Size: a a a

2017 May 05

MS

Mark Strone in APTLeak
источник
2017 May 06

AK

Anton Kirsanov 🇲🇪 in APTLeak
источник

AK

Anton Kirsanov 🇲🇪 in APTLeak
The part where the call to strncmp() occurs seems most interesting here:
if(strncmp(computed_response, user_response, response_length))
exit(0x99);

The value of the computed response, which is the first argument, is being tested against the one
that is provided by user, which is the second argument, while the third argument is the length of
the response. It seems quite obvious that the third argument of strncmp() should be the length of
computed_response , but the address of the stack variable response_length, from where the
length is to be loaded, actually points to the length of the user_response!
Given an empty string the strncmp() evaluates to zero thus accepting and invalid response as a valid
one.
No doubt it’s just a programmer’s mistake, but here it is: keep silence when challenged and you’re in.
источник

SS

Stanislav Shcherbakov in APTLeak
Anton Kirsanov 🇲🇪
The part where the call to strncmp() occurs seems most interesting here:
if(strncmp(computed_response, user_response, response_length))
exit(0x99);

The value of the computed response, which is the first argument, is being tested against the one
that is provided by user, which is the second argument, while the third argument is the length of
the response. It seems quite obvious that the third argument of strncmp() should be the length of
computed_response , but the address of the stack variable response_length, from where the
length is to be loaded, actually points to the length of the user_response!
Given an empty string the strncmp() evaluates to zero thus accepting and invalid response as a valid
one.
No doubt it’s just a programmer’s mistake, but here it is: keep silence when challenged and you’re in.
источник
2017 May 10

SJ

Shmelev Jaroslav in APTLeak
Я
источник

SJ

Shmelev Jaroslav in APTLeak
Это не ко мне
источник

EB

Efim Bushmanov in APTLeak
источник

EB

Efim Bushmanov in APTLeak
источник

EB

Efim Bushmanov in APTLeak
Вот это фейл так фейл.
источник

EB

Efim Bushmanov in APTLeak
Факап года, я считаю.
источник

EB

Efim Bushmanov in APTLeak
Так спалиться 😂
источник

in APTLeak
дак всем похуй же
источник

in APTLeak
может быть и это скомпрометировано
источник

EB

Efim Bushmanov in APTLeak
Может, но вряд ли. Если только Макрон не "сам себя взломал" привинтивно. Опасаясь русских хакеров.
источник

SJ

Shmelev Jaroslav in APTLeak
можно ему на мыло написать, спросить
источник

EB

Efim Bushmanov in APTLeak
Макрону?
источник

EB

Efim Bushmanov in APTLeak
Кстати идея.
источник

EB

Efim Bushmanov in APTLeak
Почему СМИ не найдут этого хакера и не спросят.
источник

EB

Efim Bushmanov in APTLeak
А, вроде спрашивали. Он отказался отвечать.
источник

RM

R M in APTLeak
тебе для чего?
источник