$ cat writeup.md…
$ cat writeup.md…
pwn_spbctf
Task: 64-bit NON-PIE shellcoding challenge that mmaps an RWX page and calls a tiny 27-byte attacker buffer; goal is to call win_fcn with the right register arguments. Solution: golf the shellcode by setting the five required argument registers and using `push imm32; ret` to jump to win_fcn at 0x4006b0, landing exactly at 27 bytes.
Permission denied (requires tier.pro)
Sign in with GitHub, Discord, or Google to continue. No email required.
$sign in$ grep --similar