Username: 
Password: 
Restrict session to IP 

pointers?  Go to the The Last Hope challenge

Global Rank: 476
Totalscore: 46974
Posts: 37
Thanks: 20
UpVotes: 22
Registered: 7y 44d
stormsurfer`s Avatar



Last Seen: 2y 154d
The User is Offline
pointers?
Google/translate2Thank You!1Good Post!1Bad Post! link
Can I get some pointers on this? I've been working on it for a few good hours now and got nothing, it's very frustrating. I cracked it and removed the anti ptrace function to be able to use gdb on it, but I don't see the username any where. I didn't even began to look in the password section.

I also think I disabled the CAPS check, but not sure what the lc function does, at first I tought it check the lenghts of the username string but then I noticed I only enter it when I use all caps in the username (like AAAAA). in any case I can find my username string in the stack but I don't see the real username any where. I feel like I'm shooting blanks.

also does the md5 strings in the binary have anything do to with the user or pass? or they just decoy?
Global Rank: 60
Totalscore: 218743
Posts: 105
Thanks: 84
UpVotes: 86
Registered: 11y 276d




Last Seen: 1y 30d
The User is Offline
RE: pointers?
Google/translate2Thank You!2Good Post!1Bad Post! link
You did something wrong along the way Drool
Global Rank: 559
Totalscore: 40304
Posts: 16
Thanks: 12
UpVotes: 14
Registered: 2y 22d
FranzT`s Avatar
Last Seen: 2d 14h
The User is Offline
RE: pointers?
Google/translate2Thank You!1Good Post!1Bad Post! link
I did it the hard way: decompile everything -- the program is small enough to be done manually -- then analyze the code.
It was fun.
Global Rank: 6178
Totalscore: 1093
Posts: 3
Thanks: 3
UpVotes: 3
Registered: 134d 23h
Last Seen: 87d 23h
The User is Offline
RE: pointers?
Google/translate1Thank You!1Good Post!0Bad Post! link
read http://www.exploit-db.com/papers/13234/ , use ida + gdb +python
Redknee, ckclark, tunelko, silenttrack, qdxy, n0tHappy, stormsurfer, TheHiveMind, Z, Ge0, samuraiblanco, arraez, jcquinterov, hophuocthinh, alfamen2, burhanudinn123, Ben_Dover, stephanduran89 have subscribed to this thread and receive emails on new posts.
1 people are watching the thread at the moment.
This thread has been viewed 11304 times.