Forums: [exploit Writing For Newbies] Need Help - Forums

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

[exploit Writing For Newbies] Need Help "./exploit.pl host" is very easy..

#1 User is offline   marve 

  • Private
  • Icon
  • Group: Members
  • Posts: 3
  • Joined: 07-July 05

Posted 09 July 2005 - 09:44 PM

..but , I want to understand what I do , why I do it , how they did it and why I get so easly the root .

As I said it , finding a vulnerable system is easy , compiling and use the exploit is easy too.. But finding the vulnerability and writing exploit , here is the real interessant part (for me) .

So , my request is simple : Can you give me your best links to learn how to write an exploit ? I want to find THE tuts for the very very new beginner , with good explication and example . I need too your best recommandations .

My skills are very low : for developpement , I know littlely perl , just begun with C++ , good competence with PHP/Sql . I know too linux (debian actually) , know how to managing and administrating correctly and securely most server (apache , ftp , ssh etc..) .

Marve

ps:sorry for my poor poor english .
0

#2 User is offline   jpno5 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 62
  • Joined: 29-January 04

Posted 09 July 2005 - 10:21 PM

http://www.justfuckinggoogleit.com/ <_<
0

#3 User is offline   BuzzDee 

  • Master Sergeant
  • Icon
  • Group: Specialist
  • Posts: 454
  • Joined: 27-September 03

Posted 10 July 2005 - 12:48 AM

there are also many links on the board...
first of all it depends on which kind of vulnerability you want to exploit. the easiest (and most common) are buffer overflows. "smashing the stack for fun and profit" is of course one of the standard papers which gives you an idea of what happens when u exploit a buffer overflow.
or did you mean some other kind of vulnerability? ^^
0

#4 User is offline   Digital_Spirit 

  • Master Sergeant
  • Icon
  • Group: Specialist
  • Posts: 424
  • Joined: 18-March 04

Posted 10 July 2005 - 03:40 AM

Here is a nice little shellcode writing tutorial I came across one day whilst browsing the net.

http://www.safemode...._shellcode.html
0

#5 User is offline   haz 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 52
  • Joined: 17-June 05

Posted 10 July 2005 - 03:43 AM

phrack.org has also very good and easy tuts ;)
0

#6 User is offline   raging_bull 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 36
  • Joined: 21-June 05

Posted 10 July 2005 - 05:45 AM

On astalavista.org are some vidz how a buffer overflow works. They show you how the exploit.. maybe usefull?
0

#7 User is offline   marve 

  • Private
  • Icon
  • Group: Members
  • Posts: 3
  • Joined: 07-July 05

Posted 10 July 2005 - 06:50 AM

I know that we can find a lot of things on google , and I know too they're a lot of link on this boards (that why I register on it..) , but what I want is going where I want exactly , no waste of time .
So , that's why I just asked you what is (for you) the best papers for beginners (with my skills) .

I found a lot of papers wich are speaking about BoF with PoC in C.. but , If I don't know C or C++ (I am learning c++) , it's not easy for me..

So in a first time , I search papers for writing exploits with Perl and PHP .

But , btw , thanks for you answers ;)

/edit : And want too (it's very important) know how to find the vulnerabilities..'coz without that , I can't write the exploit ;)
0

#8 User is offline   Presnus 

  • Private
  • Icon
  • Group: Members
  • Posts: 15
  • Joined: 10-July 05

Posted 10 July 2005 - 12:38 PM

http://www.governmen...showtopic=13846

There are a lot of answers if you check out this thread

I have attached a tutorial wich explains the STEP-BY-STEP writing (from beginning until end) of the WarFTPD Deamon exploit (stack based) ;) so have fun with it !!

Win32 Exploit (Warftpd Deamon) Tutorial

Greets Presnus
0

#9 User is offline   SecureD 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 137
  • Joined: 09-October 03

Posted 10 July 2005 - 12:45 PM

Presnus, on Jul 10 2005, 08:38 PM, said:

http://www.governmen...showtopic=13846

There are a lot of answers if you check out this thread

I have attached a tutorial wich explains the STEP-BY-STEP writing (from beginning until end) of the WarFTPD Deamon exploit (stack based) ;) so have fun with it !!

Win32 Exploit (Warftpd Deamon) Tutorial

Greets Presnus


Indeed thats a very nice tutorial about writing exploit.
0

#10 User is offline   BuzzDee 

  • Master Sergeant
  • Icon
  • Group: Specialist
  • Posts: 454
  • Joined: 27-September 03

Posted 10 July 2005 - 01:00 PM

indeed this war-ftp tut is very nice. perfect start for a newbie in exploiting bofs. if u don't understand sth just ask and i will help
0

#11 User is offline   marve 

  • Private
  • Icon
  • Group: Members
  • Posts: 3
  • Joined: 07-July 05

Posted 10 July 2005 - 01:01 PM

Thank for your help everybody :P
0

#12 User is offline   plasmax 

  • Private
  • Icon
  • Group: Members
  • Posts: 14
  • Joined: 13-July 05

Posted 16 July 2005 - 11:04 AM

A

B

C

D



in order to construct the roof you must have a home :)
0

#13 User is offline   ComputerGEEK 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 31
  • Joined: 05-January 06

Posted 03 August 2006 - 04:31 AM

can somebody upload the tutorial "Win32 Exploit (Warftpd Deamon) Tutorial"

the link mentioned above is dead and google doesnt have it.

Thank you.
0

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users

  • Share



Our Sponsors:


SwiftLayer Affiliate Web Hosting