pwn-sandbox is a sandbox tool for pwner to protect your own gamebox on AWD CTF Challenges.
- Protect sensitive syscall like fork, execve, clone etc.
- Record traffic from other teams.
Add -orig
postfix to original binary name and change pwn-sandbox
to original binary name.
Traffic and syscall will log into /tmp/.binaryname/
directory. timestamp-std
is stdin/stdout log, timestamp-n
is other fds' log, timestamp-syscall
is syscall log.
Run python analyser --help
and read the source code to see details.
See ptrace(3)
for more details.
autoreconf --install
./configure
make
make install # Optional, this binary will not install to system dir.
It is better to build with static link to prevent libc differences between gamebox and your own rootfs. Use ./configure LDFLAGS=-static
to enable it.
GPLv2 License Star, fork, feedback(via issue) is welcomed.