ropshell> use ac8b1ccfae381b4a59df0095be587cfc (download) name : parser (x86_64/RAW) base address : 0x0 total gadgets: 20449
ropshell> suggest "stack pivoting" > 0x0002d5c7 : xchg eax, esp; ret > 0x000a8c39 : mov rsp, rcx; pop rcx; jmp rcx > 0x0016db21 : mov esp, eax; mov rax, r12; pop r12; ret > 0x000a8c3a : mov esp, ecx; pop rcx; jmp rcx > 0x001a2b2d : xchg edi, esp; jmp [rsi] > 0x0015e43d : mov rsp, rbx; mov rbx, [rsp]; add rsp, 0x30; ret > 0x0013637b : mov rsp, r8; mov rbp, r9; nop ; jmp rdx > 0x001bcfb1 : movsxd rsp, esp; call [rax] > 0x0007594d : lea rsp, [rbp - 0x18]; pop rbx; pop r12; pop r13; pop rbp; ret > 0x0015e43e : mov esp, ebx; mov rbx, [rsp]; add rsp, 0x30; ret > 0x0004767f : mov esp, edx; call [rax + 0x30] > 0x001b6931 : mov esp, ebp; call [rax] > 0x00033baa : mov esp, esp; call [rax + 0x10] > 0x0007594e : lea esp, [rbp - 0x18]; pop rbx; pop r12; pop r13; pop rbp; ret > 0x00158611 : movsxd rsp, ebp; or [rax], al; add rsp, 8; pop rbx; pop rbp; ret > 0x000595e6 : mov esp, esi; mov esi, 0xa; call [rax + 0x50] > 0x0001687a : lea esp, [rsp + 0x10]; call [rax + 0x10] > 0x00020a02 : push rbp; sub [rax - 0x77], cl; xor [r13 + 0x41], r11b; pop rsp; pop r13; ret > 0x00054d1a : mov esp, edi; mov rdi, [rax - 0x18]; add rdi, r12; call rsi > 0x00136714 : lea esp, [rcx + rax]; mov r13, rax; mov rdi, r12; call rbx > 0x00185e37 : xchg esp, edi; adc ch, [rip + 0x8acc8c6]; and cs:[rax], edx; jmp [rdi] > 0x000a8a8f : leave ; ret