Главная
Study mode:
on
1
Summer of Fuzz
2
Agenda
3
Intro
4
Debugging
5
SIP
6
App Sandbox
7
Crash Reporting
8
Sleep
9
SSH
10
Enumerating Network Services
11
Fuzzing
12
Targeting Applications
13
Font Book
14
smbutil
15
CUPS
16
Targeting Servers
17
ARDAgent
18
screensharingd
19
ODSAgent
20
BONUS
21
Conclusion
Description:
Explore the intricacies of fuzzing applications on macOS in this Hack In The Box Security Conference talk. Delve into overlooked attack surfaces, including file parsers and network services, while learning techniques for fuzzing userland binaries. Discover a new fuzzer that simplifies setup and crash triage when testing Apple core apps and clients. Gain insights into overcoming security protections, finding effective tools, and making macOS fuzzing more accessible. Learn how to approach bug hunting on macOS with increased motivation and better equipment, covering topics such as debugging, SIP, app sandboxing, crash reporting, and targeting specific applications and servers.

Summer of Fuzz - MacOS

Hack In The Box Security Conference
Add to list