<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" gd:etag="W/&quot;DUENR3o6fyp7ImA9WhRQF00.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333</id><updated>2011-12-12T16:34:56.417Z</updated><category term="reversing" /><category term="linux" /><category term="shellcode" /><category term="challenge" /><category term="cryptography" /><category term="tools" /><category term="login" /><category term="ndh2011" /><category term="debugging" /><category term="memory corruption" /><category term="hacking" /><category term="réflexion" /><category term="conference" /><category term="book" /><category term="format string" /><category term="forensic" /><category term="android" /><category term="tips" /><category term="dep" /><category term="electronic" /><category term="rop" /><category term="script" /><category term="windows" /><category term="wargame" /><category term="unicode" /><category term="pentesting:physical" /><category term="film" /><category term="seh" /><category term="review" /><category term="exploit" /><title>Binary world for binary people :)</title><subtitle type="html" /><link rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/posts/default" /><link rel="alternate" type="text/html" href="http://binholic.blogspot.com/" /><link rel="next" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><generator version="7.00" uri="http://www.blogger.com">Blogger</generator><openSearch:totalResults>58</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/BinaryWorldForBinaryPeople" /><feedburner:info uri="binaryworldforbinarypeople" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><entry gd:etag="W/&quot;CkIDQXc-fCp7ImA9WhRQEEk.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-6494046656071833433</id><published>2011-12-04T23:01:00.001Z</published><updated>2011-12-04T23:16:10.954Z</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-04T23:16:10.954Z</app:edited><title>CrashFr n'est plus :(.</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/6494046656071833433/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/12/crashfr-nest-plus.html#comment-form" title="0 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/6494046656071833433?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/6494046656071833433?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/WGumXpt2B14/crashfr-nest-plus.html" title="CrashFr n'est plus :(." /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><content type="html">Bonjour ou bonsoir,

Hier soir j'apprend la nouvelle ... juste impossible ... juste pas croyable.

Je me connecte sur la chan IRC de #hzv, une ambiance morose et un titre à faire peur: "CrashFR will never die" ... no way ...
Mes doutes, mes peurs ... j'apprend que Paolo Pinto est décédé ... fuck fuck fuck.

Paolo Pinto, aka CrashFr dans la communauté des hackers, était une figure emblématique de 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/zNCltg5wcmhG5INoOyi94URfIko/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/zNCltg5wcmhG5INoOyi94URfIko/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/zNCltg5wcmhG5INoOyi94URfIko/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/zNCltg5wcmhG5INoOyi94URfIko/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/WGumXpt2B14" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/12/crashfr-nest-plus.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEQNRns5fyp7ImA9WhRQEkw.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-3215483448669722011</id><published>2011-12-03T18:49:00.001Z</published><updated>2011-12-07T00:06:37.527Z</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-07T00:06:37.527Z</app:edited><title>GCHQ Challenge Part 3 : www.canyoucrackit.co.uk</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/3215483448669722011/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/12/gchq-challenge-part-3.html#comment-form" title="0 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/3215483448669722011?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/3215483448669722011?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/o7x4a_vvCJQ/gchq-challenge-part-3.html" title="GCHQ Challenge Part 3 : www.canyoucrackit.co.uk" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-GjjfwPzLxpU/TtxIexCFSbI/AAAAAAAAAFw/SG7IeL30rGU/s72-c/2.png" height="72" width="72" /><thr:total>0</thr:total><content type="html">As
I have seen that many people already posted their solutions ... I do not see the point of keeping mine :). Here it is.

Hello,

Here is the final part of the GCHQ recruitment compaign.

The challenge

We are offered an executable file (compiled under cygwin ...) to analyze.

The "analysis"

The analysis was pretty straightforward.
No protections (you can look with PEiD, etc).

Open it in 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/fm2jevrbCArrgJ1yMzH2jdm_mCA/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/fm2jevrbCArrgJ1yMzH2jdm_mCA/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/fm2jevrbCArrgJ1yMzH2jdm_mCA/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/fm2jevrbCArrgJ1yMzH2jdm_mCA/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/o7x4a_vvCJQ" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/12/gchq-challenge-part-3.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0AFRn05eSp7ImA9WhRQEUQ.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-1371670239770037886</id><published>2011-12-03T17:40:00.001Z</published><updated>2011-12-06T19:28:37.321Z</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-06T19:28:37.321Z</app:edited><title>GCHQ Challenge Part 2 - http://www.canyoucrackit.co.uk/</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/1371670239770037886/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/12/gchq-challenge-part-2.html#comment-form" title="0 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/1371670239770037886?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/1371670239770037886?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/kNj50p38ChE/gchq-challenge-part-2.html" title="GCHQ Challenge Part 2 - http://www.canyoucrackit.co.uk/" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><content type="html">As
I have seen that many people already posted their solutions ... I do not see the point of keeping mine :). Here it is.Hello again :),

Ok folks, you managed to get to level 2.

