Username: 
Password: 
Restrict session to IP 

pointers?  Go to the The Last Hope challenge

Global Rank: 482
Totalscore: 46985
Posts: 37
Thanks: 20
UpVotes: 21
Registered: 7y 7d
stormsurfer`s Avatar



Last Seen: 2y 117d
The User is Offline
pointers?
Google/translate2Thank You!1Good Post!1Bad Post! link
Can I get some pointers on this? I've been working on it for a few good hours now and got nothing, it's very frustrating. I cracked it and removed the anti ptrace function to be able to use gdb on it, but I don't see the username any where. I didn't even began to look in the password section.

I also think I disabled the CAPS check, but not sure what the lc function does, at first I tought it check the lenghts of the username string but then I noticed I only enter it when I use all caps in the username (like AAAAA). in any case I can find my username string in the stack but I don't see the real username any where. I feel like I'm shooting blanks.

also does the md5 strings in the binary have anything do to with the user or pass? or they just decoy?
Global Rank: 58
Totalscore: 218820
Posts: 105
Thanks: 84
UpVotes: 85
Registered: 11y 239d




Last Seen: 358d 18h
The User is Offline
RE: pointers?
Google/translate2Thank You!2Good Post!1Bad Post! link
You did something wrong along the way Drool
Global Rank: 564
Totalscore: 40353
Posts: 16
Thanks: 12
UpVotes: 14
Registered: 1y 350d
FranzT`s Avatar
Last Seen: 22d 1h
The User is Offline
RE: pointers?
Google/translate2Thank You!1Good Post!1Bad Post! link
I did it the hard way: decompile everything -- the program is small enough to be done manually -- then analyze the code.
It was fun.
Global Rank: 6078
Totalscore: 1087
Posts: 3
Thanks: 3
UpVotes: 3
Registered: 97d 22h
Last Seen: 50d 22h
The User is Offline
RE: pointers?
Google/translate1Thank You!1Good Post!0Bad Post! link
read http://www.exploit-db.com/papers/13234/ , use ida + gdb +python
Redknee, ckclark, tunelko, silenttrack, qdxy, n0tHappy, stormsurfer, TheHiveMind, Z, Ge0, samuraiblanco, arraez, jcquinterov, hophuocthinh, alfamen2, burhanudinn123, Ben_Dover, stephanduran89 have subscribed to this thread and receive emails on new posts.
1 people are watching the thread at the moment.
This thread has been viewed 11233 times.