Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Pangu 9 Internals

Black Hat via YouTube

Overview

Limited-Time Offer: Up to 75% Off Coursera Plus!
7000+ certificate courses from Google, Microsoft, IBM, and many more.
This course delves into the internals of Pangu 9, the untethered jailbreak tool for iOS 9, revealing the vulnerabilities it exploited to achieve arbitrary code execution in the kernel and persistent code signing bypass. The learning outcomes include understanding the logical errors in system services exploitable through XPC communication, gaining insights into achieving arbitrary code execution outside the sandbox, and learning about vulnerabilities in loading dyld_shared_cache files and the backup-restore process. The course teaches skills such as exploiting system vulnerabilities, gaining code execution, and bypassing code signing. The teaching method involves presenting logical errors, vulnerabilities, and exploitation techniques. The intended audience includes security researchers, iOS developers, and individuals interested in iOS security and jailbreaking.

Syllabus

Introduction
Outline
About us
iOS
Jailbreak
Tradeoff
Dynamic Libraries
TeamID Validation
AnyAgent
iOS 83
Challenges
Userland
XP
API
Entitlement
Fortisbox
Pangu Agent
Jailbreak iOS 91
Jailbreak iOS 93
Kernel Patch
Sandbox Extension
Debugger
Attacks
Code Audit
Shared Cache
Kernel
Conclusion

Taught by

Black Hat

Reviews

Start your review of Pangu 9 Internals

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.