
Completed
Posted
Paid on delivery
Project Details: Two separate challenge binaries (Linux ELF, x86_64) Source code will be provided libc.so.6 will be provided Remote services are available for both challenges Goal: exploit vulnerabilities to gain control of execution and call the internal function to retrieve flags Requirements: Analyze each binary and identify the vulnerability (e.g., buffer overflow, format string, etc.) Develop a working exploit for each challenge Ensure the exploit works both locally and against the remote service Use Python (pwntools) for exploit scripts Deliverables: [login to view URL] → working exploit for challenge 1 [login to view URL] → working exploit for challenge 2 [login to view URL] → explanation of vulnerabilities and exploitation steps [login to view URL] → both flags obtained from the challenges Required Skills: Strong experience in binary exploitation (pwn) Familiarity with GDB / pwndbg / gef Experience with pwntools (Python) Understanding of protections such as NX, PIE, RELRO Prior CTF or reverse engineering experience preferred Please include in your proposal: Examples of similar CTF or pwn challenges you have solved Your approach to solving this type of problem Estimated time to complete I will share details with you after contact confirmation. *Per task will be 8-10 Euro
Project ID: 40386064
19 proposals
Remote project
Active 25 days ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs

Hello there, I have solid experience in binary exploitation (pwn) and have solved multiple CTF challenges involving buffer overflows, format string bugs, and bypassing protections like NX, PIE, and RELRO. I can analyze both ELF binaries, identify vulnerabilities, and develop reliable pwntools-based exploits that work locally and against remote services. My workflow includes static + dynamic analysis using GDB/pwndbg and crafting clean, reproducible scripts. I’ll also provide a clear write-up explaining each step of exploitation. Estimated completion time is 1 days for both tasks. Happy to share past CTF examples upon request.
€9 EUR in 2 days
4.2
4.2
19 freelancers are bidding on average €17 EUR for this job

I can help you. I will pinpoint the vulnerability in the source—whether it’s a stack-based overflow, format string, or heap-based primitive—and script a reliable pwntools exploit. I will specifically check for x64 stack alignment requirements (MOVAPS) to ensure the exploit doesn't fail on the remote service after working locally. I noticed the CUDA tag; if the binaries utilize GPU-accelerated libraries, I’ll verify that the ROP chain or shellcode accounts for that specific execution environment. I’ll handle PIE/ASLR bypasses using the provided libc to ensure consistent exploitation across both targets.
€9 EUR in 7 days
5.6
5.6

As a seasoned full-stack developer with over 12 years of experience, my skills extend far beyond just designing and implementing software solutions. My proficiency in C Programming and Python, combined with a deep-rooted understanding of web and backend systems like Linux ELF, x86_64 and Python (pwntools) for exploit scripts makes me the perfect fit for this project. In terms of binary exploitation, I have extensive prior experience solving CTF and pwn challenges similar to the ones mentioned. I'm also well-versed in using GDB / pwndbg / gef and am quite familiar with protecting against NX, PIE, RELRO. The fact that I can grasp requirement nuances quickly means that our collaboration will yield efficient results with minimal back-and-forth. Given the complexity and need for strategic thinking required in projects like these, my 12 years of experience will undoubtedly prove beneficial. My unique positioning as someone who can handle end-to-end software solutions – from analyzing vulnerabilities to developing exploits – is invaluable here. I am confident in my ability to complete each task bringing along detailed explanations of vulnerabilities, exploitation steps, and freshly obtained flags.
€9 EUR in 2 days
4.0
4.0

As a seasoned and talented web developer with over six years of experience, I have acquired profound skills in Linux and Python programming that make me the optimal candidate for this project. Not only am I well-versed in frontend (React.js, Vue.js) and backend (Django, Node.js) development, but I also possess a deep understanding of the exploitation techniques you seek expertise in - binary exploitation (pwn) being one of them. Most notably, I have an impeccable track record in delivering results-focused projects: 850+ projects completion, 20000+ hours worked, with a high client rehire rate on Freelancer.com. This serves to demonstrate my ability to understand project goals while ensuring high-quality results are delivered within agreed-upon deadlines. Moreover, my extensive knowledge and usage of pwn tools and protections such as NX, PIE, RELRO will allow me to analyze your project binaries effectively and develop strong exploits for each challenge while ensuring their usability both locally and against the remote service. Choosing me means prioritizing your project's success through an experienced hand. Let’s discuss how we can maximize this opportunity!
€66 EUR in 1 day
2.6
2.6

As a Full-stack engineer, I have 6+ years of professional experience building and securing various aspects of web applications which required binary exploitation capabilities. Although I have not specifically done CTF or Pwn challenges in the past, my broad skill set allows me to understand and adapt to new concepts quickly. My experience in understanding system-to-system workflows, reducing manual work and operational errors strongly aligns with the goals of your project. Moreover, I am highly skilled in Python and have extensive experience in utilizing libraries like pwntools, which would be crucial for developing working exploits efficiently. Finally, while the task budget is modest, it's important to understand that binary exploitation can be a complex and time-consuming process and as such requires both expertise and patience. I assure you of both. Together, we can get your job done effectively and efficiently
€9 EUR in 7 days
2.7
2.7

Hi, I am Cindy Viorina and I specialize in binary exploitation and pwn-style CTF work. I have read your request for two x86_64 ELF challenges with source and libc provided and remote services available. I will analyze each binary with GDB/pwndbg, identify vulnerabilities, build pwntools exploits, and validate them locally and against the remote service until they reliably call the internal flag function. Technically, I will use static source review, dynamic debugging to confirm offsets and gadgets, leak strategies as needed (format/heap/ret2libc/ROP), and scripted pwntools exploits with clear automation for local and remote targets. I can communicate in real time in your timezone and deliver a simple demo within 12 hours of start. Estimated time: 1.5 to 3 days per challenge depending on mitigations. Examples: multiple CTF pwn solves involving heap/ROP and format string chains; available on request after contact. Q1: target service IP/port and any rate limits? Q2: are both challenges identical protection levels (NX, PIE, RELRO)? Q3: any constraints on exploit size or payload delivery? Which challenge should I prioritize first and do you allow iterative uploads of partial exploits during testing? Best regards, Cindy Viorina
€8 EUR in 19 days
2.2
2.2

Hi, I’m a Software Engineer with strong experience in binary exploitation and CTF challenges. You need help analyzing two ELF binaries and building working exploits for both local and remote targets—I can handle that cleanly using pwntools and proper libc-based ROP. You will get reliable scripts, clear documentation, and both flags extracted. I’ve solved similar pwn challenges involving buffer overflows and remote exploitation before. Do you already know what protections (PIE/NX/RELRO) are enabled on both binaries?
€9 EUR in 7 days
0.0
0.0

I can help you develop reliable local and remote exploits for your CTF-style Linux ELF (x86_64) binaries. With source code available, I’ll focus on quickly understanding the vulnerability surface and crafting stable, repeatable exploits tailored to your specific challenge goals. I have hands-on experience with pwnable challenges, ROP chains, shellcode, ASLR/PIE/RELRO/stack canary bypasses, and typical CTF exploitation workflows. I’ve built and debugged exploits under realistic remote conditions, ensuring they work against both local test setups and remote servers. My approach will be to analyze the source and binaries, design the exploit strategy, validate it locally with gdb/pwndbg, then adapt and harden it for remote execution. I’ll also provide clear notes so you can understand and reuse the approach. I would love to chat more about your project! Regards
€9 EUR in 7 days
0.0
0.0

Hi there. This will come down to the exact binary protections, the call path to the hidden flag function, and keeping each exploit reliable both locally and against the remote service. The usual failure points are libc mismatch, PIE or ASLR offsets, stack alignment, and local exploits that break on the remote endpoint. First I would check the mitigations and input surface of both ELF files, then reproduce each crash locally and map the path to controlled execution with the provided libc. Are both remote services using the same libc you will provide? Do you want the exploit scripts fully automated for local and remote modes?
€9 EUR in 7 days
0.0
0.0

Wien, Austria
Payment method verified
Member since Apr 10, 2026
₹12500-37500 INR
₹75000-150000 INR
$250-750 USD
₹400-750 INR / hour
$30-250 USD
$30-250 USD
$250-750 USD
$30-250 USD
₹600-1500 INR
₹1500-12500 INR
₹600-1500 INR
$30-250 USD
₹1500-12500 INR
$30-250 USD
$30-250 USD
$10-30 USD
₹4000-6000 INR
$250-750 USD
$1000-2000 USD
$2-8 USD / hour