
See No Eval: Runtime Dynamic Code Execution in Objective-C
There is a turing-complete querying language embeded in Objective-C hidden in plain sight.

There is a turing-complete querying language embeded in Objective-C hidden in plain sight.

There is a turing-complete querying language embeded in Objective-C hidden in plain sight.

A funny bug chain turing inter-process XSS to native code execution for sandbox escape.

A funny bug chain turing inter-process XSS to native code execution for sandbox escape.

Copycat.

Copycat.

Triggering inter-process XSS for fun and profit.

Triggering inter-process XSS for fun and profit.

Useless bugs are just being given up too early.

Useless bugs are just being given up too early.

Similar to DLL sideloading, legit plugins on macOS could be abused to load executable code on startup.

Similar to DLL sideloading, legit plugins on macOS could be abused to load executable code on startup.