🖥️ Challenge / Machine Info

  • Platform: proving-grounds
  • Name / Title: snort
  • Difficulty: Medium
  • Target OS / Environment: Windows
  • Key Vulnerability Focus: Remote Buffer Overflow / Assembly JMP ESP

Walkthrough

  1. Exploitation: Exploit vulnerable Snort monitoring console by hijacking EIP with JMP ESP pointer.
  2. Privilege Escalation: The shell returns NT AUTHORITY\SYSTEM context directly.