Doge Ransom 2 — ROP ret2puts Leak then ADMIN re-login

Overflow the IBAN field to leak the binary’s own password via puts, then re-login as ADMIN using the leaked credential and repeat the overflow to reach the flag path.

January 1, 2024 · 3 min · giordii