<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title></title>
	<atom:link href="http://disbauxes.upc.es/feed/" rel="self" type="application/rss+xml" />
	<link>http://disbauxes.upc.es</link>
	<description></description>
	<lastBuildDate>Fri, 28 Oct 2022 10:07:22 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
		<item>
		<title>Forticlient VPN on GNU/Linux: Blank screen</title>
		<link>http://disbauxes.upc.es/gnulinux/forticlient-vpn-on-gnu-linux-blank-screen/</link>
		
		<dc:creator><![CDATA[tonicas]]></dc:creator>
		<pubDate>Thu, 27 Oct 2022 08:17:53 +0000</pubDate>
				<category><![CDATA[analysis]]></category>
		<category><![CDATA[Applied Physics Department]]></category>
		<category><![CDATA[Debian]]></category>
		<category><![CDATA[GNU/Linux]]></category>
		<guid isPermaLink="false">https://disbauxes.upc.es/?p=6112</guid>

					<description><![CDATA[Preamble <p style="text-align: justify; padding-left: 40px;">On a Debian GNU/Linux 11 Bullseye box, with the latest updates and with a working NVIDIA graphics card, the Forticlient GUI binary showed a blank-screen with no widgets in it:</p> <p></p> The widget-rendering is not working <p style="text-align: justify; padding-left: 40px;">We did not have Forticlient source code, so we needed [...]]]></description>
		
		
		
			</item>
		<item>
		<title>UAM: Reverseando la MOVida malagueña</title>
		<link>http://disbauxes.upc.es/security/uam-reverseando-la-movida-malaguena/</link>
		
		<dc:creator><![CDATA[tonicas]]></dc:creator>
		<pubDate>Mon, 19 Oct 2020 11:43:58 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<guid isPermaLink="false">http://disbauxes.upc.es/?p=5961</guid>

					<description><![CDATA[Introducción <p style="text-align: justify; padding-left: 40px;">Descargamos el binario de la web del reto, lo descomprimimos y comprobamos su hash. Lo primero que nos llama la atención es la información que nos muestra readelf:</p> <p>readelf -h Thestral_6ee87b9724dcf5c41ebba4cd578841be ELF Header: Magic: 7f 45 4c 46 01 02 01 00 00 00 00 00 00 00 00 00 [...]]]></description>
		
		
		
			</item>
		<item>
		<title>UAM Futurama 3 parte 2 partial writeup: ROP contra servidor web sin LEAKS</title>
		<link>http://disbauxes.upc.es/code/uam-futurama-3-parte-2-partial-writeup-rop-contra-servidor-web-sin-leaks/</link>
		
		<dc:creator><![CDATA[tonicas]]></dc:creator>
		<pubDate>Wed, 22 Apr 2020 07:51:44 +0000</pubDate>
				<category><![CDATA[Code]]></category>
		<category><![CDATA[Security]]></category>
		<guid isPermaLink="false">http://disbauxes.upc.es/?p=5903</guid>

					<description><![CDATA[Introducción <p style="text-align: justify; padding-left: 40px;">Primero de todo, este no es un write-up completo. Describiré mi exploit para lograr la flag en la segunda parte del reto de Futurama 3 de este mes de la UAM. Se considera el reversing del binario &#8220;carl&#8221; ya completado y las respectivas vulnerabilidades encontradas para provocar el Buffer Overflow.</p> [...]]]></description>
		
		
		
			</item>
		<item>
		<title>Defeating an ELF32 binary with absolutely no leaks without using the ret2_dlresolve technique</title>
		<link>http://disbauxes.upc.es/code/defeating-an-elf32-binary-with-absolutely-no-leaks-without-using-the-ret2_dlresolve-technique/</link>
		
		<dc:creator><![CDATA[tonicas]]></dc:creator>
		<pubDate>Mon, 01 Jul 2019 11:00:08 +0000</pubDate>
				<category><![CDATA[analysis]]></category>
		<category><![CDATA[Code]]></category>
		<category><![CDATA[Security]]></category>
		<guid isPermaLink="false">http://disbauxes.upc.es/?p=5788</guid>

					<description><![CDATA[ The binary <p style="padding-left: 40px; text-align: justify;">I was presented with an ELF32 binary with the following protections:</p> <p id="caption-attachment-5789" class="wp-caption-text">ch77 protections</p> <p style="padding-left: 40px; text-align: justify;">Disassembling the binary with r2, I quickly recognized a classic stack overflow by abusing the call to read:</p> <p id="caption-attachment-5790" class="wp-caption-text">There&#8217;s a buffer overflow in the read function.</p> <p [...]]]></description>
		
		
		
			</item>
		<item>
		<title>Desclavando espinas 2/3: UAD360 go4fun writeup</title>
		<link>http://disbauxes.upc.es/code/desclavando-espinas-2-3-uad360-go4fun-writeup/</link>
		
		<dc:creator><![CDATA[tonicas]]></dc:creator>
		<pubDate>Fri, 21 Jun 2019 20:41:28 +0000</pubDate>
				<category><![CDATA[analysis]]></category>
		<category><![CDATA[Code]]></category>
		<guid isPermaLink="false">http://disbauxes.upc.es/?p=5743</guid>

					<description><![CDATA[El reto <p style="padding-left: 40px; text-align: justify;">Revisamos la información básica sobre el binario:</p> <p>file go4fun.uu go4fun.uu: ELF 32-bit MSB executable, MIPS, MIPS32 version 1 (SYSV), statically linked, not stripped</p> <p style="padding-left: 40px;">Estamos ante un binario ELF (Linux), con arquitectura MIPS de 32 bits. Además, es Big Endian (MSB).</p> Ejecutando el binario con arm_now <p style="padding-left: [...]]]></description>
		
		
		
			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Page Caching using apc 
Database Caching using apc (Request-wide modification query)

Served from: disbauxes.upc.es @ 2023-02-27 11:55:10 by W3 Total Cache
-->