Let's begin,

The challenge

We are presented with a JavaScript file:

//--------------------------------------------------------------------------------------------------

//

// stage 2 of 3

//

// challenge:

//   
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/AjRFbAB9Ohpsorg_yLhTxGDCExQ/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/AjRFbAB9Ohpsorg_yLhTxGDCExQ/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/AjRFbAB9Ohpsorg_yLhTxGDCExQ/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/AjRFbAB9Ohpsorg_yLhTxGDCExQ/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/kNj50p38ChE" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/12/gchq-challenge-part-2.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkANRXczeSp7ImA9WhRQEUQ.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-5431351466287487964</id><published>2011-12-01T19:10:00.001Z</published><updated>2011-12-06T19:13:14.981Z</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-06T19:13:14.981Z</app:edited><title>GCHQ Challenge Part 1 - http://www.canyoucrackit.co.uk/</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/5431351466287487964/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/12/gchq-challenge-part-1.html#comment-form" title="0 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/5431351466287487964?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/5431351466287487964?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/o2ulEPIg-OU/gchq-challenge-part-1.html" title="GCHQ Challenge Part 1 - http://www.canyoucrackit.co.uk/" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-B7-FM-pUheY/TtpVGeYGQ-I/AAAAAAAAAFo/Fzy9HElto_I/s72-c/cyber.png" height="72" width="72" /><thr:total>0</thr:total><content type="html">Hello,

As
I have seen that many people already posted their solutions ... I do not see the point of keeping mine :). Here it is.

Today I stumbled upon a challenge that seems to come from GCHQ itself.
GCHQ is basically part of the UK's Secret Service.

An article describing a bit the recruitment campaign:
GCHQ challenges codebreakers via social networks

Anyway, the challenge is located here:

&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/5q6ltUUfMz9ceSWlr2eTEBHe-Qw/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/5q6ltUUfMz9ceSWlr2eTEBHe-Qw/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/5q6ltUUfMz9ceSWlr2eTEBHe-Qw/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/5q6ltUUfMz9ceSWlr2eTEBHe-Qw/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/o2ulEPIg-OU" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/12/gchq-challenge-part-1.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkUDSH0zfSp7ImA9WhRSGEU.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-3234399117967764763</id><published>2011-11-16T13:21:00.001Z</published><updated>2011-11-21T14:04:39.385Z</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-21T14:04:39.385Z</app:edited><title>PS3 Hacking (Part 2) - FAQ</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/3234399117967764763/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/11/ps3-hacking-part-2-faq.html#comment-form" title="0 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/3234399117967764763?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/3234399117967764763?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/v5zhL1VVeCQ/ps3-hacking-part-2-faq.html" title="PS3 Hacking (Part 2) - FAQ" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><content type="html">Hello,

Let's go on for PS3 Hacking part 2 :).

FAQ! Frequently Asked Questions


Why do everybody want the lv0 keys so badly even though they might not know how to use them?


WAREZ ... WAREZ ... EVEN MORE WAREZ ...

Homebrew has been attain with firmware &amp;lt;= 3.55 ... so heh ;).
Personnaly, I'm not interested in CFW ... more interested in the technical details than anything else here :).


Why 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/6nt9NOrRdGdf1UG1xGk4ETtUDWs/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/6nt9NOrRdGdf1UG1xGk4ETtUDWs/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/6nt9NOrRdGdf1UG1xGk4ETtUDWs/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/6nt9NOrRdGdf1UG1xGk4ETtUDWs/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/v5zhL1VVeCQ" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/11/ps3-hacking-part-2-faq.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkEERXc5fyp7ImA9WhRSGEU.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-6245100848967511638</id><published>2011-11-16T12:47:00.001Z</published><updated>2011-11-21T14:10:04.927Z</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-21T14:10:04.927Z</app:edited><title>PS3 Hacking (Part 1) - Exploitation</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/6245100848967511638/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/11/ps3-hacking-part-1-exploitation.html#comment-form" title="1 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/6245100848967511638?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/6245100848967511638?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/O1dOs1FRxuA/ps3-hacking-part-1-exploitation.html" title="PS3 Hacking (Part 1) - Exploitation" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>1</thr:total><content type="html">
Hello,

It's been a long time since the last time I posted :), I miss hacking bits and binaries ... but well, I read a bit for relaxing ... here it is :).

Anyway, I've been reading about PS3 a bit and it's funny to see that not a single PS3 specialized news site has been able to correctly understand the exploits they publish on a regular basis.

I have not tried to hack the PS3 yet, just 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/m-_hlTAx7lI0ApdcJAIVFRPPhq0/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/m-_hlTAx7lI0ApdcJAIVFRPPhq0/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/m-_hlTAx7lI0ApdcJAIVFRPPhq0/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/m-_hlTAx7lI0ApdcJAIVFRPPhq0/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/O1dOs1FRxuA" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/11/ps3-hacking-part-1-exploitation.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0MHRnY8fCp7ImA9WhdSFE4.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-9015273707596403477</id><published>2011-07-23T15:20:00.002+01:00</published><updated>2011-07-23T15:30:37.874+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-23T15:30:37.874+01:00</app:edited><title>De l'importance de vérifier les exploits</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/9015273707596403477/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/07/de-limportance-de-verifier-les-exploits.html#comment-form" title="5 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/9015273707596403477?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/9015273707596403477?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/A4uKxO2O22M/de-limportance-de-verifier-les-exploits.html" title="De l'importance de vérifier les exploits" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>5</thr:total><content type="html">Bonjour,

Aujourd'hui nous allons voir l'importance de ne pas lancer des exploits publics publiés sur exploit-db, full disclosure ou autre sans analyser la payload qui va avec.

