BASH Command Injection | PicoCTF 2017 [40] "Flagsay_1"

  Рет қаралды 8,566

John Hammond

John Hammond

Күн бұрын

Пікірлер: 15
@MrAboyobam
@MrAboyobam 6 жыл бұрын
it also works if you just input $(cat flat.txt), there is no need to escape out of the initial echo command. but anyway it does the same in the end
@SREagle1
@SREagle1 6 жыл бұрын
Just a hint for pronounciation: the "ß" in one of your patreons names, Jan Groß, may look similar to a B, but is actually a ligature, kind of a "double letter", and quite literally is two s'es (like w is historically a ligature of two u's or two v's). So the name is really spoken like the english "gross". Coincidentally groß is german for big. And like always: nice write up!
@mrnano1991
@mrnano1991 6 жыл бұрын
John, please create a video about you, and how you became a hacker. How you learn all these stuff and some tips for the newcomers. That would be awesome.
@mehh5505
@mehh5505 6 жыл бұрын
That was an easy one. Want to see you soon solving HackTheBox *retired* challenges ☺️
@_JohnHammond
@_JohnHammond 6 жыл бұрын
YEAH! I heard some of the challenges are being retired! I definitely want to showcase those, if I do have them solved! Do you know which are being retired?
@mehh5505
@mehh5505 6 жыл бұрын
John Hammond that would be awesome. Hackthebox would announce that which would retire first ☺️
@Affael
@Affael 6 жыл бұрын
why is it that when i try ls without the #, it gives me the structure of the root folders like bin, etc, opt ... ?
@_JohnHammond
@_JohnHammond 6 жыл бұрын
I saw this too, and realized it -- kind of funny. It's interpreting the `/` forward-slash at the start of the flag ASCII image, and thinks you are literally requesting to view the contents of the root directory.
@Affael
@Affael 6 жыл бұрын
John Hammond that makes sense, thank you. pretty funny
@bhagyalakshmi1053
@bhagyalakshmi1053 Жыл бұрын
File name
@syahrulakbarr
@syahrulakbarr 6 жыл бұрын
create video tutorial about heap & rop please
@terror403
@terror403 4 жыл бұрын
ippsec is that u ? ^^"
@ydkspoonie8290
@ydkspoonie8290 6 жыл бұрын
I'm soo confused. What is this even about? lol
@bhagyalakshmi1053
@bhagyalakshmi1053 Жыл бұрын
Rds files
@MikeA-ri5pz
@MikeA-ri5pz 6 жыл бұрын
1st :D #BEST_KZbinR
GETS Buffer Overflow | PicoCTF 2017 [41] "VR Gear Console"
10:29
John Hammond
Рет қаралды 9 М.
HackTheBox "Business CTF" - Time - Command Injection
16:02
John Hammond
Рет қаралды 36 М.
How Many Balloons To Make A Store Fly?
00:22
MrBeast
Рет қаралды 173 МЛН
WRITE BASH SCRIPTS for CTF Solutions (PicoCTF 08 'file-run1')
17:51
BEGINNER SQL INJECTION (PicoCTF 2022 #49 'sqlilite')
10:36
John Hammond
Рет қаралды 49 М.
Getting Started in CTF: PicoCTF 2017 [09] keyz (SSH)
16:48
John Hammond
Рет қаралды 17 М.
Two's Complement | PicoCTF 2017 [38] Guess The Number
12:23
John Hammond
Рет қаралды 7 М.
Beat Ronaldo, Win $1,000,000
22:45
MrBeast
Рет қаралды 106 МЛН
How Many Balloons To Make A Store Fly?
00:22
MrBeast
Рет қаралды 173 МЛН