• XSS.stack #1 – первый литературный журнал от юзеров форума

Мануал/Книга [BlackHat USA 2024] Remote, One-Click, Breaking through Smartphones via a Non Well-Known Remote Attack Surface

weaver

31 c0 bb ea 1b e6 77 66 b8 88 13 50 ff d3
Забанен
Регистрация
19.12.2018
Сообщения
3 301
Решения
11
Реакции
4 622
Депозит
0.0001
Пожалуйста, обратите внимание, что пользователь заблокирован
Description
Instant messaging application (such as iMessage and WhatsApp) is an important remote attack surface for smartphones, often used by spyware as the first step in APT attacks, and has received great attention in the past.

Carrier Based video calling, as a native video calling feature of mobile phones, is also a major remote attack surface for smartphones.

We have discovered fatal 0-day vulnerabilities in some native Carrier Based video calling of mobile phones, which have been present for at least 7 years. As long as the target accepts our video call invitation, we can exploit these vulnerabilities to remotely obtain code execution permissions for the target phone's system.

In this session, we will introduce this remote attack surface we have discovered and provide a few examples to illustrate the potential issues and impacts that may arise within this attack surface.
blackhat.com/us-24/briefings/schedule/index.html#remote-one-click-breaking-through-smartphones-via-a-non-well-known-remote-attack-surface-39721

slides
https://i.blackhat.com/BH-US-24/Pre...te-One-Click-Breaking-through-Smartphones.pdf
 


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх