Загрузка видео...

Не удалось загрузить видео

На главную

There is a vulnerability in LSApplicationWorkspace… seems like there is possibility for a DenialOfService attack… why… it’s open selector that is handled by an other process fails to check if its caller is still alive. It’s immune to App switcher kills, uninstall, etc…

21,159 просмотров • 1 год назад •via X (Twitter)

Комментарии: 8

Фото профиля SeanIsTethered
SeanIsTethered1 год назад

Aka.. there is no time to even invoke the menu where the uninstall button is located, if there is an auto launch vulnerability in combination… this can brick ur phone

Фото профиля SamoXcZ ☁︎
SamoXcZ ☁︎1 год назад

U should’ve reported it to apple bug bounty lol

Фото профиля SeanIsTethered
SeanIsTethered1 год назад

I did. It would be my CVE anyways dw… I don’t want bounty!

Фото профиля Văn Lợi Nguyễn
Văn Lợi Nguyễn1 год назад

Cool

Фото профиля Appl Bll
Appl Bll1 год назад

you have that many apps through dev cert?

Фото профиля SeanIsTethered
SeanIsTethered1 год назад

Dev cert is unlimited apps

Фото профиля Tikimanup
Tikimanup1 год назад

How the f this happened This is scary

Фото профиля SeanIsTethered
SeanIsTethered1 год назад

Yep, especially because this selector is used by many sideloading apps and 3rd party AppStore. This vulnerability exists likely since Launch Services exists and was uncaught… I assume it works from iOS 2.0 to iOS 18.4.1

Похожие видео