That was a pretty cool one. Never though of printf as being an exploit to walk through the stack like that, being able to see and -even better- write to env variables…. seems like it could be useful in a future challenge.
I laughed hard when I saw that "vuln" vomited garbage data and other variables. I know it could be dangerous in production environment, but that was fun! :'D
Hey John I found a CVE in an email provider, tried to inform them about it so that I could help them fix it for some cash but they didn't care and they still haven't fixed it months later 😬 what would you do in this scenario 🤔
i look forward to these videos every day and I'm not even signed-up for the CTF. hearing how you think through these challenges is priceless.
Cool, didnt know a simple printf can be weaponize
Cool challenge and a great video. Keep them coming sir.
That was a pretty cool one. Never though of printf as being an exploit to walk through the stack like that, being able to see and -even better- write to env variables…. seems like it could be useful in a future challenge.
My favorite Vulnerability
I laughed hard when I saw that "vuln" vomited garbage data and other variables. I know it could be dangerous in production environment, but that was fun! :'D
Format strings vulns is my favourite, pity its pretty rare at IRL - stil I did found one exploitable in the wild once ))
thank you as always for you incredible video.
Let’s roll !!
That was cool! This world needs more hackers like you John:)
Could the missing "pico" and "john" be an alignment thing? Both are 4 bytes long... 🤔
I think so
Just imagine if the memory was filled with a sensitive information!! All of them will be leaked!!?
just use single or double quotes
Hey John I found a CVE in an email provider, tried to inform them about it so that I could help them fix it for some cash but they didn't care and they still haven't fixed it months later 😬 what would you do in this scenario 🤔
Public it.
Okay if they dont care. then its not your fault.
So how do you capture the whole flag, including 'pico'?
thank you for making this ♥️♥️
Shark window opening how to repair
Hello!
hello ..would it be possible to put subtitles in portuguese ?? because we follow here in Brazil!!🇧🇷
cool
👍!
Cool
Red desinr
I'm wondering if %23$s.%24$s works well🙄
no, %23$s was empty or maybe a newline
Early gang
second
First
there’s a literal man page function in the terminal cmon man