$ cat writeup.md…
$ cat writeup.md…
pwn_spbctf
Task: NON-PIE x86-64 pwn binary whose get_flag runs strstr(attacker_pointer, \"root\") and prints /flag on a match. Solution: point the haystack pointer at the in-binary \"root\" constant (relocated to 0x402067 in this 'Reborn' variant) so strstr matches and print_flag dumps the flag.
Permission denied (requires tier.pro)
Sign in with GitHub, Discord, or Google to continue. No email required.
$sign in$ grep --similar