Loading video...

Video Failed to Load

Go Home

There is a vulnerability in LSApplicationWorkspace… seems like there is possibility for a DenialOfService attack… why… it’s open selector that is handled by an other process fails to check if its caller is still alive. It’s immune to App switcher kills, uninstall, etc…

21,159 views • 1 year ago •via X (Twitter)

8 Comments

SeanIsTethered's profile picture
SeanIsTethered1 year ago

Aka.. there is no time to even invoke the menu where the uninstall button is located, if there is an auto launch vulnerability in combination… this can brick ur phone

SamoXcZ ☁︎'s profile picture
SamoXcZ ☁︎1 year ago

U should’ve reported it to apple bug bounty lol

SeanIsTethered's profile picture
SeanIsTethered1 year ago

I did. It would be my CVE anyways dw… I don’t want bounty!

Văn Lợi Nguyễn's profile picture
Văn Lợi Nguyễn1 year ago

Cool

Appl Bll's profile picture
Appl Bll1 year ago

you have that many apps through dev cert?

SeanIsTethered's profile picture
SeanIsTethered1 year ago

Dev cert is unlimited apps

Tikimanup's profile picture
Tikimanup1 year ago

How the f this happened This is scary

SeanIsTethered's profile picture
SeanIsTethered1 year ago

Yep, especially because this selector is used by many sideloading apps and 3rd party AppStore. This vulnerability exists likely since Launch Services exists and was uncaught… I assume it works from iOS 2.0 to iOS 18.4.1

Related Videos