2019-06-30
[public] 21.9K views, 747 likes, 9.00 dislikes audio only
Part 6: There are still many things I haven't explained yet. So in this video we go over the boxed vs. unboxed values, how to convert Integer addresses to Doubles and why our bug is a memory corruption.
blog: https://liveoverflow.com/revisiting-javascriptcore-internals-boxed-vs-unboxed-browser-0x06/
test.js: https://gist.github.com/LiveOverflow/71bcf3f364c9719998bf159923310019
The Exploit:https://github.com/LinusHenze/WebKit-RegEx-Exploit
Playlist: /youtube/video/5tEdSoZ3mmE
-=[ π΄οΈAdvertisement ]=-
This video is supported by SSD Secure Disclosure: https://ssd-disclosure.com/
Offensive Security Conference TyphoonCon: https://typhooncon.com/
Challenge: https://typhooncon.com/typhooncon-challenge-2019/
-=[ π΄ Stuff I use ]=-
β Microphone:* https://geni.us/ntg3b
β Graphics tablet:* https://geni.us/wacom-intuos
β Camera#1 for streaming:* https://geni.us/sony-camera
β Lens for streaming:* https://geni.us/sony-lense
β Connect Camera#1 to PC:* https://geni.us/cam-link
β Keyboard:* https://geni.us/mech-keyboard
β Old Microphone:* https://geni.us/mic-at2020usb
US Store Front:* https://www.amazon.com/shop/liveoverflow
-=[ β€οΈ Support ]=-
β per Video: https://www.patreon.com/join/liveoverflow
β per Month: https://www.youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join
-=[ π Social ]=-
β Twitter: https://twitter.com/LiveOverflow/
β Website: https://liveoverflow.com/
β Subreddit: https://www.reddit.com/r/LiveOverflow/
β Facebook: https://www.facebook.com/LiveOverflow/
-=[ π P.S. ]=-
All links with "*" are affiliate links.
LiveOverflow / Security Flag GmbH is part of the Amazon Affiliate Partner Programm.