because the binary was statistically linked, all of the function will be harder to reversing

  • the author messed up the binary so that we can’t reverse ourself


because our binary was x64 bit so our rop gadgets gonna different from the x32. regs state to gain shell

  • rdi == point to /bin/sh
  • rsi == NULL
  • rdx == NULL

a loner