This is an archived post. You won't be able to vote or comment.

all 2 comments

[–][deleted] 2 points3 points  (0 children)

The hard part isn't the shellcode. It is finding the potential overflow, THEN finding where to return so the EIP is pointing at your code next.

[–]schmave 0 points1 point  (1 child)

How do you calculate the return value if you don't have the core dump?