Главная
Study mode:
on
1
Intro
2
Outline
3
The Goal
4
Registering a Socket Filter
5
Socket Filter Callbacks
6
Firewall Vulnerabilities
7
Bypassing Lulu
8
Generic Bypasses
9
Abusing DNS
10
Abusing Browsers
11
Kernel-based Bypasses
12
Finale
Description:
Explore the intricacies of macOS firewall development and vulnerabilities in this 25-minute Black Hat conference talk. Dive into core concepts like kernel-level socket filtering, user-mode component communication, secure privileged code installation, and self-defense mechanisms implementation. Learn about firewall vulnerabilities, including methods to bypass Lulu, generic bypasses, DNS and browser exploitation, and kernel-based bypasses. Gain insights from security expert Patrick Wardle as he covers topics such as registering socket filters, implementing callbacks, and protecting the UI from synthetic events. Enhance your understanding of macOS security through this comprehensive exploration of firewall creation and exploitation techniques.

Fire & Ice - Making and Breaking macOS Firewalls

Black Hat
Add to list