Hobune Channels Takedowns

Pangu 9.0-9.1 iOS Kernel UAF Exploit Explained + Tutorial (Use-After-Free Heap Exploitation) YT

Description

Today I thought I'd sharing an in-depth explanation of how the Use-After-Free vulnerability found within the IOHIDFamily kernel extension on iOS was exploited by the Pangu team in order to achieve a jailbreak on iOS 9.0-9.1 so that beginner iOS security researchers (like myself) can learn more about the inner workings of jailbreaks.

I have replicated the vulnerable code, the exact code exploited by Pangu, and placed it in a test environment so that you guys can play with it and learn more about real-world exploits.

Download the HeapLevel2 application from here - https://github.com/Billy-Ellis/Exploit-Challenges

ZygoSec website - http://bit.ly/zygosec

Thanks for watching!

∎∎∎My Social Media∎∎∎

Twitter - https://bit.ly/2rA593q

Website - https://bit.ly/2sDHJiB