ropshell> use a97b7e66a096b29066685dade2d0f9c5 (download)
name         : fork-canary (i386/ELF)
base address : 0x80485e0
total gadgets: 23
ropshell> suggest
call
    > 0x08048643 : call eax
    > 0x0804867d : call edx
    > 0x08048848 : call [eax - 1]
    > 0x080486da : call [ebp - 0x77]
jmp
    > 0x08048819 : jmp [ebp - 0x5f]
load reg
    > 0x080488cb : pop ebp; ret
    > 0x080488ca : pop edi; pop ebp; ret
    > 0x080488c9 : pop esi; pop edi; pop ebp; ret
    > 0x08048610 : mov ebx, [esp]; ret
    > 0x080488c8 : pop ebx; pop esi; pop edi; pop ebp; ret
pop pop ret
    > 0x080488cb : pop ebp; ret
    > 0x080488ca : pop edi; pop ebp; ret
    > 0x080488c9 : pop esi; pop edi; pop ebp; ret
    > 0x080488c8 : pop ebx; pop esi; pop edi; pop ebp; ret
stack pivoting
    > 0x0804871d : leave ; ret