OneGadget Logo

OneGadget

OneGadget is a CTF-focused tool that uses symbolic execution to find RCE gadgets in binaries that can execute shell commands through execve('/bin/sh', NULL, NULL).

2,220
Visit website
Claim and verify your listing
0

OneGadget Description

OneGadget is a specialized tool designed for CTF pwn challenges that identifies RCE (remote code execution) gadgets capable of executing execve('/bin/sh', NULL, NULL). The tool employs symbolic execution techniques to analyze binary files and determine the constraints required for gadgets to function successfully. It supports multiple architectures including i386, amd64, and aarch64. OneGadget provides a command-line interface with various options for customization. Users can specify build IDs, force file searches, control output verbosity levels, and order gadgets based on their proximity to specific functions or files. The tool is distributed through RubyGems.org for easy installation and integration into security testing workflows. It focuses specifically on finding gadgets that can spawn shell access, making it particularly useful for exploit development and binary exploitation scenarios.

OneGadget FAQ

Common questions about OneGadget including features, pricing, alternatives, and user reviews.

OneGadget is OneGadget is a CTF-focused tool that uses symbolic execution to find RCE gadgets in binaries that can execute shell commands through execve('/bin/sh', NULL, NULL).. It is a Security Operations solution designed to help security teams with Exploit, Reverse Engineering, Ruby.

Have more questions? Browse our categories or search for specific tools.

FEATURED

Heeler Application Security Auto-Remediation Logo

Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.

Hudson Rock Cybercrime Intelligence Tools Logo

Cybercrime intelligence tools for searching compromised credentials from infostealers

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

Mandos Fractional CISO Logo

Fractional CISO services for B2B companies to build security programs

POPULAR

RoboShadow Logo

Automated vulnerability assessment and remediation platform

13
OSINTLeak Real-time OSINT Leak Intelligence Logo

Real-time OSINT monitoring for leaked credentials, data, and infrastructure

8
Cybersec Feeds Logo

A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.

6
Mandos Brief Logo

Weekly cybersecurity newsletter covering security incidents, AI, and leadership

6
TestSavant AI Security Assurance Platform Logo

AI security assurance platform for red-teaming, guardrails & compliance

5
View Popular Tools →

Stay Updated with Mandos Brief

Get strategic cybersecurity insights in your inbox