nyupcs / pcs-sp21-lab2-server

0 stars 0 forks source link

exploit-main #38

Open kylesyx opened 3 years ago

kylesyx commented 3 years ago

-----BEGIN PGP MESSAGE-----

hQIMA7KtScPIyW/lARAArfx39pL4Mx1yUvjFoGors/cl1sX5D97aN8gGerHjTWcH q1opYS6guRnIydYF9d2BLnXWtQ27XMabP4aqwNMrLkqUU3nQ3eYUn8oF2kWoBqXX 1VHMPny/tzYwvPz4HePHfawpicNQkZT/ugLp9SkxXkTWxwSbverxByefx4TkKZdN IW8Z7TqqiUImat2H5X+yvJeZv48+vj9XN54zxHRqiypOUCWG1gB8creQvFxuUUDv A0n00CA9MU1Drcri1tbIs71K3CqjexaCxRy/cAUOyets/bw75f9Q1CJvimPbmVoE FRTIa5xI8YUOtD/m3hiYyBULeXRCkrFslnfNUmsSdbbaBEkcJur34vPUUvpvuxrJ HJBVZe4lwaJG3idinLpXFzSAEApBhGBuABX7Bm1YHYQbrO0UwErydaOgmCxvPlui mNSqsSVX0+50M2k9uVD//kl7bQJZirvutonJWfdFkjTh15E6HsNP7QeVn9+WlneV 87SMWCTD1VsKZwn1QZNtNM/yGXWNQCVD5RsdtaCWOPFrS+S3XjQNwwAeNwjhRqJx qJ3vQOiH8keMcBxvbRGNgk6PPllZEKJugNdfiIGn6yB+3FdtMKSHbPE+LC5Qh0KQ j1KPg2zXQgZPJWpELr1CDBtJlwl9cvkF8U4KcCEik7IgX58DZwCCBT/k8RAS5zPS 6wH0ma8ONawB/DBAVZyvNviEK9pzejpy92Y9gD529YWuawl1jAhMl5uSiIUTTdbJ O/GbPSXE3uBrGFujUEmQEBqHzRKo8CRLdRLRnDykmnXksXhMQxhqeSQoodhq7i3v zUIND5XADxYV+K5PiRcmACzhs3Pt4nRGJefer+lGK//Ey8NAJ2ITNsW6LX0MWBfU pHd4FKsxaYPi884a6fcbQfOgN3BHKf1CK+AsTZ3pMsfNkR45xgiaWNZxAOzIZheZ nra7ZSzFylq+m7ghU4mQb0f3XO1kwrhDs8zYwwYUBddwB+lrzny99ZiM/b2x3sEa C6581SuUm87T5w/UhgBFrMUwwWQ3oYAtxStu/rzF5n+c1ZUUUFG2Gdv1JJxNd6ji KCbauMezfWK9I4orhp4HjnLhlHRvwBBN25fIlkBLVbr8w/33rQ1nwIHeDXCkZh3i thLvOzaqHJ7DkEEXqYzKql2IRb9nLzH7dvXyR2zbPstYsC0va3Xoaa6ZIW+80Usu uUpFmI/Z8LF5HcgHBOIJmE724ogcoc5mOw1ylTw49eREuorlV4FsYuiQZAfYOGp1 dWTCtu9XAYsv7plBuKzEy893D9DRqpiieoPPc9PCUV73P+8TvvmiP0dI6xD7Tsck Cxm7sv8kpPl3yfCAoAK4HZwuZ1Q4ssNXcia6TU1S3mVuzd88LFvwPfBbLb3eD44r pMpu2YF+QVb7K6rgitjf1VshLC3IjJb+ormOzjAASgKQyKju7KFmRP1S/zOjgUHU WNtYnR3s8B5z3gINFPn9CcS6ONESTVOpl9s/qtXg5sk2in/mn80cs1TX2T5JR2mT lfODrEGbXCbubTWkS+MbwKls0uekdocsoVYhjFQAyDG69L2bTEvNdjIM1WYFpB8R zetc8lgDx3uoIN5RuMSVPzA0ZF5yMh+4ifktTfaYphykTrj0bIusvWvuHYCfibhF 7ewBxlvGESDvV7C896j/q5O6ZGlmxVhfsRFOofrPzTcH39JTTtpc0upJOa+d8Ejh