Attacking iPhone XS Max

Attacking iPhone XS Max

Black Hat via YouTube Direct link

Unix Domain Socket

3 of 16

3 of 16

Unix Domain Socket

Class Central Classrooms beta

YouTube videos curated by Class Central.

Classroom Contents

Attacking iPhone XS Max

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Intro
  2. 2 Outline
  3. 3 Unix Domain Socket
  4. 4 Race Condition
  5. 5 The fix
  6. 6 The pattern
  7. 7 UAF, let's look at the USE
  8. 8 Binary version may be better
  9. 9 PAC (Pointer Authentication Code)
  10. 10 UAF, let's look at the second USE
  11. 11 Got troubles while adding trust caches
  12. 12 tfpo's write capability for kernel image
  13. 13 Look for unprotected control flow transfer points
  14. 14 What can we do
  15. 15 Got ssh on iPhone XS Max
  16. 16 Black Hat Sound Bytes

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.