Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Endless Exploits: The Saga of a macOS Vulnerability Exploited Seven Times

Objective-See Foundation via YouTube

Overview

Coursera Spring Sale
40% Off Coursera Plus Annual!
Grab it
Explore a fascinating 25-minute security conference talk that uncovers a persistent logic vulnerability in macOS's PackageKit framework, leading to privilege escalation, TCC circumvention, and SIP bypass. Follow the intriguing cat-and-mouse game between Apple's security team and independent researcher Mickey Jin as he demonstrates how a single vulnerability resulted in seven distinct CVEs (CVE-2022-26688, CVE-2022-32900, CVE-2023-23497, CVE-2023-27962, CVE-2023-38564, CVE-2023-42853, and CVE-2024-23275). Learn about the impact on third-party applications, examine Apple's multiple patching attempts, and understand the technical details of how each patch was bypassed through sophisticated exploit techniques. Presented by an accomplished security researcher with over 180 Apple CVEs to his credit, gain deep insights into vulnerability research, exploit development, and the complexities of securing modern operating systems.

Syllabus

#OBTS v7.0: "Endless Exploits: The Saga of a macOS Vulnerability Exploited Seven Times" - Mickey Jin

Taught by

Objective-See Foundation

Reviews

Start your review of Endless Exploits: The Saga of a macOS Vulnerability Exploited Seven Times

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.