🔺New on the Apple Security Research blog: we pit our hardened kalloc_type XNU allocator against SockPuppet, a powerful vulnerability from the past: https://t.co/UyTkz1slu3
Towards the next generation of XNU memory safety: kalloc_type https://t.co/cJepkb3tzq
I’m so happy that the team finally gets to share the details of this huge effort. And I’m so proud I had the chance to work on it in the past couple of years. :)
That feeling when you keep reviewing the same code over and over again, and don’t spot any bug. But then you decide to do some very targeted fuzzing which leads to a crash in <10min. - and that’s an actual vuln.
✍️ 1/ Want to learn how to bug hunt in hard targets and find high impact issues? Here’s a short Sunday 🧵for those starting out and some general thoughts from over the years on software security: