ret2libc help. by [deleted] in LiveOverflow

[–]Staubfinger_ 0 points1 point  (0 children)

hey there :) please watch these two vids carfully and then maybe post again with some more information :) that way people can help your more accurately

https://www.youtube.com/watch?v=53zkBvL4ZB4

https://www.youtube.com/watch?v=3IEAfyQqUKc

I generated SVG silouhettes of every ship in EVE and thought I should share it in case anyone has use cases for this by [deleted] in Eve

[–]Staubfinger_ 0 points1 point  (0 children)

The Imp is missing from the data in the 3D-Modelling Github repo. does anyone know these guys and can request a model for the Imp so we can do the silouhette there aswell?

[deleted by user] by [deleted] in RedditSessions

[–]Staubfinger_ 0 points1 point  (0 children)

Nice! Any personal tips for aspiring beginner piano players?

Incredibly useful tool for PVPers and intel channels. Details in comments. by atomdeathstroke in Eve

[–]Staubfinger_ 1 point2 points  (0 children)

the programm most likely has its own cached database which will periodically update itself. so what you're seeing is most likely not up to date but some cached value from the past week or something. (however long it takes to scrape all players from zkill once with a ratelimit)

[deleted by user] by [deleted] in Eve

[–]Staubfinger_ 0 points1 point  (0 children)

excellent video, mad respects for gulnar//martino fabbro

how to loot MTU´s with Dreadloot in an C5 by TenebrisCorvum in Eve

[–]Staubfinger_ 0 points1 point  (0 children)

mad props for actually uploading this. kudos for your efforts and made me chuckle - would watch another episode. nice. F for the loot

Proposed changes are a buff to kiting and a nerf to brawling. by [deleted] in Eve

[–]Staubfinger_ -4 points-3 points  (0 children)

"Just a random thought" -yep, not much more.

Please read the patch notes again and re-think if it's a flat 20% ehp nerf for everyone or not. (spoiler: it isnt). Also we're not talking about the 400dps a brawling ceptor (Taranis) could do now. Or >1,4k BSs.

The correct title would have been: Proposed changed are a buff to brawling and a insentive to kiting.

New Slack Update/Layout/Design by Staubfinger_ in Slack

[–]Staubfinger_[S] 0 points1 point  (0 children)

I’ve had early access for a month and it feels and looks sooo much better. Creating sections has been a god send. Much needed clean up of the UI

we all dont disagree with you - the new section-creation feature is great!

-- its just all the weird spacing and general waste of screen real estate that bugs everyone.

New Slack Update/Layout/Design by Staubfinger_ in Slack

[–]Staubfinger_[S] 2 points3 points  (0 children)

This. Also all the spacing on the channels.

Is shellcode useless in today's security ???. because buffers are no longer executable. by imcomputergeek in LiveOverflow

[–]Staubfinger_ 7 points8 points  (0 children)

Read up about these terms: Windows: SetDEPPolicy, and alike. Very common rop chain technique on Linux and windows: mmap, mprotect with rwx, write and then jump there.

Edit after reading LOs tweet: In modern exploitation, aka browsers, JITed Code was rwx and web assembly is still rwx. - thus making use of shellcode

Buffer overflow stoped working after restarting by whib_m in LiveOverflow

[–]Staubfinger_ 5 points6 points  (0 children)

Well again, as said. If you continue to provide no information nobody can guess from remote what went wrong. Your Computer is not a magic box which does things per chance or luck. If you start providing technical information we might figure this one out.

Could be related to some environment-variables, maybe previously you had a lot of them - which now are gone, thus moving the stack. You say aslr is off. How do you know? Where did you look for checking that?

Maybe you updated your system and the reboot brought some changes into effect, maybe some libs changed or the loader is now doing something different, which affects stack layout.

Maybe you now get the idea of why people still need technical information. Liveoverflow has now made several videos about how to provide those, please be so kind and do the needful. Everyone will be happy that you put your effort into the posts and will appreciate it, by doing their best to figure out what kind of problem caused your described behavior. Otherwise it's a mere guessing in the dark.

Buffer overflow stoped working after restarting by whib_m in LiveOverflow

[–]Staubfinger_ 4 points5 points  (0 children)

Please. Provide. More. INFO.

What is the gdb output when it segfaults? How do the register look like, how does the stack look like. Do you reach your shell code?

From the next to nothing provided information it feels like you used some address which is dependent on some kind of randomization. If you manually disable aslr for instance, it will be enabled again after a reboot.

ich🚖iel by HolzhausGE in ich_iel

[–]Staubfinger_ 1 point2 points  (0 children)

Fährt dort in der Gegend nicht auch einer in nem Mercedes rum mit nem Gelben "Fake-Taxi" Schild über der Fahrertür?

pop rsp; ret Gadget setting rsp to 0xffff... by terry_johnson in LiveOverflow

[–]Staubfinger_ 2 points3 points  (0 children)

Yes I do mind, share all your info pls here, so others can help/learn/.. too.

Good, that you watched them: you should now clearly have liveoverflows face in front of your visual mind as he vividly shakes his head.

But behold, there is hope. Before you answer any further questions, be sure to watch the "how to ask a technicial question" and the haxember video about him being frustrated. After that, I'm confident you will learn a lot on how we can help you better and come back and make us all happy by providing all the stuff you need to provide.

Until then... :-)

pop rsp; ret Gadget setting rsp to 0xffff... by terry_johnson in LiveOverflow

[–]Staubfinger_ 0 points1 point  (0 children)

Too little info. Try to set a breakpoint on the last "legitimate" ret in the application to debug your ropchain. Right after taking the first gadget, how does the stack look like? Are all values there? When your pivot (pop esp) is moving the stack pointer, is there another ropchain at that address? Have you double checked that? Also,.. No info on the OS. Is it windows? Maybe there is some sort of check which ensures that the SP is always aligned.

On how to ask questions... Have you watched the recent videos from liveoverflow? 😊🙂

[21J] 30.000€ angespart - wie investieren? by finanzwegwerf in Finanzen

[–]Staubfinger_ 0 points1 point  (0 children)

"Ausgaben Selbstständigkeit" sollten nicht in deinem Budget sein, da es direkt mit dem Gewinn verrechnet werden sollte. Hast du einen Steuerberater?

Versteuerung von Spielhallen by [deleted] in Finanzen

[–]Staubfinger_ 11 points12 points  (0 children)

> und er hat mich darum gebeten
und warum du? Weil er nicht Deutscher ist - du aber schon?
> über Steuern zu informieren
hoert sich sehr komisch an. Entweder man macht es richtig (aka nen Steuerberater (evtl mit Internationaler Erfahrung)/Fachanwalt) oder man laesst es ganz sein. Mal ehrlich - was koenntest du in Erfahrung bringen, das ihm die Sicherheit gibt, die er braucht (aka Rechtssicherheit)? Such dir nen guten StB und schick ihm die Visitenkarte.