(CVE-2024-27876) libAppleArchive: Arbitrary File Write
libAppleArchive arbitrary file write vulnerability
My Blog!
libAppleArchive arbitrary file write vulnerability
Two useless bugs and discussion of what makes a 0day.
Archive Utility Race Condition that existed until macOS 15.
1day that was patched iOS 12 in a method TaiG's 8.1.2 jailbreak used.
Open-Source Cross-Platform Signed Shortcut CLI.
A look at CVE-2024-27821. Patched in macOS 14.5.
A look back at the most dangerous vulnerabilty for Shortcuts, and how I fucked up and never got credit.
A look back at the first CVE I ever got credited for. Partially patched iOS 14.6, fully patched 15.0.
Still proud of this one. IMO, the de facto writeup available for contact signed shortcuts. If you know if any others, tell me! This was originally on GitHub but I transfered it over to here.
iOS 15 Shortcuts 0day I publicly disclosed since I didn't know how bug bounty worked at the time.