ELF x86 - Blind remote format string bug

80 Points  

Network service attack without binary or source code

Author

Lyes,  

Level  Difficulty

Validations

153 Challengers 1%

Note  Notation

30 Votes
To reach this part of the site please login

Solution  Solution


Challenges associated with this section 57 Challenges

Results Challenge's Name Validations Number of points  Explanation for the scores Difficulty  Difficulty Author Note  Notation Solution
pas_valide ELF x86 - Stack buffer overflow basic 1 9% 6733 5 Lyes 11
pas_valide ELF x86 - Stack buffer overflow basic 2 7% 5209 10 Lyes 8
pas_valide ELF x86 - Format string bug basic 1 5% 3612 15 Lu33Y 4
pas_valide ELF x64 - Stack buffer overflow - basic 4% 2500 20 Arod 4
pas_valide ELF x86 - Format string bug basic 2 3% 1715 20 Lyes 5
pas_valide ELF x86 - Race condition 4% 2639 20 Lu33Y 7
pas_valide ELF ARM - Stack buffer overflow - basic 1% 272 25 pickle 5
pas_valide ELF x86 - Stack buffer overflow basic 3 3% 1759 25 Lyes 2
pas_valide ELF ARM - Stack Spraying 1% 65 30 pickle 3
pas_valide ELF x86 - BSS buffer overflow 3% 2269 30 Lu33Y 4
pas_valide ELF x86 - Stack buffer overflow basic 4 2% 1479 30 Lu33Y 4
pas_valide ELF x86 - Stack buffer overflow basic 6 2% 963 30 TiWim 4
pas_valide ELF x86 - Format String Bug Basic 3 1% 514 35 Lyes 2
pas_valide ELF ARM - Basic ROP 1% 123 40 pickle 2
pas_valide ELF x86 - Stack buffer overflow - C++ vtables 1% 371 40 sebbb 2
pas_valide ELF x64 - Logic bug 1% 48 50 sbrk 1
pas_valide ELF x86 - Bug Hunting - Several issues 1% 13 50 sbrk 0
pas_valide ELF x86 - Stack buffer and integer overflow 2% 1172 50 Lu33Y 3
pas_valide ELF x86 - Stack buffer overflow basic 5 2% 1072 50 Lu33Y 1
pas_valide ELF x64 - Stack buffer overflow - advanced 1% 467 55 Arod 3
pas_valide ELF x86 - Information leakage with Stack Smashing Protector 1% 402 60 Arod 2
pas_valide ELF ARM - Race condition 1% 42 70 pickle 1
pas_valide ELF x86 - Out of bounds attack - French Paradox 1% 28 70 sbrk 1
pas_valide ELF x86 - Remote BSS buffer overflow 1% 529 75 Tosh 1
pas_valide ELF x86 - Remote Format String bug 1% 641 75 Tosh 2
pas_valide ELF x64 - Remote heap buffer overflow - fastbin 1% 85 80 franb 0
pas_valide ELF x86 - Blind remote format string bug 1% 153 80 Lyes 0
pas_valide LinKern ARM - vulnerable syscall 1% 42 85 pickle 0
pas_valide LinKern x86 - Buffer overflow basic 1 1% 194 85 franb 1
pas_valide LinKern x86 - Null pointer dereference 1% 196 90 franb 0
pas_valide LinKern x64 - Race condition 1% 133 95 franb 0
pas_valide ELF ARM - Alphanumeric shellcode 1% 13 100 pickle 1
pas_valide ELF x86 - Hardened binary 1 1% 392 100 sm0k 2
pas_valide ELF x86 - Hardened binary 2 1% 303 100 sm0k 2
pas_valide ELF x86 - Hardened binary 3 1% 197 100 sm0k 1
pas_valide ELF x86 - Hardened binary 4 1% 218 100 sm0k 1
pas_valide LinKern x64 - reentrant code 1% 77 100 franb 1
pas_valide ELF ARM - Heap format string bug 1% 25 105 franb 0
pas_valide ELF x64 - Sigreturn Oriented Programming 1% 116 105 Arod 2
pas_valide LinKern x86 - basic ROP 1% 99 110 franb 0
pas_valide ELF ARM - Format String bug 1% 33 110 pickle 0
pas_valide ELF ARM - Use After Free 1% 28 110 pickle 0
pas_valide ELF x64 - Heap feng-shui 1% 24 110 laxa 0
pas_valide ELF x64 - Off-by-one bug 1% 57 110 NeedToLearn 0
pas_valide ELF x86 - Hardened binary 5 1% 150 110 sm0k 1
pas_valide LinKern ARM - Stack Overflow 1% 14 110 pickle 0
pas_valide ELF ARM - Heap Off-by-One 1% 24 115 pickle 1
pas_valide ELF x64 - Remote Heap buffer overflow 1 1% 73 115 Tosh 1
pas_valide ELF x86 - Hardened binary 6 1% 140 115 sm0k 1
pas_valide ELF x86 - Hardened binary 7 1% 112 115 Tosh 2
pas_valide ELF x86 - Remote stack buffer overflow - Hardened 1% 52 115 franb 1
pas_valide ELF - Blind ROP 1% 35 120 franb 0
pas_valide ELF ARM - Heap buffer overflow - Wilderness 1% 15 120 pickle 0
pas_valide ELF ARM - Heap Overflow 1% 16 120 pickle 0
pas_valide ELF x64 - Seccomp Whitelist 1% 19 120 pickle 0
pas_valide Linkern x64 - Memory exploration 1% 42 120 franb 1
pas_valide ELF x64 - Remote Heap buffer overflow 2 1% 56 130 Tosh, Fritz 1