Главная
Study mode:
on
1
Intro
2
Who am I
3
Agenda
4
Finder
5
File
6
XML
7
Disk Utility
8
File System
9
xctr
10
AmpleFile
11
File Parsing
12
Code Audit
13
The Problem
14
Memory Disclosure
15
Location Kernel
16
Kernel Privilege Exclusion
17
What can ob slam do
18
Ob slam side effects
19
Perfect UAF
20
Slapback Operation
21
Exploit Strategy
22
Key erqc
23
Impact on iOS
24
The vulnerability
25
Exploit process
26
Flash drive attack
27
File C vulnerability
28
Outro
Description:
Explore a Black Hat conference talk that delves into exploiting macOS kernel vulnerabilities through extended file attributes in the FAT filesystem. Discover how compatibility features in macOS can lead to security flaws, allowing attackers to breach system boundaries. Learn about the surprising support for advanced features like symbolic links in the msdos FAT filesystem and how Apple's implementation of these features creates potential attack vectors. Gain insights into memory disclosure, kernel privilege escalation, and the impact on iOS. Examine the exploit process, including flash drive attacks and file system vulnerabilities. Understand the implications of these findings for macOS security and the challenges of maintaining compatibility while ensuring system integrity.

The Price of Compatibility - Defeating macOS Kernel Using Extended File Attributes

Black Hat
Add to list