BASH Command Injection | PicoCTF 2017 [40] "Flagsay_1"

  Рет қаралды 8,566

John Hammond

John Hammond

Күн бұрын

Пікірлер: 15
@MrAboyobam
@MrAboyobam 6 жыл бұрын
it also works if you just input $(cat flat.txt), there is no need to escape out of the initial echo command. but anyway it does the same in the end
@SREagle1
@SREagle1 6 жыл бұрын
Just a hint for pronounciation: the "ß" in one of your patreons names, Jan Groß, may look similar to a B, but is actually a ligature, kind of a "double letter", and quite literally is two s'es (like w is historically a ligature of two u's or two v's). So the name is really spoken like the english "gross". Coincidentally groß is german for big. And like always: nice write up!
@mrnano1991
@mrnano1991 6 жыл бұрын
John, please create a video about you, and how you became a hacker. How you learn all these stuff and some tips for the newcomers. That would be awesome.
@mehh5505
@mehh5505 6 жыл бұрын
That was an easy one. Want to see you soon solving HackTheBox *retired* challenges ☺️
@_JohnHammond
@_JohnHammond 6 жыл бұрын
YEAH! I heard some of the challenges are being retired! I definitely want to showcase those, if I do have them solved! Do you know which are being retired?
@mehh5505
@mehh5505 6 жыл бұрын
John Hammond that would be awesome. Hackthebox would announce that which would retire first ☺️
@Affael
@Affael 6 жыл бұрын
why is it that when i try ls without the #, it gives me the structure of the root folders like bin, etc, opt ... ?
@_JohnHammond
@_JohnHammond 6 жыл бұрын
I saw this too, and realized it -- kind of funny. It's interpreting the `/` forward-slash at the start of the flag ASCII image, and thinks you are literally requesting to view the contents of the root directory.
@Affael
@Affael 6 жыл бұрын
John Hammond that makes sense, thank you. pretty funny
@bhagyalakshmi1053
@bhagyalakshmi1053 Жыл бұрын
File name
@syahrulakbarr
@syahrulakbarr 6 жыл бұрын
create video tutorial about heap & rop please
@terror403
@terror403 4 жыл бұрын
ippsec is that u ? ^^"
@ydkspoonie8290
@ydkspoonie8290 6 жыл бұрын
I'm soo confused. What is this even about? lol
@bhagyalakshmi1053
@bhagyalakshmi1053 Жыл бұрын
Rds files
@MikeA-ri5pz
@MikeA-ri5pz 6 жыл бұрын
1st :D #BEST_KZbinR
GETS Buffer Overflow | PicoCTF 2017 [41] "VR Gear Console"
10:29
John Hammond
Рет қаралды 9 М.
HackTheBox "Business CTF" - Time - Command Injection
16:02
John Hammond
Рет қаралды 36 М.
Players push long pins through a cardboard box attempting to pop the balloon!
00:31
One day.. 🙌
00:33
Celine Dept
Рет қаралды 67 МЛН
How Much Tape To Stop A Lamborghini?
00:15
MrBeast
Рет қаралды 262 МЛН
Симбу закрыли дома?! 🔒 #симба #симбочка #арти
00:41
Симбочка Пимпочка
Рет қаралды 6 МЛН
Getting Started in CTF: PicoCTF 2017 [09] keyz (SSH)
16:48
John Hammond
Рет қаралды 17 М.
Getting Started with Command Injection
13:05
The Cyber Mentor
Рет қаралды 11 М.
PicoCTF 2017 [17] Hash101
14:23
John Hammond
Рет қаралды 8 М.
Learning CTF: PicoCTF 2017 [08] Loooong (Python Strings)
9:40
John Hammond
Рет қаралды 13 М.
WRITE BASH SCRIPTS for CTF Solutions (PicoCTF 08 'file-run1')
17:51
code injection attack | Control any websites in Minutes!
10:20
Loi Liang Yang
Рет қаралды 69 М.
Players push long pins through a cardboard box attempting to pop the balloon!
00:31