Nombre de personnes (souvent des script kiddies), utilisent des exploits sans faire d'effort de relecture du code. En utilisant ces exploits, ils se font souvent poutré sans même le savoir :).

Le but de cet article va 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/fDNBvHqMGxmIGLKTY-NytVIOaZk/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/fDNBvHqMGxmIGLKTY-NytVIOaZk/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/fDNBvHqMGxmIGLKTY-NytVIOaZk/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/fDNBvHqMGxmIGLKTY-NytVIOaZk/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/A4uKxO2O22M" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/07/de-limportance-de-verifier-les-exploits.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CUQCRno_eyp7ImA9WhdTGUQ.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-5366590981526200709</id><published>2011-07-17T22:39:00.021+01:00</published><updated>2011-07-18T13:49:27.443+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-18T13:49:27.443+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="réflexion" /><title>Ras le bol de l'adage popularisé: "hackers = méchants"</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/5366590981526200709/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/07/ras-le-bol-de-ladage-popularise-hackers.html#comment-form" title="6 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/5366590981526200709?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/5366590981526200709?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/RqI-rtNBWqY/ras-le-bol-de-ladage-popularise-hackers.html" title="Ras le bol de l'adage popularisé: &quot;hackers = méchants&quot;" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>6</thr:total><content type="html">[UPDATE 18/07/2011]:- Ajout: Petit paragraphe sur les lois Françaises dans la partie consacrée à la France- Ajout: Petit paragraphe sur le système financier dans la partie consacrée aux Etats- Ajout: Petit paragraphe dans la conclusion- Corrections de fautes diverses (il y en a sûrement encore).

Bonjour ou bonsoir,

Aujourd'hui, pas de post technique comme à mon habitude. Juste un cris de haine,
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/28_OguWrcGwET7L7_eXVaSfeA1o/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/28_OguWrcGwET7L7_eXVaSfeA1o/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/28_OguWrcGwET7L7_eXVaSfeA1o/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/28_OguWrcGwET7L7_eXVaSfeA1o/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/RqI-rtNBWqY" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/07/ras-le-bol-de-ladage-popularise-hackers.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU4GSX8_eCp7ImA9WhZaGUQ.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-2087665029822507745</id><published>2011-07-06T07:58:00.004+01:00</published><updated>2011-07-07T01:18:48.140+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-07T01:18:48.140+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="conference" /><category scheme="http://www.blogger.com/atom/ns#" term="electronic" /><category scheme="http://www.blogger.com/atom/ns#" term="ndh2011" /><title>[EN] NDH 2011 badge hacking part 3 : Let's code!</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/2087665029822507745/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/07/en-ndh-2011-badge-hacking-part-3-lets.html#comment-form" title="0 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/2087665029822507745?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/2087665029822507745?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/T3lbdTBNBWI/en-ndh-2011-badge-hacking-part-3-lets.html" title="[EN] NDH 2011 badge hacking part 3 : Let's code!" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><content type="html">Hello folks!

Here is the final part of my NDH 2011 Badge Hacking serie.
We know how to plug it, read it ... how about we write in it now?

Pre-requisites

As you could see from the first post about the pinout, there are PORTA, PORTB and PORTD.
These are defines in AVR C headers that allows you to set those corresponding ports.
Setting one of the bits of a PORT would set the corresponding PIN to 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/T4Eu3n1SbgxevmKpzMRjWURHP4g/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/T4Eu3n1SbgxevmKpzMRjWURHP4g/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/T4Eu3n1SbgxevmKpzMRjWURHP4g/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/T4Eu3n1SbgxevmKpzMRjWURHP4g/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/T3lbdTBNBWI" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/07/en-ndh-2011-badge-hacking-part-3-lets.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU4GSX8_eSp7ImA9WhZaGUQ.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-2625515205245371043</id><published>2011-07-06T06:57:00.002+01:00</published><updated>2011-07-07T01:18:48.141+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-07T01:18:48.141+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="conference" /><category scheme="http://www.blogger.com/atom/ns#" term="electronic" /><category scheme="http://www.blogger.com/atom/ns#" term="ndh2011" /><title>[EN] NDH 2011 badge hacking part 2 : What is the message?</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/2625515205245371043/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/07/en-ndh-2011-badge-hacking-part-2-what.html#comment-form" title="0 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/2625515205245371043?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/2625515205245371043?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/gWp52ONZXcg/en-ndh-2011-badge-hacking-part-2-what.html" title="[EN] NDH 2011 badge hacking part 2 : What is the message?" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><content type="html">Hello!

Now you should have a nice working cable.
Today we are going to get the message.

