Reading List

Code Signing Translocation Vulnerability from Michael Tsai RSS feed.

Code Signing Translocation Vulnerability

OccamSec (in 2021): It is far easier, however, to break the codesigning system and sign your binary as an Apple binary. But let’s get this straight: even though the machine will be aware that the LC_CODE_SIGNATURE LoadCommand is tainted, it will still execute.[…]The result is that we can perform arbitrary memory read and write using […]