During a Windows x86 buffer overflow, after overwriting EIP, what is the typical next step to redirect execution to your shellcode?
-
A
Set a breakpoint at the return address
-
B
Find a JMP ESP gadget in a non-ASLR module
-
C
Overwrite the SEH chain with NOP slides
-
D
Patch the binary to disable stack canaries