How a single line of code could brick your iPhone
1–10 of 126 posts
Re: How a single line of code could brick your iPhone
#2Re: How a single line of code could brick your iPhone
#3Re: How a single line of code could brick your iPhone
#4This should probably be reworked regardless if the patch described in the article was implemented.
Re: How a single line of code could brick your iPhone
#5It seems like such an obvious security concern. Maybe it was pre-AppStore? And more assumed trust in other apps?
Re: How a single line of code could brick your iPhone
#6Great work! This is my favourite type of vulnerability, simple, effective and brutal. Reminds me of a time two decades ago when with a friend from uni we theorised about a perfect server vulnerability where you’d exploit a machine by pinging it. And of course, two years ago it was in fact discovered as CVE-2022-23093.
https://web.archive.org/web/19981206105844/http://www.sophis...
Re: How a single line of code could brick your iPhone
#7Neat, $17,500 is pretty good, I’m so used to these blog posts being for peanuts, or where companies fix the vulnerability but don’t pay out at all. Apple’s gotten better about this since 2019.
Re: How a single line of code could brick your iPhone
#8Re: How a single line of code could brick your iPhone
#9Ultimately, does this require installing a sketchy app in the first place?
Re: How a single line of code could brick your iPhone
#10Neat, $17,500 is pretty good, I’m so used to these blog posts being for peanuts, or where companies fix the vulnerability but don’t pay out at all. Apple’s gotten better about this since 2019.
I read a comment under the story about the recent YouTube vulnerability where one could unmask the related Google account and its owner using the standard YouTube API (something similar to that anyway), and they explained a lot of lesser-known nuances in establishing values for bounties like these, and it helped explain a lot (not all) of the reasons for what might seem like low-ball/high-ball valuations on the surfa…