Dumping the flash

We can look into the chip memory using avrdude terminal mode:
$ sudo avrdude -c usbasp -p attiny2313 -t

avrdude: warning: cannot set sck period. please check for usbasp firmware update.
avrdude: AVR device initialized and ready to accept instructions

Reading | ###########################
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/tjEjFH1q9dYogf9oTGHzXD-_eWA/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/tjEjFH1q9dYogf9oTGHzXD-_eWA/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/tjEjFH1q9dYogf9oTGHzXD-_eWA/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/tjEjFH1q9dYogf9oTGHzXD-_eWA/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/gWp52ONZXcg" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/07/en-ndh-2011-badge-hacking-part-2-what.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU4GSX8_eSp7ImA9WhZaGUQ.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-1626568709796613023</id><published>2011-06-30T20:16:00.005+01:00</published><updated>2011-07-07T01:18:48.141+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-07T01:18:48.141+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="conference" /><category scheme="http://www.blogger.com/atom/ns#" term="electronic" /><category scheme="http://www.blogger.com/atom/ns#" term="ndh2011" /><title>[EN] NDH 2011 badge hacking part 1 : Pinout reversing</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/1626568709796613023/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/06/ndh-2011-badge-hacking-part-1-pinout.html#comment-form" title="0 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/1626568709796613023?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/1626568709796613023?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/e70CUVyEYyc/ndh-2011-badge-hacking-part-1-pinout.html" title="[EN] NDH 2011 badge hacking part 1 : Pinout reversing" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-4qP7lsE0R4M/TgzGBaRYIAI/AAAAAAAAAFI/XJ_R7VX8H0c/s72-c/IMG_9110.JPG" height="72" width="72" /><thr:total>0</thr:total><content type="html">* UPDATED (6 July 2011) *:- Fixed links (ATMEL documentation)- Added section on full pinout

Hello!

Today we are going to do some "hardware" hacking (if we can call it like that ...). Yes, NDH badge hacking :D.
I do not have any real knowledge in electronics but it should be enough to pawn it.

The thing I am the most amazed with is that nobody wrote an article about it but the creator of the 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/SB3eXAs_YsNwJTeUHJ0Qhs86cC8/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/SB3eXAs_YsNwJTeUHJ0Qhs86cC8/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/SB3eXAs_YsNwJTeUHJ0Qhs86cC8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/SB3eXAs_YsNwJTeUHJ0Qhs86cC8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/e70CUVyEYyc" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/06/ndh-2011-badge-hacking-part-1-pinout.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU4MRnk7fCp7ImA9WhZaGUQ.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-2360897470286156390</id><published>2011-06-29T13:01:00.002+01:00</published><updated>2011-07-07T01:19:47.704+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-07T01:19:47.704+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="challenge" /><title>Brainfuck: Get ready to get your brain crushed!</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/2360897470286156390/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/06/brainfuck-get-ready-to-get-your-brain.html#comment-form" title="4 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/2360897470286156390?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/2360897470286156390?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/qC6tD-e4ktM/brainfuck-get-ready-to-get-your-brain.html" title="Brainfuck: Get ready to get your brain crushed!" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>4</thr:total><content type="html">Hello!

Here it is ... maybe another useless post about a useless langage :p.
Today, ... it will be about brainfuck!
The name really fit the langage ... cause in the end, your brain get completely crushed from it :p. Worst than ASM I swear :) ... but fun nonetheless ;).

Well, what can you do in brainfuck? Well basically anything, it's turing complete.

Let's first start with basic instructions.

&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/T8JSKuq3BnIXzOyrEcE0Jhbi-3o/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/T8JSKuq3BnIXzOyrEcE0Jhbi-3o/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/T8JSKuq3BnIXzOyrEcE0Jhbi-3o/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/T8JSKuq3BnIXzOyrEcE0Jhbi-3o/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/qC6tD-e4ktM" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/06/brainfuck-get-ready-to-get-your-brain.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU8CRH0ycCp7ImA9WhZaGUQ.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-5547803381541045619</id><published>2011-06-23T20:24:00.002+01:00</published><updated>2011-07-07T01:17:45.398+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-07T01:17:45.398+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="conference" /><category scheme="http://www.blogger.com/atom/ns#" term="exploit" /><category scheme="http://www.blogger.com/atom/ns#" term="ndh2011" /><category scheme="http://www.blogger.com/atom/ns#" term="hacking" /><title>[NDH2011] Demo: Virtuosa full ROP connectback stager</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/5547803381541045619/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/06/ndh2011-demo-virtuosa-full-rop.html#comment-form" title="0 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/5547803381541045619?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/5547803381541045619?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/8TVQIY4k9Jc/ndh2011-demo-virtuosa-full-rop.html" title="[NDH2011] Demo: Virtuosa full ROP connectback stager" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-cr19tdZLMxU/TgOSWS_XP_I/AAAAAAAAAE0/hzOrR3T4Z9w/s72-c/virtuosa-messagebox.png" height="72" width="72" /><thr:total>0</thr:total><content type="html">Hello everyone!

This post will be about my demo I prepared for my talk at the NDH2011. As you know, it failed! It was due to some metasploit depency problem (I checked and netcat receive the connection from the VM).

