pwnmedium
Hospital (Больница)
duckerz
Task: PWN binary with PIE enabled, no canary, and executable stack (RWX). Solution: Leak PIE base via info function, use ret2reg technique with jmp rsi gadget to execute shellcode in the buffer.
$ ls tags/ techniques/
shellcode_injectionpie_leakjmp_rsiret2reg
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Create a free account with GitHub, then upgrade to Pro.
$ssh [email protected]