<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Buffer Overflow on Everything Cyber</title><link>https://everything-cyber.netlify.app/tags/buffer-overflow/</link><description>Recent content in Buffer Overflow on Everything Cyber</description><generator>Hugo -- gohugo.io</generator><language>en-us</language><lastBuildDate>Tue, 05 Mar 2024 12:49:58 +0530</lastBuildDate><atom:link href="https://everything-cyber.netlify.app/tags/buffer-overflow/index.xml" rel="self" type="application/rss+xml"/><item><title>Practicing Buffer Overflow with Brainpan 1 [THM]</title><link>https://everything-cyber.netlify.app/blog/brainpan1/</link><pubDate>Tue, 05 Mar 2024 12:49:58 +0530</pubDate><guid>https://everything-cyber.netlify.app/blog/brainpan1/</guid><description>Practicing Buffer Overflow with Brainpan 1 Description Practicing buffer overflow attack using Immunity debugger. This is also a walkthrough on a THM free trial box called Brainpan 1
Environment and Tools Used Kali Linux Windows 10
Immunity Debugger
Python
Recon NMAP Scanning the box via Nmap, we could see 2 ports are open, port 10000 where a python http server and something else is running on port 9999.</description></item><item><title>Practical Buffer Overflow with FreeFloat FTP Server</title><link>https://everything-cyber.netlify.app/blog/buffer-overflow/</link><pubDate>Wed, 05 Jul 2023 12:49:58 +0530</pubDate><guid>https://everything-cyber.netlify.app/blog/buffer-overflow/</guid><description>Practical Buffer Overflow with FreeFloat FTP Server Description A walkthrough illustrating the methodology of the Buffer Overflow attack, focusing on the FreeFloat FTP Server.
Lab Setup -Virtual box
-A windows XP machine
-Favourite Pentest Distro
-Favourite Code editor
Softwares and Tools -Download or Install Immunity Debugger and the Free Float FTP server onto the Windows XP
-Download the mona.py file to Windows XP
-Need Metasploit and SPIKE tools on the Pentest box (Here, I won&amp;rsquo;t be using spike script but would manually exploit the application)</description></item></channel></rss>