Introduction

The following ROP sploit was based on the following exploit: Virtuosa Phoenix Edition 5.2 ASX SEH BOF.
Basically, if we have a href which is too long, we trigger a SEH
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/0Yg_mq2QjGDRZXDG_SCohcwNI6Q/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/0Yg_mq2QjGDRZXDG_SCohcwNI6Q/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/0Yg_mq2QjGDRZXDG_SCohcwNI6Q/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/0Yg_mq2QjGDRZXDG_SCohcwNI6Q/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/8TVQIY4k9Jc" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/06/ndh2011-demo-virtuosa-full-rop.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU8DRnczcCp7ImA9WhZaGUQ.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-4185009819068053438</id><published>2011-06-20T11:51:00.002+01:00</published><updated>2011-07-07T01:17:57.988+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-07T01:17:57.988+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="conference" /><category scheme="http://www.blogger.com/atom/ns#" term="ndh2011" /><title>[EN] NDH2011: Bilan</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/4185009819068053438/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/06/en-ndh2011-bilan.html#comment-form" title="5 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/4185009819068053438?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/4185009819068053438?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/JfdKfKk2RZ0/en-ndh2011-bilan.html" title="[EN] NDH2011: Bilan" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-kROxakElGfE/Tf39kwAinVI/AAAAAAAAAEw/8VMBChE1bYM/s72-c/logo-ndh2011.jpg" height="72" width="72" /><thr:total>5</thr:total><content type="html">Hi folks!



NDH2011 is over!
It was awesome, there were more girls, more people, more talks, new sex toys (have you seen the crazy CTF machines? :)), etc.


The talks

There weren't that many technical conferences this year, some were refreshing, others almost killed me (especially the one on "Social security").

I've seen the following conferences:
- Hacking android for fun and profit - Damien 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/d0MHGVZVZXPqcGqVDufeNFhkb30/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/d0MHGVZVZXPqcGqVDufeNFhkb30/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/d0MHGVZVZXPqcGqVDufeNFhkb30/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/d0MHGVZVZXPqcGqVDufeNFhkb30/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/JfdKfKk2RZ0" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/06/en-ndh2011-bilan.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU8DRnczcSp7ImA9WhZaGUQ.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-3192973663238046995</id><published>2011-06-12T12:02:00.002+01:00</published><updated>2011-07-07T01:17:57.989+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-07T01:17:57.989+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="conference" /><category scheme="http://www.blogger.com/atom/ns#" term="ndh2011" /><title>[NDH] Are you ready?</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/3192973663238046995/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/06/ndh-are-you-ready.html#comment-form" title="3 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/3192973663238046995?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/3192973663238046995?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/yO2mISPFSJ8/ndh-are-you-ready.html" title="[NDH] Are you ready?" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>3</thr:total><content type="html">Hello everyone :)!


This will be my first conference as a talker so be tolerant ;).

I will be giving a conference on modern exploitation at NDH 2001 (Night Da Hack 2011) on the 18th of June.
The conference will be in French with English slides. I expect to see more French people than English speaking people like any other NDH I have been to. Moreover, I am more comfortable with French even 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/mTfxrFGvK5YjkBqscuWlaiNgbFw/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/mTfxrFGvK5YjkBqscuWlaiNgbFw/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/mTfxrFGvK5YjkBqscuWlaiNgbFw/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/mTfxrFGvK5YjkBqscuWlaiNgbFw/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/yO2mISPFSJ8" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/06/ndh-are-you-ready.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0INR3Y_eyp7ImA9WhZQGU0.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-7238961548951662010</id><published>2011-04-27T09:24:00.001+01:00</published><updated>2011-04-27T14:06:36.843+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-04-27T14:06:36.843+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="review" /><category scheme="http://www.blogger.com/atom/ns#" term="book" /><title>[Book] Kingpin: How One Hacker Took Over The Billion-Dollar CyberCrime Underground</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/7238961548951662010/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/04/book-kingpin-how-one-hacker-took-over.html#comment-form" title="1 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/7238961548951662010?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/7238961548951662010?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/Uvnp6_kVAEU/book-kingpin-how-one-hacker-took-over.html" title="[Book] Kingpin: How One Hacker Took Over The Billion-Dollar CyberCrime Underground" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>1</thr:total><content type="html">Hello,

For once in a while, why not write in English?
Afterall, you are around 20-30% of English speaking people reading up my blog, it would not be fair not to speak about this great book and not share it more.

Small book presentation

This book is written by Kevin Poulsen a former hacker and now senior editor in Wired. He is the creator and maintainer of the "Threat Level" section in Wired. 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/KfmDkBCOfwVUl5QXfKVkb_-kVBo/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KfmDkBCOfwVUl5QXfKVkb_-kVBo/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/KfmDkBCOfwVUl5QXfKVkb_-kVBo/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KfmDkBCOfwVUl5QXfKVkb_-kVBo/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/Uvnp6_kVAEU" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/04/book-kingpin-how-one-hacker-took-over.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0YDR3w4fip7ImA9WhZQGE4.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-5764026563825398714</id><published>2011-04-25T14:44:00.003+01:00</published><updated>2011-04-26T17:26:16.236+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-04-26T17:26:16.236+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="challenge" /><category scheme="http://www.blogger.com/atom/ns#" term="exploit" /><category scheme="http://www.blogger.com/atom/ns#" term="hacking" /><title>Plaid Parliament of Pawning CTF: CPP1 in pwnables</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/5764026563825398714/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/04/plaid-parliament-of-pawning-ctf-cpp1-in.html#comment-form" title="0 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/5764026563825398714?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/5764026563825398714?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/Q8njgapIRhU/plaid-parliament-of-pawning-ctf-cpp1-in.html" title="Plaid Parliament of Pawning CTF: CPP1 in pwnables" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><content type="html">Bonjour,

Ce week-end s'est déroulé le PPP CTF, je n'ai hélas pas pu y consacrer énormément de temps :(.

