advanced blind format string exploitation 0% 0 115 nobodyisnobody 0 11. Juli 2024
pas_valide ELF ARM64 - Heap Underflow 1% 24 120 nobodyisnobody 0 13. Februar 2023
pas_valide ELF x64 - File Structure Hacking 1% 106 65 nobodyisnobody 0 27. Mai 2021
pas_valide ELF x64 - Heap Safe-Linking Bypass 1% 84 70 nobodyisnobody 0 22. Oktober 2021
pas_valide ELF x64 - Heap Hop 1% 2 100 nobodyisnobody 0 11. Juli 2024
pas_valide ELF x64 - Syscall chaining 1% 12 95 Njörd 0 11. Juli 2024
pas_valide ELF x64 - Stack buffer overflow - Stack pivot 1% 46 40 spikeroot 0 11. Juli 2024
pas_valide ELF x64 - Remote Heap buffer overflow 2 1% 149 130 Tosh , Fritz 0 1. Juli 2015
pas_valide WinKern x64 - Advanced stack buffer overflow - ROP 1% 43 120 __syscall , Synacktiv 0 27. Januar 2020
pas_valide WinKern x64 - Use After Free 1% 32 120 __syscall , Synacktiv 0 27. Januar 2020
pas_valide ELF MIPS - Format String Glitch 1% 88 60 pickle , martin 0 21. Oktober 2018

Ergebnisse der Übungen Ergebnisse der Übungen

Nickname Übungen Sprache date
0xNasu App - Système  ELF x86 - Stack buffer overflow basic 1 fr 27. Juli 2024 zu  05:08
Floralys App - Système  ELF x86 - Stack buffer overflow basic 1 fr 27. Juli 2024 zu  02:33
Dvorhack App - Système  PE32+ Format string bug fr 26. Juli 2024 zu  23:36
Zélétix App - Système  ELF x64 - Stack buffer overflow - PIE fr 26. Juli 2024 zu  21:27
default App - Système  ELF x64 - Stack buffer overflow - Stack pivot fr 26. Juli 2024 zu  19:42
nuts. App - Système  ELF x64 - Stack buffer overflow - Stack pivot fr 26. Juli 2024 zu  19:40
0xs3gfault App - Système  LinKern x64 - Race condition fr 26. Juli 2024 zu  19:00
rere59910 App - Système  ELF x86 - Format string bug basic 1 fr 26. Juli 2024 zu  18:35
rere59910 App - Système  ELF x64 - Basic heap overflow fr 26. Juli 2024 zu  18:32
Prince2Lu App - Système  LinKern x64 - Race condition fr 26. Juli 2024 zu  17:39