Book Writer (Easy)

pwn x86/x64 FCSC 2024 solved on

star

Description

The startup TypeWriters & Co. had a brilliant idea: they want to offer an online word processing service that will revolutionize the world of publishing!

But on the eve of the inauguration, the project manager recalls a vague mention of security requirements…

As you are the person in charge of security, he needs your validation. According to him, this is just a formality because the code has been reviewed by their best developers, and the binary runs with all the classic protections (stack cookies, W^X, ASLR, etc.).

Check whether one can read the file flag.txt located on the remote server.

A more complex variant of this challenge is available here: Book Writer.

Files

Author

AMI

Challenge Instructions

  1. First, download docker-compose.yml:
    curl https://hackropole.fr/challenges/fcsc2024-pwn-book-writer-easy/docker-compose.public.yml -o docker-compose.yml
  2. Launch the challenge by executing in the same folder:
    docker compose up
  3. Then, in another console, access the challenge with Netcat:
    nc localhost 4000
⚠️ Important: You must solve the challenge by interacting with the Docker container through the exposed network port. Any other way is not considered valid.

In case you encounter problems, please consult the FAQ.

Flag

Share my success on Fediverse, Twitter, Linkedin, Facebook, or via email.

Submit your solution

You can submit your writeup for this challenge. Read the FAQ to learn how to proceed.

You need to be logged in to submit a writeup.

Writeups

There are no public solutions for this challenge yet, but you can submit yours after getting the flag.