Sunday, June 4, 2023

ASIS CTF Quals 2015 - Sawthis Writeup - Srand Remote Prediction



The remote service ask for a name, if you send more than 64 bytes, a memory leak happens.
The buffer next to the name's is the first random value used to init the srand()


If we get this value, and set our local srand([leaked] ^ [luckyNumber]) we will be able to predict the following randoms and win the game, but we have to see few details more ;)

The function used to read the input until the byte \n appears, but also up to 64 bytes, if we trigger this second condition there is not 0x00 and the print shows the random buffer :)

The nickname buffer:



The seed buffer:



So here it is clear, but let's see that the random values are computed with several gpu instructions which are decompiled incorrectly:







We tried to predict the random and aply the gpu divisions without luck :(



There was a missing detail in this predcitor, but there are always other creative ways to do the things.
We use the local software as a predictor, we inject the leaked seed on the local binary of the remote server and got a perfect syncronization, predicting the remote random values:




The process is a bit ugly becouse we combined automated process of leak exctraction and socket interactive mode, with the manual gdb macro.




The macro:



















More information


  1. Black Hat Hacker Tools
  2. Hacker Tools Online
  3. Hack Tools Download
  4. Pentest Tools List
  5. Hackrf Tools
  6. New Hacker Tools
  7. Hacker Search Tools
  8. Hacking Tools For Mac
  9. Physical Pentest Tools
  10. Pentest Tools For Ubuntu
  11. Hacking Tools For Windows
  12. Hack Tools Online
  13. Pentest Tools Url Fuzzer
  14. Pentest Tools Kali Linux
  15. Tools 4 Hack
  16. Usb Pentest Tools
  17. Hacking Tools For Mac
  18. Pentest Tools Android
  19. Pentest Tools Kali Linux
  20. World No 1 Hacker Software
  21. Best Hacking Tools 2020
  22. Hacker Techniques Tools And Incident Handling
  23. Pentest Automation Tools
  24. Hack Tools Mac
  25. Physical Pentest Tools
  26. Pentest Tools Review
  27. Hak5 Tools
  28. Pentest Tools Download
  29. Usb Pentest Tools
  30. Hacker Tools Free
  31. Hacker Tools For Windows
  32. Hack Tools Mac
  33. Hacking Tools For Windows Free Download
  34. Hack Tools Github
  35. Hacker Tools 2019
  36. Pentest Tools Nmap
  37. Pentest Tools Review
  38. Hacking Apps
  39. Pentest Tools List
  40. How To Install Pentest Tools In Ubuntu
  41. Hak5 Tools
  42. Hack Tools For Games
  43. Hack Tools Github
  44. Hacker Tools 2020
  45. Pentest Automation Tools
  46. Pentest Tools Nmap
  47. Hacker Search Tools
  48. What Are Hacking Tools
  49. Hack Tools Mac
  50. Hacking Tools Usb
  51. Hack Tools Mac
  52. Hacking Tools Mac
  53. Hacking Tools Online
  54. Install Pentest Tools Ubuntu
  55. Pentest Tools Android
  56. Hacking Tools Online
  57. Pentest Tools Framework
  58. Computer Hacker
  59. Hack Rom Tools
  60. Hack Apps
  61. Github Hacking Tools
  62. Pentest Automation Tools
  63. Hack And Tools
  64. Usb Pentest Tools
  65. Bluetooth Hacking Tools Kali
  66. Hack Tools For Mac
  67. What Is Hacking Tools
  68. Pentest Tools Free
  69. Pentest Automation Tools
  70. Hacks And Tools
  71. Hacker Tools For Pc
  72. Best Hacking Tools 2020
  73. Tools Used For Hacking
  74. New Hacker Tools
  75. Hacker Tool Kit
  76. Hacker Tools 2019
  77. Hacking Apps
  78. Pentest Tools Bluekeep
  79. Github Hacking Tools
  80. Hack Tools Download
  81. Pentest Reporting Tools
  82. Pentest Tools Linux
  83. Hacker Tools Hardware
  84. Pentest Tools Nmap
  85. Hacking Tools Free Download
  86. Pentest Tools For Android
  87. Pentest Recon Tools
  88. Hacking Tools Download
  89. Hack Tools Mac
  90. Pentest Automation Tools
  91. Nsa Hack Tools Download
  92. Pentest Tools For Windows
  93. Hacking App
  94. Underground Hacker Sites
  95. Hacking Tools 2020
  96. Pentest Tools Alternative
  97. Pentest Tools Apk
  98. Hacking Tools For Games
  99. Hacking Tools 2020
  100. Hacking Tools Online
  101. Hack Tools
  102. Hacker Tools Apk Download
  103. Hacker Tools For Windows
  104. Pentest Tools Online
  105. Hacking Tools Pc
  106. Hack Apps
  107. Hacker Tools Mac
  108. Hack Tools
  109. Best Hacking Tools 2020
  110. Hacking Tools Windows
  111. Pentest Tools Github
  112. Pentest Box Tools Download
  113. Wifi Hacker Tools For Windows
  114. Hacker Tools Mac
  115. Hacker Tools Mac
  116. Pentest Tools Framework
  117. Pentest Tools For Ubuntu
  118. Hacking Tools For Windows 7
  119. Hack Tools
  120. Hacking Tools Hardware
  121. Usb Pentest Tools
  122. Hack Tools Mac

0 comments:

Country

free counters
 

ဦးဘုန္း (ဓာတု) မႏၱေလး. Copyright 2011 All Rights Reserved Free Wordpress Templates by Brian Gardner Blogger Templates presents HD TV Fringe Streaming. Featured on Wedding Photographers Singapore.