-
Great job for rops.
I've an use-case where I'd to use a dotenv file format, but it's not (yet) implemented in rops. Do you have any plan for it ?
-
get segfault for 64 bit, the 64+context.bytes are 72, and this seems to be the correct offset for the 64bit example.
on 32 bit
p.send(fit({76: rop.chain(), 200: dlresolve.payload}))
getting stil…
-
(まだ問題がGitHubにアップロードされてないので後で追記)
-
Hi!
We compared your tool with other existing ROP compilers. You can find results [here](https://github.com/ispras/rop-benchmark#evaluation).
-
```
Perhaps as an incentive to make alchemy better, the player should be allowed to
craft one RoP equivalent item.
```
Original issue reported on code.google.com by `jmidd...@gmail.com` on 7 Nov 201…
-
cant spawn a shell with arguments
```
rop = ROP(program, base=0x00007fffffffe400)
rop.call('execve', [b'/bin/sh', [[b'/bin/sh'], [b'-p'], [b'-c'], [b'ls']], 0])
chain_1 = b''
chain_1 += b'\x00'*…
-
```
Perhaps as an incentive to make alchemy better, the player should be allowed to
craft one RoP equivalent item.
```
Original issue reported on code.google.com by `jmidd...@gmail.com` on 7 Nov 201…
-
# Related
* [ ] Doc : TBD
* Tests : https://github.com/radare/radare2-regressions/blob/master/t/cmd_rop
* Command : `/R`
* [ ] BlogPost : http://radare.today/posts/ropnroll/
* .c involved:
…
-
Regarding the issue of #6037 are there any tests except the ones in `test_rop.py` that test the Rop implementations?
botev updated
7 years ago
-
wasn't able to spawn a shell with command as parameter:
```py
bin_sh = libc.address + 0x111111
rop = ROP(program, base=0x7fffffffe460)
rop.call('execve', [bin_sh, [[b'/bin/sh'], [b'-c'], [b'whoami…