SMASH THE STACK LEVEL2

Categories: Security, tech

time to play level2@io:/levels$ ./level02 source code is available in level02.c let’s read what it says level2@io:/levels$ cat level02.c //a little fun brought to you by bla #include <stdio.h> #include <stdlib.h> #include <signal.h> #include <setjmp.h> void catcher(int a) { setresuid(geteuid(),geteuid(),geteuid()); printf(“WIN!\n”); system(“/bin/sh”); exit(0); } int main(int argc, char **argv) { puts(“source code is available in … Read More

SMASH THE STACK Level1

Categories: Security, tech

after login to the ssh server levels located on /levels so let’s play  level1 level2@io:/levels$ ls -alh level01 -r-sr-x— 1 level2 level1 1.2K Jan 13 2014 level01 as u notice it had suid permeation  -r-sr-x— for level2  so it will lead us to a user (level2 ) level1@io:/levels$ ./level01 Enter the 3 digit passcode to enter: … Read More