Watch a technical security conference talk exploring a 2023 in-the-wild iOS 16 exploit chain that successfully escaped Safari's hardened renderer sandbox. Learn how attackers leveraged Safari's custom IPC mechanism to break out of Apple's increasingly restrictive sandbox profiles, marking the first documented case of this technique being used in a full chain exploit. Presented by Google security researcher Ian Beer at Objective By The Sea v6.0, discover detailed technical analysis of how threat actors are adapting to Apple's enhanced security controls and developing more sophisticated bug chains to compromise iOS devices.
Overview
Syllabus
#OBTS v6.0: "Escaping the Safari Sandbox in iOS 16" - Ian Beer
Taught by
Objective-See Foundation