Video yükleniyor...

Video Yüklenemedi

Ana Sayfaya Dön

There is a vulnerability in LSApplicationWorkspace… seems like there is possibility for a DenialOfService attack… why… it’s open selector that is handled by an other process fails to check if its caller is still alive. It’s immune to App switcher kills, uninstall, etc…

21,159 görüntüleme • 1 yıl önce •via X (Twitter)

8 Yorum

SeanIsTethered profil fotoğrafı
SeanIsTethered1 yıl önce

Aka.. there is no time to even invoke the menu where the uninstall button is located, if there is an auto launch vulnerability in combination… this can brick ur phone

SamoXcZ ☁︎ profil fotoğrafı
SamoXcZ ☁︎1 yıl önce

U should’ve reported it to apple bug bounty lol

SeanIsTethered profil fotoğrafı
SeanIsTethered1 yıl önce

I did. It would be my CVE anyways dw… I don’t want bounty!

Văn Lợi Nguyễn profil fotoğrafı
Văn Lợi Nguyễn1 yıl önce

Cool

Appl Bll profil fotoğrafı
Appl Bll1 yıl önce

you have that many apps through dev cert?

SeanIsTethered profil fotoğrafı
SeanIsTethered1 yıl önce

Dev cert is unlimited apps

Tikimanup profil fotoğrafı
Tikimanup1 yıl önce

How the f this happened This is scary

SeanIsTethered profil fotoğrafı
SeanIsTethered1 yıl önce

Yep, especially because this selector is used by many sideloading apps and 3rd party AppStore. This vulnerability exists likely since Launch Services exists and was uncaught… I assume it works from iOS 2.0 to iOS 18.4.1

Benzer Videolar