Git Product home page Git Product logo

note-pentest-practice's Introduction

Penetration Testing Practice

Toc

  • Skill-Up
  • Fundermental
  • Challenge
    • Basic
    • Intermidiate
    • Advanced

Skill Up

  • TryHackMe
    • Advent of Cyber1 [2019]
    • CTF collection Vol.1
    • CC: Pen Testing
    • Injection
    • Fowsniff CTF
    • Post-Exploitation Basics
    • AttackerKB

Fundermental

  • TryHackMe
    • LinuxPrivEsc
    • MetasPloit
    • Nmap
    • Introductory Researching
    • The find command
    • Web Scanning
    • Sudo Security Bypass
    • Sudo Buffer Overflow

Challenge

Basic

  • TryHackMe
    • AllInOne
    • Anonforce_Check_20210117
    • Basic_Pentesting_Check_20210117
    • Blue
    • Bolt
    • BrooklynNineNine
    • Bruteit
    • ChocolateFactory
    • CtfCollectionVol1
    • Dav
    • FowSniff1
    • GettingStart
    • LFI_Basics
    • LFI_inclusiton
    • LazyAdmin
    • Lian_Yu
    • MrRobotCTF
    • PokemonV2
    • ReversingELF
    • RootMe
    • Simple_CTF
    • Source
    • Vulnversity
    • Web_Scanning
    • WgelCTF
    • YearOfTheRabbit
    • blueprint
    • c4ptur3-th3-fl4g
    • colddBoxEasyEnv2
    • task18

Intermidiate

  • TryHacMe
    • Agent_Sudo
    • Archangel
    • BountyHacker
    • BreakOutTheCage
    • ChillHack
    • EasyPeasy
    • Ignite
    • Kenobi
    • Library
    • PickleRick
    • StartUp
    • The_Cod_Caper
    • overpass

Advanced

  • TryHackMe
    • BoilCTF
    • Jack-of-all-Trades
    • Jeff
    • Madness
    • TheMarketplace

note-pentest-practice's People

Contributors

jak010 avatar

Watchers

 avatar

note-pentest-practice's Issues

HackTheBox : Blunder

Brute Forcing에 사용될 파일이 칼리 리눅스에서 제공되는 사전파일에 힌트가 있으므로

OS X 에서 진행하는 것은 무리, 즉 Kali linux에서 해당 Machine을 다시 도전하기로 예정함

commit in : ad9e1c8

Buffer overflow 외부인자(Argument) 예제 추가

해당 예제에서는 변수간의 차이를 이용하여 Exploit code를 작성하는 것이 목표 Exploit을 성공시키기 위하여 다음 두 가지 방법이 필요함

  1. 변수 간의 오프셋을 구하는 방법
  • gdb를 이용해 분석해 변수 간의 오프셋을 알아 볼 수 있음
  • 변수 간의 오프셋을 무작위로 대입하는 방법

2.외부인자 (argument)로 입력 받을 시에 프로그램에 값을 넘겨주는 방법
-./program $(Exploit code)

Hack The Box : Blunder

맥 OS X 에서 metasploit으로 meterpreter 까지 얻어낸 뒤 shell 명령이 듣지 않는 현상 발생

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.