LE2i8diXSxQnmGimkTt00F6+kbkkOy4rueAVFtY+CJ9Zr842a5eQ5nDIPwYT5Y5E hNfJMzPvpt8q+HfpRJaIjGgV/Qz2ejNI82ZYo1Iip39H/+Q4AVU+yfqcjzvs23Kx +9OZRXfrtOSQijg5pIAwpX1jzoTYHtKnI1Xuhb56s1EeXGWGRLhkPNxO2rUtPyly wcSfY7klMPg/BRen/TeAeSvoq3eEir1UENmlPTCHAW13jOyCBAyZduX23PWzfJn2 PB8Gcft8e4ALnSvOqjTAiEksKvC/rwwah444gnhRQS326vgXfftWNrmRZJiPfioS tVernmGCttxPEzLIAhY6qUdUahmgpq9xp+fc63fehF31tIx2fIHD7R3Bl7a3et/A 4QGuJicUrf/b0aY9tvTdmpXYJBMPooCkPA1sfJuhvH7UR8J6yeCFC5KwBS3uluoN +WEJb7Qevah5Ybpg0MYstWa93Fp4G2I+3jn8ZHFqpyoDeQIaHXtXQaHCKHywPdM8 aurlmNvH7DdTZyrXBxKmffM1X1AF3q0dRQLA0EBvnAPAv245ux4a0nz1yAXsESVd WNpW6dVXnf/Q009feDsKoj8xJ56rwJQ3K7OfKK9rBXBbZdXtUMzYSDxAWlcRkuxe LnmNNUPzzQUIBlBFlm1phwPoBPKIDXRENEZ0PiHidqUJuU3L1kAhqujXxiPq8OuK 0qU/8jGkYY7kvnwJh3LyLjjrq+icVX+VSLUldbhvdOONC8Ue7vUISawz5vB66XVi MsTVopWYdCXY5dLrsz4s62lkYMIXUWRox6YJL0FMDrRDUcSOA0Aa44lxvcA1lMmU Z4Bcso9TJkyotdu8gTAw8JmHuj8ozqOChtJpAODjrYZRql/D21jicsejAgyi327w OB++rDX/wQS8HIV8aATYDEXy+qBwUUVDWzZOPL5+nqwOA8JS/M3APf1G66AlFCSI iPly5X3iGS9pPou5aie29nF56DQLwHbMnEyHt9hfD/qW72xU50uSS2nhlbvhWw7K CVp/FD7yILh/5qvp8nUNX6HqJJjmhQTtbNahsV8p/aYrXn222ZPHigpcQI2duPLu ReaxPFXA0gBWbYMdXCD0ImxkCe+t0x1F9yVL34OJ5GWgT9SRgWTTMsgAAG+abdvN ZT0yZ1Ftqu1rwTOEDGYr8MuTVE6iU7XP6WcoU/FRPJhpTzESHVg7R/BanvOoLdVh UcX1F0rmt6w0SCpnrpo8ndGuFM7D5lG/6nb77LVQen3YQr9O/S3aY1BvcYAsCp5L vRBQIZx1h1SSVVYeCd7q+7fpvCF0TV/Q0iynms2D0MXcghJZlVHRoJYCyz8DVBYJ QO6glqkbYFJIa9/8aArg6VMjtqL1/xUdpxsVGnzi0LyIqELWRhxyZZ5EVP+eDwNj 84tAJlvrW9xju5+bK2cp8hG6DVqvZp8ceCNSLaXOQ4F4R7b59zcYFog3d434SyHC 5w8Sj7y847kBRkMoQOJR+EfkbWknESqeSSBx+qLNET3v2Necjo/om4uLVhBiPhe4 ie/yL/u6jJaIS776I7WcqKPDDSVT/mUdXwEoFls0Q5mln4dMXSzaM0CWf4sSHZJM u16A8PkJE5/RufomQGkwcKbf5GTg4ZS8J6cnnJ3EO67ocKjMztIJOuGsO/H6uMdJ n84hF55PaQVXakmbBMIVE1ha6ePYYAC5KqNzPaoUcRzHkfPXKjmXoqW2aH8YPZAQ mKLKw7WCRvD5EQ9aeBYGfx+QQaVrlMz9LJQd2ibhUe0PRI6YqOl/0A86j4xqxXt5 xApyh6bF+ZIue7GubyWuicatq/rutNH0qAZUy689+76VqLYT1BnN4FBYRecS437t 6/dw9MDd2NU/Nmi+9BUiZolmhO6cFoTR4efDWFcPIFAFGgU= =guNi -----END PGP MESSAGE-----

