Reverse Engineering and identifying Bugs - BKPCTF cookbook (pwn 6) part 1

  Рет қаралды 42,388

LiveOverflow

LiveOverflow

Күн бұрын

Part 1: reverse engineering the functionality of the cookbook binary with IDA
Part 2: Leaking heap address and libc base address
Part 3: Arbitrary write - House of Force
exploit: gist.github.co...
=[ 🔴 Stuff I use ]=
→ Microphone:* geni.us/ntg3b
→ Graphics tablet:* geni.us/wacom-...
→ Camera#1 for streaming:* geni.us/sony-c...
→ Lens for streaming:* geni.us/sony-l...
→ Connect Camera#1 to PC:* geni.us/cam-link
→ Keyboard:* geni.us/mech-k...
→ Old Microphone:* geni.us/mic-at...
US Store Front:* www.amazon.com...
=[ ❤️ Support ]=
→ per Video: / liveoverflow
→ per Month: / @liveoverflow
=[ 🐕 Social ]=
→ Twitter: / liveoverflow
→ Website: liveoverflow.com/
→ Subreddit: / liveoverflow
→ Facebook: / liveoverflow
=[ 📄 P.S. ]=
All links with "*" are affiliate links.
LiveOverflow / Security Flag GmbH is part of the Amazon Affiliate Partner Programm.
#ReverseEngineering #CTF

Пікірлер: 23
@MrFrekio
@MrFrekio 8 жыл бұрын
Thank you so much about this videos !! most of the tutorials i found they lack of details.... but your videos explain everything you rock !!
@LiveOverflow
@LiveOverflow 8 жыл бұрын
+MrFrekio Glad you like it :)
@Hezv1
@Hezv1 8 жыл бұрын
I "participated" in the BKPCTF and it would be awesome to have more write-ups from you on what you did for it. It was actually the first CTF I had ever done and seeing how a more experienced person works would be great!
@LiveOverflow
@LiveOverflow 8 жыл бұрын
+Conrad Hoffman Oh.. that was a hard first CTF. I would like to make more videos, but I first have to finish the 3 parts for the `cookbook` writeup. The other challenge I solved was `ltseorg`, which I could do a video for. There was no other challenge I worked on because I was so busy with `cookbook` :D
@Hezv1
@Hezv1 8 жыл бұрын
+LiveOverflow Yeah I could tell haha. It was nice though to see what my end goal was. I plan on also doing the Sunshine CTF this weekend as that's supposed to be more beginner friendly. Regardless of how much BKPCTF content you have, any content is great anyways, so no worries. Thanks again for the awesome videos
@allthingsreversed
@allthingsreversed 7 жыл бұрын
Great analysis. Good work!
@sleaf6
@sleaf6 6 жыл бұрын
Dang that was pretty 👌
@crazytrain86
@crazytrain86 8 жыл бұрын
You don't need to break into the process to allow aslr. Simply tell gdb to enable it: set disable-randomization off
@christophhansen782
@christophhansen782 4 жыл бұрын
Could someone possibly explain on why the file "libc.so.6 is indicative of ASLR. 1: 11. Also great video!
@eugenekorobov6473
@eugenekorobov6473 8 жыл бұрын
hi : ) yesterday i've found you channel and found it very interesting (because last time i've dove into reverse engineering) and i see that you are using IDA, but unfortunately i live in poor country, and buying soft like IDA Pro is a little bit onerously here : ) so my question is, what do you think about Radare2? is it good or not? and why?
@LiveOverflow
@LiveOverflow 8 жыл бұрын
+Eugene Korobov I also use radars. I don't stick to only one tool. Checkout binary ninja and hopper app. Radare is awesome and has an amazing community.
@eugenekorobov6473
@eugenekorobov6473 8 жыл бұрын
ok, thank you : )
@John-shreds
@John-shreds 6 жыл бұрын
Does anyone know of a simpler video series. Mabye something like coding an application like this cookbook. Then attacking it when your finished?
@themadichib0d
@themadichib0d 5 жыл бұрын
I know this is old, but theres the Art of Exploitation 2nd Edition book. Its an old book and a lot of details are a bit outdated, but its still an amazing starting resource that will literally do exactly what you describe. Starts off with lessons in C and has you build a casino game in the style above, and then starts you off with abusing it for cheats and then going into full on exploits.
@roddy2143
@roddy2143 5 жыл бұрын
Can anyone please explain the redstar OS and Macbook ....? R u ssh...ing ?
@AcheronLupus1
@AcheronLupus1 5 жыл бұрын
It's a joke. (e.g. He just edited his hostname.)
@roddy2143
@roddy2143 5 жыл бұрын
:D okay....
@prabhakaranm7571
@prabhakaranm7571 4 жыл бұрын
Please post this cookbook binary in your github
@congty3m385
@congty3m385 6 жыл бұрын
can you share me the file ? Server is down and I can't download it.
@shouguoyang2793
@shouguoyang2793 5 жыл бұрын
@@jacobshin4279 It is invalid.
@arsen3783
@arsen3783 7 жыл бұрын
>iTerm I prefer muh Termite thanks
@Wyvernnnn
@Wyvernnnn 6 жыл бұрын
Well shit, IDA costs about a thousand dollar.
Leaking Heap and Libc address - BKPCTF cookbook (pwn 6) part 2
25:48
How to Crack Software (Reverse Engineering)
16:16
Eric Parker
Рет қаралды 547 М.
Touching Act of Kindness Brings Hope to the Homeless #shorts
00:18
Fabiosa Best Lifehacks
Рет қаралды 20 МЛН
Worst flight ever
00:55
Adam W
Рет қаралды 20 МЛН
Local Root Exploit in HospitalRun Software
20:48
LiveOverflow
Рет қаралды 68 М.
Accidental LLM Backdoor - Prompt Tricks
12:07
LiveOverflow
Рет қаралды 142 М.
I Reverse Engineered this Program and Generated Infinite CD Keys
11:39
Low Level Learning
Рет қаралды 279 М.
When you Accidentally Compromise every CPU on Earth
15:59
Daniel Boctor
Рет қаралды 822 М.
Generic HTML Sanitizer Bypass Investigation
14:05
LiveOverflow
Рет қаралды 141 М.
Absolute Primes - Numberphile
14:27
Numberphile
Рет қаралды 88 М.
Malware development 101: Creating your first ever MALWARE
28:00
Leet Cipher
Рет қаралды 346 М.
The Discovery of Zenbleed ft. Tavis Ormandy
19:43
LiveOverflow
Рет қаралды 61 М.