data:image/s3,"s3://crabby-images/7e5ed/7e5eda7933ceda60df088e31685fb0bf72bd4628" alt=""
噢,美丽的IDA远程动态调试界面!!!
我爱了,这个七夕。
环境准备
软件:IDA(安装在Windows系统)
主机:Ubuntu18-amd64
程序:bugku之pwn2
将IDA中linux_server和linux_server64复制到Ubuntu
data:image/s3,"s3://crabby-images/7fca8/7fca87f150d93bbda5ab32b8bf7a8c22a80efe0b" alt=""
给予权限777
data:image/s3,"s3://crabby-images/1e3bb/1e3bbd9d26122b927f4539ddbfb0b46ab030043f" alt=""
IDA打开程序,F2下断点
data:image/s3,"s3://crabby-images/906e5/906e5cb558071bf9e6f2b1def2b53cb5c25ae873" alt=""
data:image/s3,"s3://crabby-images/5dc57/5dc57afebf73832de7c819cd52391b8929f33e52" alt=""
Ubuntu中运行linux_server64
data:image/s3,"s3://crabby-images/a29ad/a29ad6f5e214a59e6ec152a8954a26684b5f702f" alt=""
因被调试程序为64位,故运行linux_server64,打开了23946端口。
IDA设置远程调试参数
data:image/s3,"s3://crabby-images/0eb52/0eb525eefd8496ac67311d541da3d1a964b83d4a" alt=""
data:image/s3,"s3://crabby-images/07c3b/07c3bc84693884066785797a794ab27964e25747" alt=""
data:image/s3,"s3://crabby-images/92f9b/92f9b7e2fc9affcb76daf265ddd365bf580c6d27" alt=""
调试测试
断点/取消断点F2
运行程序F9
单步跨过函数F8
单步进入函数F7
运行到选中位置F4
data:image/s3,"s3://crabby-images/daa16/daa16e05957af1fca4691d6aefc40c79441f8776" alt=""
data:image/s3,"s3://crabby-images/c93ca/c93ca69123a2953050ee9ad41ab00b8813ff5090" alt=""
界面介绍
在调试模式下主要使用到的窗口:
data:image/s3,"s3://crabby-images/f98f7/f98f71c215ab9c5d7a3ba5b69921ec8008077aa7" alt=""