Format String printf Vulnerabilities (PicoCTF 2022 #46 'flag-leak')

Поділитися
Вставка
  • Опубліковано 21 лис 2024

КОМЕНТАРІ • 35

  • @rey3081
    @rey3081 2 роки тому +27

    i look forward to these videos every day and I'm not even signed-up for the CTF. hearing how you think through these challenges is priceless.

  • @verolyn8459
    @verolyn8459 2 роки тому +8

    Cool, didnt know a simple printf can be weaponize

  • @LDowning0190
    @LDowning0190 2 роки тому +6

    Cool challenge and a great video. Keep them coming sir.

  • @tekneinINC
    @tekneinINC 2 роки тому +1

    That was a pretty cool one. Never though of printf as being an exploit to walk through the stack like that, being able to see and -even better- write to env variables…. seems like it could be useful in a future challenge.

  • @skeeberk.h.4396
    @skeeberk.h.4396 2 роки тому +1

    My favorite Vulnerability

  • @dtvdavid
    @dtvdavid Рік тому

    I laughed hard when I saw that "vuln" vomited garbage data and other variables. I know it could be dangerous in production environment, but that was fun! :'D

  • @mcw67
    @mcw67 2 роки тому

    Format strings vulns is my favourite, pity its pretty rare at IRL - stil I did found one exploitable in the wild once ))

  • @abdelHsn
    @abdelHsn 2 роки тому

    thank you as always for you incredible video.

  • @alimustafa2682
    @alimustafa2682 2 роки тому +1

    Let’s roll !!

  • @arbibab
    @arbibab 2 роки тому

    That was cool! This world needs more hackers like you John:)

  • @Colaholiker
    @Colaholiker 2 роки тому +3

    Could the missing "pico" and "john" be an alignment thing? Both are 4 bytes long... 🤔

  • @almatsumalmaadi8103
    @almatsumalmaadi8103 2 роки тому

    Just imagine if the memory was filled with a sensitive information!! All of them will be leaked!!?

  • @bech2342
    @bech2342 2 роки тому +2

    just use single or double quotes

  • @d21852
    @d21852 2 роки тому +8

    Hey John I found a CVE in an email provider, tried to inform them about it so that I could help them fix it for some cash but they didn't care and they still haven't fixed it months later 😬 what would you do in this scenario 🤔

  • @MrHuyche
    @MrHuyche 2 роки тому +1

    So how do you capture the whole flag, including 'pico'?

  • @adam-nw5cn
    @adam-nw5cn 2 роки тому

    thank you for making this ♥️♥️

  • @bhagyalakshmi1053
    @bhagyalakshmi1053 Рік тому

    Shark window opening how to repair

  • @ArSiddharth
    @ArSiddharth 2 роки тому

    Hello!

  • @passaronegro349
    @passaronegro349 2 роки тому

    hello ..would it be possible to put subtitles in portuguese ?? because we follow here in Brazil!!🇧🇷

  • @kelsoswimmer7148
    @kelsoswimmer7148 2 роки тому

    cool

  • @guilherme5094
    @guilherme5094 2 роки тому

    👍!

  • @mr0x3ss71
    @mr0x3ss71 2 роки тому

    Cool

  • @bhagyalakshmi1053
    @bhagyalakshmi1053 Рік тому

    Red desinr

  • @aminel2a
    @aminel2a 2 роки тому

    I'm wondering if %23$s.%24$s works well🙄

  • @marveII0us
    @marveII0us 2 роки тому +3

    Early gang

  • @aeion2184
    @aeion2184 2 роки тому

    second

  • @firewall_chronicles
    @firewall_chronicles 2 роки тому +1

    First

  • @LinuxJedi
    @LinuxJedi Рік тому

    there’s a literal man page function in the terminal cmon man