Tuesday 13 October 2020, 07:56 #3
ELF x64 - Sigreturn Oriented Programming
Getting 15 into rax is the gist of this challenge. There are multiple ways. You could try to use the return value of a syscall, look for a fitting rop gadget or a combination of both.
As it is a local exploitation it may also be helpful to modify the way the binary is started...