"The whole exploitation/jailbreak process should be achievable remotely, reliably, silently, and without requiring any user interaction except visiting a web page or reading a SMS/MMS (attack vectors such as physical access, bluetooth, NFC, or baseband are not eligible for the Million Dollar iOS 9 Bug Bounty. ZERODIUM may, at its sole discretion, make a distinct offer to acquire such attack vectors.)." Can someone ex…
Million Dollar iOS9 Bug Bounty
31–40 of 80 posts
Re: Million Dollar iOS9 Bug Bounty
#32Is this a Zerodium ad masquing the politically incorrect PR of "zerodium has 0day exploits available for sale"? I mean how else would anyone advertise availability of 0day without compromising their credibility? $1M per exploit would sure get you lots of press.
- this is just a PR stunt, nobody will realistically deliver such a piece of code before oct. 31st.
- they know that someone in the jailbreak community is cooking something big like that and they're trying to tempt them and acquire a very interesting exploit before anybody else.
Re: Million Dollar iOS9 Bug Bounty
#33Re: Million Dollar iOS9 Bug Bounty
#34Sounds like ios8 will be the last jailbreakable version. Shame.
It's a bit like with oil drilling. Once the easily accessible options are gone, people reconsider options that used to be considered too expensive to exploit or too damaging for the environment. Like fracking, oil sands, oil wells that are very deep or far up in the arctic, ...
In the case of iOS explots, maybe you'll be able to jailbreak it over the lightning connector. Maybe you'll have to open the phone and hook up the circuit board to a device. Maybe someone in china will build a robot for phone shops that'll disassemble, jailbreak, and reassemble a phone in seconds (and replace a cracked screen while it is at it). Heck, maybe it'll become economic for criminals to bribe and/or blackmail Apple engineers to put a backdoor into iOS, or to leak keys?
Re: Million Dollar iOS9 Bug Bounty
#35"The whole exploitation/jailbreak process should be achievable remotely, reliably, silently, and without requiring any user interaction except visiting a web page or reading a SMS/MMS (attack vectors such as physical access, bluetooth, NFC, or baseband are not eligible for the Million Dollar iOS 9 Bug Bounty. ZERODIUM may, at its sole discretion, make a distinct offer to acquire such attack vectors.)." Can someone ex…
Re: Million Dollar iOS9 Bug Bounty
#36ZERODIUM customers are major corporations in defense, technology, and finance, in need of advanced zero-day protection, as well as government organizations in need of specific and tailored cybersecurity capabilities
The offer to buy RCE in PHPBB/vBulletin is a nice touch.
Re: Million Dollar iOS9 Bug Bounty
#37And all you have to do is sell your unicorn vulnerability to this company: ZERODIUM customers are major corporations in defense, technology, and finance, in need of advanced zero-day protection, as well as government organizations in need of specific and tailored cybersecurity capabilities The offer to buy RCE in PHPBB/vBulletin is a nice touch.
Re: Million Dollar iOS9 Bug Bounty
#38The exploit/jailbreak must support and work reliably on the following devices (32-bit and 64-bit when applicable): - iPhone 6s / iPhone 6s Plus / iPhone 6 / iPhone 6 Plus - iPhone 5 / iPhone 5c / iPhone 5s - iPad Air 2 / iPad Air / iPad (4rd generation) / iPad (3th generation) / iPad mini 4 / iPad mini 2 So did i read this correct and the exploit must be backwards compatible in order to get the full bounty?
Seems to just be a list of iOS 9 supported devices...
Re: Million Dollar iOS9 Bug Bounty
#39Earlier quoted context omitted.
You used to be able to jailbreak one of the first iPhones and install Cydia just by visiting some page in Safari and clicking on a button, IIRC. I never did this myself, so my memories might be inaccurate though.
You're correct. jailbreak.me I think it was called
Re: Million Dollar iOS9 Bug Bounty
#40And all you have to do is sell your unicorn vulnerability to this company: ZERODIUM customers are major corporations in defense, technology, and finance, in need of advanced zero-day protection, as well as government organizations in need of specific and tailored cybersecurity capabilities The offer to buy RCE in PHPBB/vBulletin is a nice touch.
So, let me get this straight, this company is in the business of buying zero-day exploits and selling them to corporations and government organizations. How does this even exist? Is it legal? Can anyone buy and sell zero day exploits with total impunity?