ropshell> use b3a5e819e3cf9834a6b33c606fc50289 (download) name : dbghelp.dll (x86_64/PE) base address : 0x103001000 total gadgets: 10616
ropshell> suggest "stack pivoting" > 0x10300e1d9 : xchg eax, esp; ret > 0x1030c5807 : mov rsp, r11; pop r14; ret > 0x1030c5808 : mov esp, ebx; pop r14; ret > 0x1030b5ab6 : lea esp, [rax + rdx - 0x72bf0000]; push rcx; call rbx > 0x103129790 : xchg esp, edx; or [rax], eax; add [rbp + 0x3bb474c0], al; ret > 0x10303cc77 : xchg esp, ecx; add [rax], al; add [rax - 0x68], cl; mov ecx, [r11 + rax*4 + 0x3cddc]; add rcx, r11; jmp rcx > 0x10301c794 : leave ; sete al; ret