kylesyx commented 3 years ago

My NetID is ys4375,Yuxuan Sun, and my pub key id is B5B5B53B

kylesyx commented 3 years ago

-----BEGIN PGP PUBLIC KEY BLOCK-----

mQGNBGArFgkBDADCKeJf8mb1VagGxynHwJnbvU6LWtHUx8fDygYDhVzRKqyBITt2 WDX90vzLPMQwmN9W0nooZPf23dKy0QH0zVawse3sMRr+3WW2VoXdyMmzVnr4nLFM WncrVFjD4oo7mHcHCM2Xyz/SEkHDZlBn141nslezuc3eHslKQQZTCLA8KW3xBU5u Ll45jTpWedOUhcY4dQPOyGpzxWvuRp3BuxchqXNVeYEyDWyd+R1zbEfFByG3eNoc gEAIyDwjOCnSMhkjFYP8sVNFqdWasB6Ej/5hAKd8ROHzmz3Vh8tVrtOsNHnHrbn6 cBr2uykZHIKd9+e3e1iK77aAJTatgUQsn+j/GFnpCxeiu2i7NvGeDY9bl3pwYGHD K77/W+VOjP389MKKNPVi2bDlE02ah3ARENMNB084/ZlhVW1ULX9ALHh30CgMy9OA ZDRM4xT9P0DbakwDyxFSv5D6vNKRHO7MtbVZNX71SUV0q8vW6+rm1rKDsZxgdufv yMAH5uHUXl9rPhkAEQEAAbQdWXV4dWFuIFN1biA8NTQyMjUxNDg5QHFxLmNvbT6J Ac4EEwEIADgWIQTE83RLidwioEpPUcEGfpextbW1OwUCYCsWCQIbAwULCQgHAgYV CgkICwIEFgIDAQIeAQIXgAAKCRAGfpextbW1O6XVDACfB2jqYtArwH0ccG5aYhbI 5vXaTa6iD+UQtyodmffwC+9kXyXUdBnI+Xe5zUlHk8ovovTPAWsovSptJ5/tfVw5 75KqHlPuCc/MB0HfeyD/pjCanErpRM85yRPARycx4dYNrSlhfUrA183LEJYCsTAX i0Lv1P5BB9F2YKp9fwkZxDqW0QmogLU+ZYWL8Sr8gqKAK1GkHVEAXv61Adk6WBsM q/kKLmLVYLh+TE6BKFmauxXnUyBjVm8ylle0BK+w06FOrJtI6CQ2S2UTFxgKYXCA FoOU6DLmtjpToNgsT25Wg1rsEfEeM4p7Jl1EsMBtAjFDaK0tKxD7pjcNgm2XenPU SpKzKdebFM1YAt36Ki8+7MaQCAVmT9oK0dz9MHIdi1EqPVWuZSdW5f9+r/QWeCO3 1JR66BfLSpLzs2Npm6FY3Gpc1tlqyt9rL+rAK+alf0dDcR9otay3YQaJ3OepLwQa fEXAcCjfn8DIdSD9nBaAzy/3zT03bVAfkTseV16IEGu5AY0EYCsWCQEMAM9MwxUX 5iMVi4tTJaN70Gqt0wlrQE23N6vJr9dEG5knl3F7QNGRDRoU6vIb72+p4/qpdtAo c3F+33QwdJoKvFtfqhxEwuWXVU660Ol9d38bY/NHPpeEtOCSpRPCO9zFRbsJsT4s qNI63fiSJHJ4HZS3K8Ab8FNsDCJgBb6v3mqtBUWHrGfTUFb8ctv6tKg+3gsb8wv7 +DFlks/Ke3SSnNiI5oXtnRSbER3z/MaTZoho2zSIr02a7AaY/Ng9ERoxsYR9bOrd mNJbCoeyZy8kBtlGgODMTU5ozgjtGcX1jPeC9AfSsyn+zTNUdLA70qGrheSmNf2A drbVNtZzQJ/FOdvsOEJex/CEuzrsxjJz6t5WP1LeCwwgEZ117HjARLMZcAgngLZ2 t9wvqlGunEc1GUF45qmWDZ91p/ImBtizAeftOfdTr1+Yy/UIm/fz3nvDUbosnPBU uCk9/whjejqYNL6XEq0Xu1T9GmRnTF9wOnuJ1W/Hsa/ZD+P8t0vsP0jfVQARAQAB iQG2BBgBCAAgFiEExPN0S4ncIqBKT1HBBn6XsbW1tTsFAmArFgkCGwwACgkQBn6X sbW1tTsqCQv/Y3qzPZFUVnIk3+Adyeq6zkCyLJQv473G/8x7F1haIvCK14RaSJGX fpL/xNBDJSEpFIKC5Ae2mNpZ9yvf5i8fobz/afNdkZDyvORko1nMWw2kjCvoCis9 hNuXZ3EsNGV9ir6w6MN8npM6+ajRd14J5lhsxOxPfKwY1W3Q2z7Msz2PHlqpQIAF hlqw241PsVZbkqs6UKOcvSqtimR9Kf2oEaEiYaycsEfQ3dIAeUj2f9K2AQAZVjEp 1gN+PH9+37OtxzSorcBcLd6xRzpjoR9iV9S4KYvhlGXVmxWcw1p+c5lRBIN2cwjc jCCoWCJaKX/MHzegeU9Sk7pYj0BNfYTrX9Ql7rKDLmLr3ukCJOiUZVDAbw0iIy0A daGKNvlpdXJ0ugT22aPdhzmcJY5ACC/5rFaFSYaxH1A3zvVXkafzq3iyx9bf5yFY fNnnXmfTG0tB7zUf/+LwqppblRKAxrbTflWqBGn/jK/btYOrxy3ETNqr1Ckjj/tx D0FTA+M0G91W =pHKF -----END PGP PUBLIC KEY BLOCK-----

ksmaybe commented 3 years ago
About exploit-main (exploit-service branch)
[*] Starting service from pcs-sp21-lab2-server (branch '4e3e44b6a6e102115dc4a1908890817d6c64b3b0')
3e08e43720e9a5b185c7e50a34e2e8026d55ae41acf68721627ca4557b92a751
[*] Started service successfully
[*] Running exploit
Learned that buf is at 0xffd29b80
So retaddr is 0xffd29bb0
FTiE7apOp
[*] Exploit returned : FTiE7apOp
[*] Solution flag : FTiE7apOpn
[*] Exploit returned a wrong flag string

[*] The exploit did not work.

ksmaybe commented 3 years ago

This submission has been verified. Well done!