19 May 2015 DEFCON CTF 2015 hackercalc exploit
Hackercalc is an x86 calculator JIT compiler. Download binary
c00kies@venice is a team of people interested in whatever floats around information security, hosted by the Department of Environmental Sciences, Informatics and Statistics at Ca’ Foscari University (Venice, Italy) and a division of secgroup. We like to get hands-on in all kinds of security issues and participate in international hacking competitions.
Hackercalc is an x86 calculator JIT compiler. Download binary
Help us fight the evil robotic lieutenant Don Sim. He wants to spread robo propaganda to cover his actions on the Oktoberfest. But he needs good video footage for that. So he created an IRC bot that collects information about robots in movies. Robotic emancipation can NOT happen, you have to stop him! All we need is his private key. Our agents located the bot, here is all we know about it:
- Server:
irc://ctf.fluxfingers.net:1313
- Bot:
lib[1-5]
(load balancer)- Key:
/var/private/key.txt
- Hint: All available commands are listed with
help
. 3 connections allowed per ip.
The page provided appears to be a pseudo random number generator. By reading the page source we can retrieve the PHP sources of the challenge and the flag location (not directly readable)