From a2ab353f027423d2184904c463a6ddc86283c6e0 Mon Sep 17 00:00:00 2001 From: RocketDev Date: Fri, 27 Sep 2024 00:15:34 +0800 Subject: [PATCH] update dasxmarek thumbnail --- source/_posts/dasxmarek2024/alphacode.md | 3 ++- source/_posts/dasxmarek2024/clock.md | 3 ++- 2 files changed, 4 insertions(+), 2 deletions(-) diff --git a/source/_posts/dasxmarek2024/alphacode.md b/source/_posts/dasxmarek2024/alphacode.md index 5975457..f5fc8ef 100644 --- a/source/_posts/dasxmarek2024/alphacode.md +++ b/source/_posts/dasxmarek2024/alphacode.md @@ -1,10 +1,11 @@ --- title: DASCTF2024八月开学季 - alphacode date: 2024/09/05 00:12:00 -updated: 2024/09/11 23:05:00 +updated: 2024/09/27 00:12:00 excerpt: 使用`sendfile`系统调用,通过异或解码与`imul`绕过 shellcode 字符限制,逐字节输出flag。 tags: - shellcode +thumbnail: /assets/dasxmarek2024/flag.png --- ## 文件属性 diff --git a/source/_posts/dasxmarek2024/clock.md b/source/_posts/dasxmarek2024/clock.md index 317959f..9ac1f23 100644 --- a/source/_posts/dasxmarek2024/clock.md +++ b/source/_posts/dasxmarek2024/clock.md @@ -1,11 +1,12 @@ --- title: DASCTF2024八月开学季 - clock date: 2024/09/05 00:15:00 -updated: 2024/09/13 19:49:00 +updated: 2024/09/27 00:12:00 excerpt: 通过`vsnprintf`格式化漏洞,利用`%*c%6$lln`覆盖`puts@got`为堆地址,执行自定义shellcode。 tags: - fmt-string - tricks +thumbnail: /assets/dasxmarek2024/explanation.png --- {% note green fa-heart %}