AnsweredAssumed Answered

Parser to detect Buffer overflow attempts or NOP SLEDS?

Question asked by RSA Admin Employee on Oct 10, 2012
Latest reply on Oct 11, 2012 by RSA Admin

hello all,

 

 

i was wondering if anyone has previously worked on a parser to detect consecutive 0x40's, 0x41's, 0x42's  ,..   or 0x90's before?

 

I have not written a parser before and i plan on making this one my first however,  i wanted to touch base with the usergroup and see if anyone else has worked on something like this.

 

Thanks in advance.

Outcomes