Skip to content

/bin/6 downloader #155

@xero

Description

@xero

Entry Info

Challenge

from the rules:

  • Download Challenge
    • Download the text file
    • Display the file's contents in some way
  • Recycle Challenge
    • Be 4096 bytes or less
    • Files must also print, return, or otherwise display the value "6" for identification when opened or executed

Target Software and Version

bash / any

Environment Setup

  • local: chmod +x six
  • remote create 6 file

File Contents

six / downloader

encoded contents (larger than my entry):

ZXhlYyAzPD4vZGV2L3RjcC8kMS84MDtwcmludGYgIkdFVCAvNiBIVFRQLzEuMFxyXG5Ib3N0OiQxXHJcblxyXG4iPiYzO2RkPCYzO2V4ZWMgMzwmLQo=

raw contents:

exec 3<>/dev/tcp/$1/80;printf "GET /6 HTTP/1.0\r\nHost:$1\r\n\r\n">&3;dd<&3;exec 3<&-

File Info

  • Target File Type: bash/zsh
  • Target File Size: 86b
  • SHA256 Hash: 043d0ab504d71d6b752f56474ede9148f5293bc25d41ddf0ad72f3651e0b96c1
  • Notes: No external tools, pure bash

Usage

run with a shell and domain param
bash ./six 0w.nz

or pipe it back into the shell. same diff

bash ./six 0w.nz | bash

BONUS ROUND! for some fun, i've created a special 6 file

6 / runner

server-side file for downloader to view/run

File Info

  • Target File Type: posix sh, bash, zsh, plain text (e.g. cat)
  • Target File Size: 2.7k (raw)
  • SHA256 Hash: 3ea22f5261fa3b4c357ff286bc2bf027e967d5205032d1f65696ad6ee7c8143e
  • Notes: No external tools, pure sh

encoded contents
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=

Usage

cat 6 or run it ./6

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions