Features:
handling non-return gadgets (jmp reg, call reg)
set registers (rdi=0xxxxxx, rsi=0xxxxxx)
set register to register (rdi=rax)
write to mem
write string/bytes to mem
function call (open('/etc/passwd',0))
pass register in function call (read('rax', bss, 0x100))
avoiding badchars is experimental (need more tests, seetests/)
[培训]内核驱动高级班,冲击BAT一流互联网大厂工作,每周日13:00-18:00直播授课