Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Messenger Hacking- Remotely Compromising an iPhone through iMessage - Deutsche Übersetzung

media.ccc.de via YouTube

Overview

Limited-Time Offer: Up to 75% Off Coursera Plus!
7000+ certificate courses from Google, Microsoft, IBM, and many more.
This course delves into the intricacies of remotely compromising an iPhone through iMessage, specifically focusing on achieving unsandboxed remote code execution on vulnerable devices without user interaction. The learning outcomes include understanding the iMessage software architecture, exploiting vulnerabilities, bypassing exploit mitigations on iOS, and providing suggestions for mobile OS and messenger vendors to enhance security measures. The course teaches skills such as reverse engineering, exploiting memory corruption vulnerabilities, heap spraying on iOS, breaking ASLR, and bypassing Pointer Authentication. The teaching method involves a detailed walkthrough of the exploitation process, sharing advice on conducting research in this area, and offering recommendations for mitigating exploit techniques. The intended audience includes security researchers, individuals interested in iOS exploitation, and those seeking to enhance their knowledge of mobile device security.

Syllabus

Intro
iMessage Architecture
iMessage Exploit
Reverse Engineering
iMessage Data Format
Enumerating Attack
NSKeyedUnarchiver
SharedKeyDictionary
CVE-2019-8641
Checkpoint
Exploitation Primitive
Exploitation Idea
Heap Spraying on iOS
Dyld Shared Cache (contd.)
Breaking ASLR
iMessage Receipts
Building an Oracle
A Remote ASLR Bypass - FAQ
Pointer Authentication (PAC)
Impact of PAC
PAC Bypass Idea
Sandboxing?
Getting Kernel
Weak ASLR (1)
Weak ASLR (3)
Block Unknown Senders
Auto Restarting Services
Conclusion

Taught by

media.ccc.de

Reviews

Start your review of Messenger Hacking- Remotely Compromising an iPhone through iMessage - Deutsche Übersetzung

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.