OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: AlphaNumeric Exploitation Help

From: Felix Lindner (felix.lindnernruns.com)
Date: Thu May 26 2005 - 13:07:46 CDT


On 26 May 2005 11:38:25 -0000
<ramatkalhotmail.com> wrote:
> I am trying to exploit a vulnerable server which only allows
> alphanumeric characters....
>
> I have successfully taken control of EIP and now need to do a JUMP -600
> bytes.....
>
> Anyone got any ideas/tricks/advice on how i can accomplish a JMP -600 bytes,
> or any type of jump for that matter, only using alphanumeric chars?

You will need at least on register (I assume IA-32 here) pointing to your
current point of execution. Could you provide more detail on the vuln and how
you want to exploit it?

Felix

--
 Felix Lindner, CISSP | Senior Security Consultant, n.runs GmbH
         fxnruns.com | +49 (0)171 740 20 62
real hackers don't die, their TTL expires