OneGadget
OneGadget is a CTF-focused tool that uses symbolic execution to find RCE gadgets in binaries that can execute shell commands through execve('/bin/sh', NULL, NULL).

OneGadget
OneGadget is a CTF-focused tool that uses symbolic execution to find RCE gadgets in binaries that can execute shell commands through execve('/bin/sh', NULL, NULL).

Founder & Fractional CISO
Not sure if OneGadget is right for your team?
Book a 60-minute strategy call with Nikoloz. You will get a clear roadmap to evaluate products and make a decision.
→Align tool selection with your actual business goals
→Right-sized for your stage (not enterprise bloat)
→Not 47 options, exactly 3 that fit your needs
→Stop researching, start deciding
→Questions that reveal if the tool actually works
→Most companies never ask these
→The costs vendors hide in contracts
→How to uncover real Total Cost of Ownerhship before signing
OneGadget Description
OneGadget is a specialized tool designed for CTF pwn challenges that identifies RCE (remote code execution) gadgets capable of executing execve('/bin/sh', NULL, NULL). The tool employs symbolic execution techniques to analyze binary files and determine the constraints required for gadgets to function successfully. It supports multiple architectures including i386, amd64, and aarch64. OneGadget provides a command-line interface with various options for customization. Users can specify build IDs, force file searches, control output verbosity levels, and order gadgets based on their proximity to specific functions or files. The tool is distributed through RubyGems.org for easy installation and integration into security testing workflows. It focuses specifically on finding gadgets that can spawn shell access, making it particularly useful for exploit development and binary exploitation scenarios.
OneGadget FAQ
Common questions about OneGadget including features, pricing, alternatives, and user reviews.
OneGadget is OneGadget is a CTF-focused tool that uses symbolic execution to find RCE gadgets in binaries that can execute shell commands through execve('/bin/sh', NULL, NULL).. It is a Security Operations solution designed to help security teams with Exploit, Reverse Engineering, Ruby.
FEATURED
Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.
Cybercrime intelligence tools for searching compromised credentials from infostealers
Password manager with end-to-end encryption and identity protection features
Fractional CISO services for B2B companies to build security programs
Stay Updated with Mandos Brief
Get the latest cybersecurity updates in your inbox
TRENDING CATEGORIES
POPULAR
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
Real-time OSINT monitoring for leaked credentials, data, and infrastructure