App - System App - System

These challenges will help you understand applicative vulnerabilities.

Login credentials are provided for different challenge, the goal is to obtain additional rights by exploiting program’s weaknesses and get a password to validate challs on the portal.

Prerequisite:
 GDB.
 Knowledges in ASM.
 Knowledges in C language.

challenges 93 Challenges

Results Name Validations Number of points  Explanation for the scores Difficulty  Difficulty Author Note  Notation Solution Date
pas_valide ELF ARM - Alphanumeric shellcode 1% 54 100 pickle 2 16 March 2017
pas_valide ELF ARM - Basic ROP 1% 916 40 pickle 5 11 March 2017
pas_valide ELF ARM - Format String bug 1% 108 110 pickle 2 14 March 2017
pas_valide ELF ARM - Heap Off-by-One 1% 79 115 pickle 1 11 March 2017
pas_valide ELF ARM - Heap Overflow 1% 65 120 pickle 1 2 April 2017
pas_valide ELF ARM - Heap buffer overflow - Wilderness 1% 48 120 pickle 1 25 March 2017
pas_valide ELF ARM - Heap format string bug 1% 97 105 franb 1 3 June 2017
pas_valide ELF ARM - Race condition 1% 172 70 pickle 1 3 June 2017
pas_valide ELF ARM - Stack Spraying 1% 309 30 pickle 4 2 April 2017
pas_valide ELF ARM - Stack buffer overflow - basic 1% 1493 25 pickle 7 9 March 2017
pas_valide ELF ARM - Use After Free 1% 118 110 pickle 0 22 March 2017
pas_valide ELF ARM64 - Heap Underflow 1% 33 120 nobodyisnobody 0 13 February 2023
pas_valide ELF ARM64 - Multithreading 1% 22 140 franb 0 13 February 2023
pas_valide ELF MIPS - Basic ROP 1% 199 40 dagger 1 7 October 2018
pas_valide ELF MIPS - Format String Glitch 1% 98 60 pickle , martin 1 21 October 2018
pas_valide ELF MIPS - Stack buffer overflow - No NX 1% 594 25 franb 2 28 September 2018
pas_valide ELF MIPS - URLEncoded Format String bug 1% 44 100 pickle 0 7 October 2018
pas_valide ELF RISC-V - Intro - let’s do the ROP 1% 93 40 nobodyisnobody 1 13 February 2023
pas_valide ELF x64 - Advanced Heap Exploitation - Heap Leakless & Fortified 1% 62 135 nobodyisnobody 1 27 May 2021
pas_valide ELF x64 - Advanced blind format string exploitation 1% 14 115 nobodyisnobody 0 11 July 2024
pas_valide ELF x64 - Basic heap overflow 1% 2177 10 sourcePerrier 1 13 February 2023
pas_valide ELF x64 - Blind ROP 1% 125 135 franb 1 10 March 2018
pas_valide ELF x64 - Blind SROP 1% 29 100 s1m 0 28 December 2023
pas_valide ELF x64 - Browser exploit - BitString 1% 40 135 pickle 0 15 December 2018
pas_valide ELF x64 - Browser exploit - Intro 1%