Video wird geladen...

Video konnte nicht geladen werden

Zur Startseite

There is a vulnerability in LSApplicationWorkspace… seems like there is possibility for a DenialOfService attack… why… it’s open selector that is handled by an other process fails to check if its caller is still alive. It’s immune to App switcher kills, uninstall, etc…

21,159 Aufrufe • vor 1 Jahr •via X (Twitter)

8 Kommentare

Profilbild von SeanIsTethered
SeanIsTetheredvor 1 Jahr

Aka.. there is no time to even invoke the menu where the uninstall button is located, if there is an auto launch vulnerability in combination… this can brick ur phone

Profilbild von SamoXcZ ☁︎
SamoXcZ ☁︎vor 1 Jahr

U should’ve reported it to apple bug bounty lol

Profilbild von SeanIsTethered
SeanIsTetheredvor 1 Jahr

I did. It would be my CVE anyways dw… I don’t want bounty!

Profilbild von Văn Lợi Nguyễn
Văn Lợi Nguyễnvor 1 Jahr

Cool

Profilbild von Appl Bll
Appl Bllvor 1 Jahr

you have that many apps through dev cert?

Profilbild von SeanIsTethered
SeanIsTetheredvor 1 Jahr

Dev cert is unlimited apps

Profilbild von Tikimanup
Tikimanupvor 1 Jahr

How the f this happened This is scary

Profilbild von SeanIsTethered
SeanIsTetheredvor 1 Jahr

Yep, especially because this selector is used by many sideloading apps and 3rd party AppStore. This vulnerability exists likely since Launch Services exists and was uncaught… I assume it works from iOS 2.0 to iOS 18.4.1

Ähnliche Videos