ELF MIPS - URLEncoded Format String bug

100 Points  

Parfois, les mitigations de sécurité consistent simplement à ralentir l’attaquant lors de l’exploitation

Auteur

pickle,  

Niveau  Difficulté

Validations

8 Challengeurs 1%

Note  Notation

10 votes
Pour accéder à cette partie du site, veuillez vous authentifier

Challenges publiés dans cette rubrique 69 Challenges

Résultats Nom de l'épreuve Validations Nombre de points  Explications sur les scores Difficulté  Difficulté Auteur Note  Notation Solution
pas_valide ELF x86 - Stack buffer overflow basic 1 9% 10715 5 Lyes 9
pas_valide ELF x86 - Stack buffer overflow basic 2 7% 8057 10 Lyes 6
pas_valide ELF x86 - Format string bug basic 1 5% 5360 15 Lu33Y 7
pas_valide ELF x64 - Stack buffer overflow - basic 3% 3874 20 Arod 9
pas_valide ELF x86 - Format string bug basic 2 2% 2628 20 Lyes 6
pas_valide ELF x86 - Race condition 3% 3603 20 Lu33Y 11
pas_valide ELF ARM - Stack buffer overflow - basic 1% 603 25 pickle 4
pas_valide ELF MIPS - Stack buffer overflow - No NX 1% 132 25 franb 2
pas_valide ELF x86 - Stack buffer overflow basic 3 2% 2579 25 Lyes 5
pas_valide ELF x86 - Use After Free - basic 1% 10 25 Esad 0
pas_valide ELF ARM - Stack Spraying 1% 120 30 pickle 5
pas_valide ELF x86 - BSS buffer overflow 3% 2878 30 Lu33Y 7
pas_valide ELF x86 - Stack buffer overflow basic 4 2% 1902 30 Lu33Y 4
pas_valide ELF x86 - Stack buffer overflow basic 6 2% 1509 30 TiWim 6
pas_valide ELF x86 - Format String Bug Basic 3 1% 716 35 Lyes 5
pas_valide ELF ARM - Basic ROP 1% 285 40 pickle 4
pas_valide ELF MIPS - Basic ROP 1% 45 40 dagger 2
pas_valide ELF x86 - Stack buffer overflow - C++ vtables 1% 505 40 sebbb 6
pas_valide ELF x64 - Logic bug 1% 95 50 sbrk 4
pas_valide ELF x86 - Bug Hunting - Plusieurs problèmes 1% 49 50 sbrk 3
pas_valide ELF x86 - Stack buffer and integer overflow 2% 1401 50 Lu33Y 3
pas_valide ELF x86 - Stack buffer overflow - ret2dl_resolve 1% 49 50 kikko 2
pas_valide ELF x86 - Stack buffer overflow basic 5 1% 1290 50 Lu33Y 5
pas_valide ELF x64 - Stack buffer overflow - avancé 1% 695 55 Arod 9
pas_valide ELF MIPS - Format String Glitch 1% 21 60 pickle, martin 2
pas_valide ELF x86 - Information leakage with Stack Smashing Protector 1% 520 60 Arod 2
pas_valide ELF ARM - Race condition 1% 71 70 pickle 3
pas_valide ELF x64 - Browser exploit - Intro 1% 28 70 pickle 1
pas_valide ELF x86 - Out of bounds attack - French Paradox 1% 62 70 sbrk 4
pas_valide ELF x86 - Remote BSS buffer overflow 1% 615 75 Tosh 4
pas_valide ELF x86 - Remote Format String bug 1% 754 75 Tosh 4
pas_valide ELF x64 - Remote heap buffer overflow - fastbin 1% 158 80 franb 2
pas_valide ELF x86 - Blind remote format string bug 1% 198 80 Lyes 5
pas_valide LinKern ARM - syscall vulnérable 1% 63 85 pickle 3
pas_valide LinKern x86 - Buffer overflow basic 1 1% 260 85 franb 4
pas_valide LinKern x86 - Null pointer dereference 1% 272 90 franb 1
pas_valide LinKern x64 - Race condition 1% 175 95 franb 1
pas_valide ELF ARM - Shellcode alphanumérique 1% 21 100 pickle 0
pas_valide ELF MIPS - URLEncoded Format String bug 1% 8 100 pickle 1
pas_valide ELF x86 - Hardened binary 1 1% 482 100 sm0k 7
pas_valide ELF x86 - Hardened binary 2 1% 384 100 sm0k 9
pas_valide ELF x86 - Hardened binary 3 1% 244 100 sm0k 5
pas_valide ELF x86 - Hardened binary 4 1% 273 100 sm0k 9
pas_valide LinKern MIPSel - Vulnerable ioctl 1% 14 100 pickle 1
pas_valide LinKern x64 - code réentrant 1% 92 100 franb 1
pas_valide ELF ARM - Heap format string bug 1% 39 105 franb 1
pas_valide ELF x64 - Sigreturn Oriented Programming 1% 165 105 Arod 4
pas_valide ELF ARM - Format String bug 1% 44 110 pickle 1
pas_valide ELF ARM - Use After Free 1% 44 110 pickle 1
pas_valide ELF x64 - Heap feng-shui 1% 34 110 laxa 1
pas_valide ELF x64 - Off-by-one bug 1% 82 110 NeedToLearn 3
pas_valide ELF x86 - Hardened binary 5 1% 202 110 sm0k 8
pas_valide LinKern ARM - Stack Overflow 1% 25 110 pickle 1
pas_valide LinKern x86 - basic ROP 1% 137 110 franb 5
pas_valide ELF ARM - Heap Off-by-One 1% 30 115 pickle 1
pas_valide ELF x64 - Remote Heap buffer overflow 1 1% 98 115 Tosh 3
pas_valide ELF x86 - Hardened binary 6 1% 192 115 sm0k 7
pas_valide ELF x86 - Hardened binary 7 1% 155 115 Tosh 6
pas_valide ELF x86 - Remote stack buffer overflow - Hardened 1% 84 115 franb 3
pas_valide LinKern x64 - RowHammer 1% 20 115 pickle 1
pas_valide LinKern x64 - SLUB off-by-one 1% 9 115 Tosh 0
pas_valide ELF ARM - Heap buffer overflow - Wilderness 1% 19 120 pickle 1
pas_valide ELF ARM - Heap Overflow 1% 22 120 pickle 1
pas_valide ELF x64 - Seccomp Whitelist 1% 30 120 pickle 1
pas_valide ELF x86 - Blind ROP 1% 59 120 franb 5
pas_valide Linkern x64 - Memory exploration 1% 60 120 franb 4
pas_valide ELF x64 - Remote Heap buffer overflow 2 1% 72 130 Tosh, Fritz 2
pas_valide ELF x64 - Blind ROP 1% 36 135 franb 1
pas_valide ELF x64 - Browser exploit - BitString 1% 14 135 pickle 2