I have questions: "Avraham based most of his conclusions on data from 'crash reports,' which are generated when programs fail in mid-task on a device. He was then able to recreate a technique that caused the controlled crashes." https://twitter.com/Bing_Chris/status/1252989125520654339 …
-
-
If you can look at iOS Mail, that might make a great write up:)
-
I would also absolutely believe that there indeed are reliably remotely exploitable vulnerabilities in Mail, I'm just not yet convinced that these particular crashers are them.
- 4 more replies
New conversation -
-
-
Yup I'd love to see that write up too. You need a really good bug for this kind of 1 shot exploit
-
Given all the crash files it wasn’t a true 1 shot. They kept sending until they got a shell. So they kinda brute forced it. Still, very interested in how it ever worked w/o heap grooming...
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.