Skip to content

Instantly share code, notes, and snippets.

@dual5651
dual5651 / gist:910a89eabcb471ab3a314ed52a82a5c7
Last active October 12, 2017 07:33
pwnable.kr - cmd2 - writeup
Daddy bought me a system command shell.
but he put some filters to prevent me from playing with it without his permission...
but I wanna play anytime I want!
ssh cmd2@pwnable.kr -p2222 (pw:flag of cmd1)
------------------------------------------------------------------------------------------
mtrlpq3015w-lp130-01-70-30-167-203:~ dual5651$ ssh cmd2@pwnable.kr -p2222
cmd2@pwnable.kr's password:
@dual5651
dual5651 / gist:45ce99caed8ecbf8bcac369207795ba6
Last active October 12, 2017 07:17
pwnable.kr - cmd1 - writeup
Mommy! what is PATH environment in Linux?
ssh cmd1@pwnable.kr -p2222 (pw:guest)
-------------------------------------------------
mtrlpq3015w-lp130-01-70-30-167-203:~ dual5651$ ssh cmd1@pwnable.kr -p2222
cmd1@pwnable.kr's password:
____ __ __ ____ ____ ____ _ ___ __ _ ____
| \| |__| || \ / || \ | | / _] | |/ ]| \
@dual5651
dual5651 / gist:22336cb166450bb802db988911ee9b37
Created October 12, 2017 06:35
pwnable.kr - lotto - writeup
Mommy! I made a lotto program for my homework.
do you want to play?
ssh lotto@pwnable.kr -p2222 (pw:guest)
-----------------------------------------------------
mtrlpq3015w-lp130-01-70-30-167-203:~ dual5651$ ssh lotto@pwnable.kr -p2222
lotto@pwnable.kr's password:
@dual5651
dual5651 / gist:e9ec380ae1f98d5e91158a38a0f53090
Last active October 12, 2017 06:20
pwnable.kr - blackjack - writeup
Hey! check out this C implementation of blackjack game!
I found it online
* http://cboard.cprogramming.com/c-programming/114023-simple-blackjack-program.html
I like to give my flags to millionares.
how much money you got?
Running at : nc pwnable.kr 9009
@dual5651
dual5651 / gist:3c03dca13998b78e4fff86832bc754cf
Created October 12, 2017 06:11
pwnable.kr - coin1 - writeup
Mommy, I wanna play a game!
(if your network response time is too slow, try nc 0 9007 inside pwnable.kr server)
Running at : nc pwnable.kr 9007
----------------------------------------------------------------------------------------
@dual5651
dual5651 / gist:e6d35869e6b689d65bff0032edbf876b
Created October 12, 2017 06:10
pwnable.kr - shellshocked - writeup
Mommy, there was a shocking news about bash.
I bet you already know, but lets just make it sure :)
ssh shellshock@pwnable.kr -p2222 (pw:guest)
----------------------------------------------------------------
mtrlpq3015w-lp130-01-70-30-167-203:~ dual5651$ ssh shellshock@pwnable.kr -p2222
shellshock@pwnable.kr's password:
@dual5651
dual5651 / gist:453e47efbadf872c37d355ca6ce2c1a8
Created October 12, 2017 06:07
pwnable.kr - mistake - writeup
We all make mistakes, let's move on.
(don't take this too seriously, no fancy hacking skill is required at all)
This task is based on real event
Thanks to dhmonkey
hint : operator priority
ssh mistake@pwnable.kr -p2222 (pw:guest)
@dual5651
dual5651 / gist:6e6395226f2ab48ed7190205754977e7
Last active September 1, 2018 14:06
pwnable.kr - leg - writeup
Daddy told me I should study arm.
But I prefer to study my leg!
Download : http://pwnable.kr/bin/leg.c
Download : http://pwnable.kr/bin/leg.asm
ssh leg@pwnable.kr -p2222 (pw:guest)
-------------------------------------------------------------------
@dual5651
dual5651 / gist:73c4f047b644a83c1659855dc78c88e2
Created October 12, 2017 05:49
pwnable.kr - input - writeup
Mom? how can I pass my input to a computer program?
ssh input2@pwnable.kr -p2222 (pw:guest)
-----------------------------------------------------------------
mtrlpq3015w-lp130-01-70-30-167-203:~ dual5651$ ssh input2@pwnable.kr -p2222
input2@pwnable.kr's password:
____ __ __ ____ ____ ____ _ ___ __ _ ____
| \| |__| || \ / || \ | | / _] | |/ ]| \
@dual5651
dual5651 / gist:e6151a900431a329c1332860e34f6407
Last active October 12, 2017 05:24
pwnable.kr - random - writeup
Daddy, teach me how to use random value in programming!
ssh random@pwnable.kr -p2222 (pw:guest)
--------------------------------------------------------------------
mtrlpq3015w-lp130-01-70-30-167-203:~ dual5651$ ssh random@pwnable.kr -p2222
random@pwnable.kr's password:
____ __ __ ____ ____ ____ _ ___ __ _ ____
| \| |__| || \ / || \ | | / _] | |/ ]| \