.

I need an help with GDB

<<

Pacochan

Newbie
Newbie

Posts: 13

Joined: Thu Jun 25, 2009 5:47 pm

Post Sat Nov 06, 2010 1:20 pm

I need an help with GDB

Hi guys.
I don't know if it the right place where to ask an help.
Anyway, I'm writing an exploit for the new proftpd stack overflow vulnerability.
Infact, I already analyzed the stack and created the exploit... the problem is that it works only if I install proftpd in the debug mode.

I know there is a way with GDB to attach the pid of the process running in a normal way ( for "normai", I mean withou debug options ) in order to keep a neat stack on which I can work...

In other words, if u want to develope an exploit for a vulnerable linux service with root privilages... what would u do?

Thanks in advance... I hope my italienglish is enought easy to understand!! :)
OSCP
<<

KrisTeason

User avatar

Hero Member
Hero Member

Posts: 515

Joined: Sat Sep 08, 2007 7:48 pm

Location: /dev/null

Post Sat Nov 06, 2010 3:29 pm

Re: I need an help with GDB

hey pacochan,

You may want to take a look at this video series on SecurityTube:

Buffer Overflow Primer Part 1

Vivek uses gdb throughout the whole series - it may be useful for what your trying to do!

-Kris
eCPPT (Silver/Gold), eWPT, GSEC, GISP, GCIH, OSCP, OSWP
<<

Pacochan

Newbie
Newbie

Posts: 13

Joined: Thu Jun 25, 2009 5:47 pm

Post Sat Nov 06, 2010 8:19 pm

Re: I need an help with GDB

Thank you!
Infact, what I really need is to understand how to debug a large applications.
The first videos seems to work only on a simple source file, but anyway i will watch all the videos. Maybe it could give me some ideas!!!
OSCP
<<

mesho

Newbie
Newbie

Posts: 24

Joined: Tue Aug 10, 2010 8:01 am

Post Mon Nov 08, 2010 12:40 am

Re: I need an help with GDB

ammmmm, i see this trick before mentioned in the
smashthestack.org

but i can't tell where exactly?!!!  ???

Return to Tutorials

Who is online

Users browsing this forum: No registered users and 1 guest

.
Powered by phpBB® Forum Software © phpBB Group.
Designed by ST Software