
Proof-of-concept Remote-Code-Execution-Exploit, der Safari 11.0.3 auf macOS 10.13.3 über eine WebAssembly-Section-Sicherheitslücke (CVE-2018-4121) angreift. Enthält Heap-Spray und dylib-Payload-Integration.
von MWR Labs (c) 2018
python file_to_jsarray.py your.dylib payload.js