J'ai quand même pu toucher à quelques épreuves sympas dont un overflow sur un programme écrit en C++.

Nous avions affaire à un programme vulnérable à un overflow dû à l'usage de sprintf() et nous devions crafter une vtable afin de rediriger le flux d'exécution comme il fallait.

Tout d'abord
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/p0FAWC2bruzUFX7HKEr5MjLl5fM/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/p0FAWC2bruzUFX7HKEr5MjLl5fM/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/p0FAWC2bruzUFX7HKEr5MjLl5fM/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/p0FAWC2bruzUFX7HKEr5MjLl5fM/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/Q8njgapIRhU" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/04/plaid-parliament-of-pawning-ctf-cpp1-in.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkcCRncyeSp7ImA9WhZaGUQ.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-8758286155605976722</id><published>2011-04-04T19:30:00.002+01:00</published><updated>2011-07-07T01:21:07.991+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-07T01:21:07.991+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="challenge" /><category scheme="http://www.blogger.com/atom/ns#" term="windows" /><category scheme="http://www.blogger.com/atom/ns#" term="forensic" /><category scheme="http://www.blogger.com/atom/ns#" term="ndh2011" /><title>Prequals NDH2011: Forensic100 (Windows Memory Analysis)</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/8758286155605976722/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/04/prequals-ndh2011-forensic-1-windows.html#comment-form" title="4 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/8758286155605976722?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/8758286155605976722?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/rUDvh48na9k/prequals-ndh2011-forensic-1-windows.html" title="Prequals NDH2011: Forensic100 (Windows Memory Analysis)" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-mp4l2KleLIs/TZoN3DmzH1I/AAAAAAAAAEo/2Zvu4ONGXIA/s72-c/vncpw.png" height="72" width="72" /><thr:total>4</thr:total><content type="html">Hi!

Today we are going to look after the forensic 100 challenge of the prequals :).
We were offered a memory dump to analyze.

Tools

The needed tools for the analysis are basically the following:
Volatility: Windows Memory Analysis
VolReg: Volatility plugin for registry analysis
VNC Password Dumper: VNC Password decrypter

Analysis

We first need to know what operating system dump we are 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/Dp3873pnSfpixxzr7rm-GF7rptI/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Dp3873pnSfpixxzr7rm-GF7rptI/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/Dp3873pnSfpixxzr7rm-GF7rptI/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Dp3873pnSfpixxzr7rm-GF7rptI/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/rUDvh48na9k" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/04/prequals-ndh2011-forensic-1-windows.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkcCRncyeip7ImA9WhZaGUQ.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-6952337042409878100</id><published>2011-04-04T00:28:00.003+01:00</published><updated>2011-07-07T01:21:07.992+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-07T01:21:07.992+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="challenge" /><category scheme="http://www.blogger.com/atom/ns#" term="reversing" /><category scheme="http://www.blogger.com/atom/ns#" term="ndh2011" /><category scheme="http://www.blogger.com/atom/ns#" term="android" /><title>Prequals NDH2011: RCE200 (Android)</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/6952337042409878100/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/04/prequals-ndh2011-rce200-android.html#comment-form" title="2 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/6952337042409878100?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/6952337042409878100?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/iGfXe7jvPaM/prequals-ndh2011-rce200-android.html" title="Prequals NDH2011: RCE200 (Android)" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-j9XKN9J7wLY/TZj6GGtd7iI/AAAAAAAAAEc/cFWLTuOGILM/s72-c/rce200.png" height="72" width="72" /><thr:total>2</thr:total><content type="html">On va commencer par l'épreuve de reversing Android.
C'était la première fois que je jouais avec de l'Android, seems fun :). 

Introduction 

On avait à disposition une simple application dans laquelle il nous fallait parler.

Au lancement de l'application, nous somme accueillis par le screen suivant (sans le petit texte que j'ai ajouté :)): 


 Il fallait prononcer un mot correctement pour 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/FAXVZDVPgeeQb092PDJuidAmhZk/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/FAXVZDVPgeeQb092PDJuidAmhZk/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/FAXVZDVPgeeQb092PDJuidAmhZk/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/FAXVZDVPgeeQb092PDJuidAmhZk/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/iGfXe7jvPaM" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/04/prequals-ndh2011-rce200-android.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkcCRncyeip7ImA9WhZaGUQ.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-8449154177386778108</id><published>2011-04-03T23:20:00.000+01:00</published><updated>2011-07-07T01:21:07.992+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-07T01:21:07.992+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="challenge" /><category scheme="http://www.blogger.com/atom/ns#" term="ndh2011" /><title>Prequals NDH2011</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/8449154177386778108/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/04/prequals-ndh2011.html#comment-form" title="1 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/8449154177386778108?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/8449154177386778108?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/E5AtPp1MVQY/prequals-ndh2011.html" title="Prequals NDH2011" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>1</thr:total><content type="html">Hello!

