Pangu 9.0-9.1 iOS Kernel UAF Exploit Explained + Tutorial (Use-After-Free Heap Exploitation) YT
Description
Today I thought I'd sharing an in-depth explanation of how the Use-After-Free vulnerability found within the IOHIDFamily kernel extension on iOS was exploited by the Pangu team in order to achieve a jailbreak on iOS 9.0-9.1 so that beginner iOS security researchers (like myself) can learn more about the inner workings of jailbreaks.
I have replicated the vulnerable code, the exact code exploited by Pangu, and placed it in a test environment so that you guys can play with it and learn more about real-world exploits.
Download the HeapLevel2 application from here - https://github.com/Billy-Ellis/Exploit-Challenges
ZygoSec website - http://bit.ly/zygosec
Thanks for watching!
∎∎∎My Social Media∎∎∎
Twitter - https://bit.ly/2rA593q
Website - https://bit.ly/2sDHJiB