开源软件名称(OpenSource Name):A2nkF/macOS-Kernel-Exploit开源软件地址(OpenSource Url):https://github.com/A2nkF/macOS-Kernel-Exploit开源编程语言(OpenSource Language):C 62.9%开源软件介绍(OpenSource Introduction):macOS-Kernel-ExploitDISCLAIMERYou need to know the KASLR slide to use the exploit. Also SMAP needs to be disabled which means that it's not exploitable on Macs after 2015. These limitations make the exploit pretty much unusable for in-the-wild exploitation but still helpful for security researchers in a controlled lab environment. This exploit is intended for security research purposes only. GeneralmacOS Kernel Exploit for CVE-2019-8781 Thanks to @LinusHenze for this cool bug and his support ;P. WriteupProbably coming soon. If you want to try and exploit it yourself, here are a few things to get you started:
BuildI recommend setting the bootargs to:
You will need XCODE <= 9.4.1 to build the exploit. (It needs to be 32bit) Downloading Xcode 9.4.1 Commandline Tools should be enough ;) Download: https://developer.apple.com/download/more/
Execution
Tested on macOS Mojave: Demo: |
2023-10-27
2022-08-15
2022-08-17
2022-09-23
2022-08-13
请发表评论