Ce week-end s'est déroulé les prequals de la NDH2011 (de Vendredi soir minuit à Dimanche soir minuit).
Les challenges comprenaient les catégories suivantes: crypto, web, reversing et forensic.
A notre grande surprise, il n'y avait pas d'exploitation comme à notre habitude, nous avons donc dû nous rabattre sur d'autres joix binaires.

Voici donc les différentes épreuves auquelles nous 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/DaxsmmcQ8kMzguGjUSP5DAGR5ow/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/DaxsmmcQ8kMzguGjUSP5DAGR5ow/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/DaxsmmcQ8kMzguGjUSP5DAGR5ow/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/DaxsmmcQ8kMzguGjUSP5DAGR5ow/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/E5AtPp1MVQY" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/04/prequals-ndh2011.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkQFQ306fCp7ImA9WhZTEk4.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-5694310142117202686</id><published>2011-03-13T16:41:00.017Z</published><updated>2011-03-16T01:18:32.314Z</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-03-16T01:18:32.314Z</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="tools" /><category scheme="http://www.blogger.com/atom/ns#" term="linux" /><category scheme="http://www.blogger.com/atom/ns#" term="rop" /><title>[Tool] ROPit v0.1 alpha 1</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/5694310142117202686/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/03/tool-ropit-v01-alpha.html#comment-form" title="2 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/5694310142117202686?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/5694310142117202686?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/eew40NRGmFw/tool-ropit-v01-alpha.html" title="[Tool] ROPit v0.1 alpha 1" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>2</thr:total><content type="html">[UPDATE: 14/03/2011]:
- Mise en place d'un GIT
- Ajout d'explications pour l'installation

Salut les gens!

Mon dernier article commence déjà à remonter :).

Introduction 

Aujourd'hui j'ai le plaisir de vous présenter un tool de ma conception.
Il est encore extremement buggué, pas pour rien que je considère ça comme une alpha ^^.
C'est un tool de ropping tout ce qu'il y a de plus classique.

So 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/DRXN4mxckLGbQbnXXkSb9chRL8M/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/DRXN4mxckLGbQbnXXkSb9chRL8M/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/DRXN4mxckLGbQbnXXkSb9chRL8M/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/DRXN4mxckLGbQbnXXkSb9chRL8M/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/eew40NRGmFw" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/03/tool-ropit-v01-alpha.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUAHR3Y5fSp7ImA9Wx9aEEo.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-8641512891218620821</id><published>2011-03-02T14:47:00.002Z</published><updated>2011-03-02T14:55:36.825Z</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-03-02T14:55:36.825Z</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="pentesting:physical" /><category scheme="http://www.blogger.com/atom/ns#" term="film" /><category scheme="http://www.blogger.com/atom/ns#" term="review" /><title>[Film] Sneakers</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/8641512891218620821/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/03/film-sneakers.html#comment-form" title="1 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/8641512891218620821?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/8641512891218620821?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/aEGaOXZkaII/film-sneakers.html" title="[Film] Sneakers" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="https://lh3.googleusercontent.com/-Ok6l-XsKA7s/TW5XgxbdEWI/AAAAAAAAAEU/FcbxzjO4SCk/s72-c/sneakers.jpg" height="72" width="72" /><thr:total>1</thr:total><content type="html">Bonjour,

Pour changer un peu des posts techniques, une petite review d'un film qui m'a bien surpris malgré son relatif age: Sneakers (qui est sorti en 1992). Il est peu cité à contrario des films "Hackers", Cybertraque ou Antitrust.
Ce qui m'intéresse avant tout est bien entendu les détails qui font que le film peut être considéré comme un film de "hackers" ou autres passionnés de sécurités les 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/B7gwgMPh_A-kRSu5SNOFidj5qtU/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/B7gwgMPh_A-kRSu5SNOFidj5qtU/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/B7gwgMPh_A-kRSu5SNOFidj5qtU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/B7gwgMPh_A-kRSu5SNOFidj5qtU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/aEGaOXZkaII" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/03/film-sneakers.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU8AQHw9eCp7ImA9Wx9aEEo.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-3429562258546006140</id><published>2011-02-09T12:16:00.003Z</published><updated>2011-03-02T14:57:21.260Z</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-03-02T14:57:21.260Z</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="seh" /><category scheme="http://www.blogger.com/atom/ns#" term="dep" /><category scheme="http://www.blogger.com/atom/ns#" term="rop" /><category scheme="http://www.blogger.com/atom/ns#" term="exploit" /><title>[Exploitation] NovaCTF January 2011: ROPPING</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/3429562258546006140/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/02/exploitation-novactf-january-2011_09.html#comment-form" title="3 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/3429562258546006140?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/3429562258546006140?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/oxSlTgOocXM/exploitation-novactf-january-2011_09.html" title="[Exploitation] NovaCTF January 2011: ROPPING" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/_f5m_EwAc0kk/TVKJWgVGFPI/AAAAAAAAAEQ/JiWYrC9Gf_Y/s72-c/Screenshot+-+02092011+-+12%253A17%253A37+PM.png" height="72" width="72" /><thr:total>3</thr:total><content type="html">Bonjour,

