Tear Or Dear: decompile the .NET logic, rebuild the check, and recover the accepted input.
Linux
134 postsThe Art of Reversing
The Art of Reversing: decompile the .NET logic, rebuild the check, and recover the accepted input.
You Cant C Me
You Cant C Me: reverse the validation logic, model the transform, and recover the accepted input.
Under the web
Rauth
Rega's Town
Exatlon
UnderPass
Spooky License
Spooky License: reverse the validation logic, model the transform, and recover the accepted input.
ChromeMiner
ChromeMiner: reverse the validation logic, model the transform, and recover the accepted input.
Vault-breaker
Vault-breaker: build the exploit primitive, stabilize the payload, and use it to read the flag.
Heal
FlagCasino
FlagCasino: trace the binary, isolate the validation routine, and invert it to recover the flag.
Getting Started
Getting Started: calculate the overflow offset, redirect control flow, and land a reliable flag read.
Hunting License
Hunting License: trace the binary, isolate the validation routine, and invert it to recover the flag.
LinkHands
LinkHands: reverse the validation logic, model the transform, and recover the accepted input.
Questionnaire
Questionnaire: use the format-string bug for a leak or write, then redirect execution to the flag path.
Space Pirate Going Deeper
Space Pirate Going Deeper: build the exploit primitive, stabilize the payload, and use it to read the flag.
Terrorfryer
Terrorfryer: reverse the validation logic, model the transform, and recover the accepted input.
Wizard's Diary
Wizard's Diary: calculate the overflow offset, redirect control flow, and land a reliable flag read.
Writing on the Wall
Writing on the Wall: build the exploit primitive, stabilize the payload, and use it to read the flag.
Crushing
Crushing: reverse the validation logic, model the transform, and recover the accepted input.
Entity
Entity: build the exploit primitive, stabilize the payload, and use it to read the flag.
Golfer
Golfer: trace the binary, isolate the validation routine, and invert it to recover the flag.
Graverobber
Graverobber: trace the binary, isolate the validation routine, and invert it to recover the flag.
Pixel Audio
Pixel Audio: build the exploit primitive, stabilize the payload, and use it to read the flag.
Potion Master
Potion Master: recover the XOR transform from the binary and invert it to reveal the flag.
QuickScan
QuickScan: trace the binary, isolate the validation routine, and invert it to recover the flag.