Exetools  

Go Back   Exetools > General > General Discussion

Notices

 
 
Thread Tools Display Modes
Prev Previous Post   Next Post Next
  #9  
Old 12-22-2017, 10:36
MistHill MistHill is offline
Family
 
Join Date: Dec 2012
Posts: 31
Rept. Given: 12
Rept. Rcvd 42 Times in 13 Posts
Thanks Given: 26
Thanks Rcvd at 135 Times in 28 Posts
MistHill Reputation: 42
Good, raduga_fb found bugs in the application.
1. the customized Base64 encoding/decoding has problem.
UserCode 000000000000000000000000000870~879 and 87a, 87A, 87b, 87B result same after decoded.
2. validation logic
The success flag is set if UserCode length greater than 0x1D. But next it will jump over the UserName check if ElGamalDecrypt() failed.

We need to counterfeit a UserCode with the correct checksum, and cause ElGamalDecrypt() return NULL, the trick is done.

Some "valid" UserCode:
00000000000000000000000000004s
000000000000000000000000000+6s
0000000000000ca210e81sg92ku=gs
000000000000YRi210e81sg92kuaFs
000000000000JS0mA591h7l9nhR2Yc
000000000000Mt4tE4AMIojgpaJbQc
0000000000000AstE4AMIojgpaJbDCq
00000000000007yc93CdcfKwlGnPsRk
Reply With Quote
The Following User Says Thank You to MistHill For This Useful Post:
TempoMat (02-25-2018)
 


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Strange Instruction CTS BE thomasantony General Discussion 2 03-23-2005 04:41


All times are GMT +8. The time now is 08:08.


Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX, chessgod101
( Since 1998 )