From DOS to Remote Code Execution ScriptFTP Unicode Stack Overflow (0day)

The paper was published during the Indonesia Security Conference (IDSecConf) 2011 at Palembang, Indonesia. The paper talk about a remote stack overflow in Ammsoft ScriptFTP client.

The exploit development was a great challenge for us, and we thought it would be good if we share the process, from crash only to remote command execution.

Exploit Development with Python

A small example of how python can be used during exploit development. This was an event prepared by Indonesia Python Community.