Aujourd'hui on va attaquer le challenge du NovaCTF de Janvier de manière différente.
La dernière fois nous avons fais usage d'un stack pivot, egg hunter et payload ... mais le problème est que tout celà s'exécute sur la pile. En cas de DEP ça ne marcherait pas.
Nous allons donc remédier à celà, par contre on perd le bypass ASLR :( (si quelqu'un a une idée pour ASLR+DEP bypass sur ce 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/0kGjW3jJti3mE_MZwUhV40mUEzk/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/0kGjW3jJti3mE_MZwUhV40mUEzk/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/0kGjW3jJti3mE_MZwUhV40mUEzk/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/0kGjW3jJti3mE_MZwUhV40mUEzk/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/oxSlTgOocXM" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/02/exploitation-novactf-january-2011_09.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU8AQHw9eSp7ImA9Wx9aEEo.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-797329257339056340</id><published>2011-02-03T14:02:00.000Z</published><updated>2011-03-02T14:57:21.261Z</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-03-02T14:57:21.261Z</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="seh" /><category scheme="http://www.blogger.com/atom/ns#" term="challenge" /><category scheme="http://www.blogger.com/atom/ns#" term="windows" /><category scheme="http://www.blogger.com/atom/ns#" term="exploit" /><category scheme="http://www.blogger.com/atom/ns#" term="memory corruption" /><title>[Exploitation] NovaCTF January 2011</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/797329257339056340/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/02/exploitation-novactf-january-2011.html#comment-form" title="0 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/797329257339056340?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/797329257339056340?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/KOgk6UvY4dc/exploitation-novactf-january-2011.html" title="[Exploitation] NovaCTF January 2011" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><content type="html">Bonjour,

Ca fait un moment que le NovaCTF est terminé et que les solutions devraient pleuvoirs.
Vu que ce n'est pas le cas, je vais en écrire un write up plus ou moins détaillé.

Tout d'abord, la chose qui a pu être constaté lors de ce challenge est un manque de vérification des binaires fournis aux participants de ce challenge. Il y a eus 3 binaires différents durant celui-ci.

Les binaires 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/5DmievwpIuOJTf_1T69Ad7cDVLg/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/5DmievwpIuOJTf_1T69Ad7cDVLg/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/5DmievwpIuOJTf_1T69Ad7cDVLg/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/5DmievwpIuOJTf_1T69Ad7cDVLg/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/KOgk6UvY4dc" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/02/exploitation-novactf-january-2011.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C04ASHg_fip7ImA9Wx9VF0k.&quot;"><id>tag:blogger.com,1999:blog-363901370178199333.post-6676675703544282503</id><published>2011-02-02T16:19:00.005Z</published><updated>2011-02-03T14:05:49.646Z</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-03T14:05:49.646Z</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="challenge" /><category scheme="http://www.blogger.com/atom/ns#" term="linux" /><category scheme="http://www.blogger.com/atom/ns#" term="reversing" /><title>[Reversing] Ge0's KeygenMe fast</title><link rel="replies" type="application/atom+xml" href="http://binholic.blogspot.com/feeds/6676675703544282503/comments/default" title="Publier les commentaires" /><link rel="replies" type="text/html" href="http://binholic.blogspot.com/2011/02/reversing-ge0s-keygenme-fast.html#comment-form" title="0 commentaires" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/6676675703544282503?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/363901370178199333/posts/default/6676675703544282503?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/BinaryWorldForBinaryPeople/~3/syvF1BTtKys/reversing-ge0s-keygenme-fast.html" title="[Reversing] Ge0's KeygenMe fast" /><author><name>m_101</name><uri>http://www.blogger.com/profile/04511118411760397645</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><content type="html">Bonjour,

Ce soir nous allons étudier rapidement un keygen me "basique", c'est-à-dire sans aucunes obfuscation, anti-debugging ou autre "protections" particulières.

C'est un challenge du site Zenk-Sécurité, pour cette raison, je ne vais pas dévoiler mon keygen mais juste donner des pistes (fortement détaillées).
Seuls ceux qui auront résolu le challenge pourront avoir accès à mon keygen.
Ca 
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/yVyJAEqgfRgBw-wa_XmJe1Cjtko/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/yVyJAEqgfRgBw-wa_XmJe1Cjtko/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/yVyJAEqgfRgBw-wa_XmJe1Cjtko/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/yVyJAEqgfRgBw-wa_XmJe1Cjtko/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/BinaryWorldForBinaryPeople/~4/syvF1BTtKys" height="1" width="1"/&gt;</content><feedburner:origLink>http://binholic.blogspot.com/2011/02/reversing-ge0s-keygenme-fast.html</feedburner:origLink></entry></feed>

