New Attack Surface in Safari - Using Just One Web Audio Vulnerability to Rule Safari
Offered By: Black Hat via YouTube
Course Description
Overview
Explore a groundbreaking security presentation that delves into a novel attack surface in Safari, focusing on vulnerabilities in system libraries like audio, video, and font. Learn how researchers have discovered a way to exploit a single Web Audio vulnerability to gain control over Safari, bypassing traditional security measures. Understand the challenges posed by Safari's built-in heap isolation mechanism and how it affects the exploitation of out-of-bounds writing vulnerabilities in system modules. Gain insights into the innovative techniques used to overcome these obstacles and the potential implications for web browser security. Presented by JunDong Xie at Black Hat Asia, this 27-minute talk offers a deep dive into cutting-edge browser exploitation research that could reshape our understanding of Safari's attack surface.
Syllabus
New Attack Surface in Safari: Using Just One Web Audio Vulnerability to Rule Safari
Taught by
Black Hat
Related Courses
Attack on Titan M, Reloaded - Vulnerability Research on a Modern Security ChipBlack Hat via YouTube Attacks From a New Front Door in 4G & 5G Mobile Networks
Black Hat via YouTube AAD Joined Machines - The New Lateral Movement
Black Hat via YouTube Better Privacy Through Offense - How to Build a Privacy Red Team
Black Hat via YouTube Whip the Whisperer - Simulating Side Channel Leakage
Black Hat via YouTube