Oddbean new post about | logout
 Apple developers drunk-coding: loading a simple image can "lead to arbitrary code execution, allowing a hacker to gain access to the operating system with a simple picture."

It's 2023.

This is unacceptable for any operating system.
https://www.macrumors.com/2023/09/07/ios-16-6-1-macos-13-5-2-active-vulnerabilities/ 
 Oops

nostr:nevent1qqs9fqgwqadezu3zlannslmkg8zzmxlc9rsg49tgvs5fhmvheygwftspz3mhxue69uhhyetvv9ukzcnvv5hx7un89upzq485qwa0e7raeg2ly5urdgyqa2dhaj7zn3xvu0u9qj0ypj8kwuutqvzqqqqqqycvg66j 
 @eb9d2c79 Shoutout to that time Nintendo had a heap overflow exploit in the 3DS’s music player that allowed for arbitrary code execution when you played a dodgy .m4a file: https://github.com/nedwill/soundhax 
 And someone goes crazy for the web stack and related XSS attacks...

nostr:nevent1qqs9fqgwqadezu3zlannslmkg8zzmxlc9rsg49tgvs5fhmvheygwftsppemhxue69uhkummn9ekx7mp0qgs9faqrht70slw2zhe98qm2pq82ndlvhs5ufn8rlpgyneqv3anh8zcrqsqqqqqpl3lppy