0:00
what's going on YouTube Jason right here
0:02
so I took a short break and in the
0:04
meantime it looks like look at the Disco
0:05
has demonstrated a chill break for iOS
0:08
16 at one of their talks we're going to
0:10
get to that in a second the series
0:12
brought to you by any trans a software
0:13
that allows it to drag and drop files
0:15
like photos music PDFs and so on
0:17
directly from your computer to your
0:18
device you can also do selective backups
0:20
your files directly from the program
0:22
check it out in the link below so a
0:24
couple of days ago there was a talk by
0:27
look at the desk of data flow security
0:28
called life and death as an iOS attacker
0:31
now this talk is of course security
0:33
research oriented and it was mostly a
0:36
sad talk mostly talking about how
0:38
difficult stuff is nowadays for security
0:40
researchers on iOS talking about the
0:42
sandbox and how it got much tighter over
0:45
time with web content no longer having
0:47
any access to IO kit for example in
0:49
blaster or 4 reducing zero click risk
0:52
attacks and stuff like that which of
0:53
course all of these go to show that
0:55
apple is learning from their past
0:56
mistakes you can see a lot of talk about
0:58
you know attack Medicaid stations and
1:00
stuff like that on iOS and it looks like
1:02
apple is no longer targeting only the
1:05
jailbreaks but they are rather
1:07
interested in security overall so the
1:09
Talk itself was mostly oriented on a set
1:12
note that the iOS security research is
1:14
at its worst at the moment because you
1:16
do require a lot of knowledge and the
1:19
public techniques and the public
1:20
knowledge that is available online and
1:22
in the wild is usually many years behind
1:25
the current security techniques that
1:27
Apple has so it's not a good time to be
1:30
an iOS security researcher however when
1:32
we thought that the talk would end again
1:34
on a sad note look at that SQL
1:36
demonstrated on the last moment a
1:38
jailbreak for iOS 16.1 latest beta they
1:42
basically have it over here it's a
1:43
webkit based one by the looks of it they
1:45
go to local IP address over there on
1:47
their device in Safari and they press do
1:50
it over there which of course seems to
1:51
run a webkit exploit paired with a
1:54
kernel exploited by the looks of it
1:55
shows the Darwin kernel version string
1:57
to prove the iOS version and stuff like
1:59
that and then performs what appears to
2:01
be a kernel memory read this one being
2:03
the feed phase from the kernel so by the
2:06
looks of it while things are bad in the
2:08
Apple security Community while things
2:10
are getting harder it's not impossible
2:12
even as of iOS 16 to create a jailbreak
2:15
and 16.1 beta 2 at the moment is signed
2:19
so look at the Disco has essentially a
2:21
kernel exploit and possibly a webkit
2:22
exploit for the latest version available
2:25
which is actually quite nice it goes to
2:27
show that no it's not impossible to do
2:29
this nowadays it just requires a lot of
2:32
knowledge and a lot of resources now of
2:34
course I don't expect this to be
2:35
released anytime soon especially since
2:38
look at the Disco hasn't released
2:39
anything in the jailbreak Community for
2:41
quite some time now they said multiple
2:43
times years ago that they're not going
2:45
to get involved in that anymore because
2:47
of how toxic the community is and of
2:49
course they don't have anything to gain
2:51
from releasing free chill breaks
2:52
especially to The Ungrateful people in
2:55
the community who keep harassing
2:56
developers so that's a problem in its
2:58
own right in the community with people
3:00
not being patient enough and harassing
3:02
developers which of course drives them
3:04
to no longer complete the projects and
3:06
to drop jailbreaking completely but yes
3:07
it's possible to still do it nowadays
3:10
and this was demonstrated mind you on
3:12
iOS 16.1 beta 2 which of course is
3:15
currently the latest beta and that's
3:18
actually incredible so that's basically
3:19
thank you for watching ingf now till the
3:22
next time subscribe and stay updated
3:23
we'll keep you updated with anything
3:24
that's going on in the jailbreak
3:26
community and peace out