12.07.2015 Views

Apple iOS 4 Security Evaluation

Apple iOS 4 Security Evaluation

Apple iOS 4 Security Evaluation

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Bottom LineAll built-in apps in <strong>iOS</strong> 4.3 have full ASLR with PIE supportThird-party apps are rarely compiled with PIE support and runwith partial ASLRStatic location of dyld facilitates exploitation by providingknown executable material at a known place (code reuse,return-oriented programming, etc)Applications using a UIWebView are the highest risk(embedded browser in Twitter, Facebook, etc)

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!