Hi folks, I've just published a (brief) paper discussing unicode overflows on our web site: http://www.ngssoftware.com/research.html It details a technique for writing an exploit with alternate zero bytes. Comments/further discussion welcome. Cheers, -chris.