A deep dive into an NSO zero-click iMessage exploit: Remote Code Execution
googleprojectzero.blogspot.com
A deep dive into an NSO zero-click iMessage exploit: Remote Code Execution
1–10 of 360 posts
Re: A deep dive into an NSO zero-click iMessage exploit: Remote Code Execution
#2Still hate NSO though.
Re: A deep dive into an NSO zero-click iMessage exploit: Remote Code Execution
#3Re: A deep dive into an NSO zero-click iMessage exploit: Remote Code Execution
#4Ok, they apparently made a VM using just the JBIG2 logical operators, that’s both hilarious and amazing. Still hate NSO though.
Re: A deep dive into an NSO zero-click iMessage exploit: Remote Code Execution
#5Re: A deep dive into an NSO zero-click iMessage exploit: Remote Code Execution
#6Am I reading this right? Google engineers are fixing apple software?
Although there’s clearly bugs in the open source JBIG2 impl so someone probably made fixes there as well?
Re: A deep dive into an NSO zero-click iMessage exploit: Remote Code Execution
#7Ok, they apparently made a VM using just the JBIG2 logical operators, that’s both hilarious and amazing. Still hate NSO though.
Not just a VM - effectively a computer. Holy crap that's amazing (ly evil).
Re: A deep dive into an NSO zero-click iMessage exploit: Remote Code Execution
#8Am I reading this right? Google engineers are fixing apple software?
https://en.wikipedia.org/wiki/Project_Zero?wprov=sfti1
Don’t think of these folks as “google” employees. Think of them as “really good hackers with corporate sponsorship”. They look for flaws in everything - windows, apple, Linux, and google software. You should read some earlier blog posts, they’re really high quality.
Re: A deep dive into an NSO zero-click iMessage exploit: Remote Code Execution
#9Am I reading this right? Google engineers are fixing apple software?
google is incentivized by ad space, not hardware sales. a large portion of the users of google apps and search engine are using apple hardware.
Re: A deep dive into an NSO zero-click iMessage exploit: Remote Code Execution
#10Am I reading this right? Google engineers are fixing apple software?
Project Zero is a team of security analysts employed by Google tasked with finding zero-day vulnerabilities. https://en.wikipedia.org/wiki/Project_Zero?wprov=sfti1 Don’t think of these folks as “google” employees. Think of them as “really good hackers with corporate sponsorship”. They look for flaws in everything - windows, apple, Linux, and google software. You should read some earlier blog posts, they’re really hig…