4 ms·
No, Safari is just an easy way to exploit this bug. In principle, it works with any app that can be convinced to run arbitrary code by changing its resources.
by L3viathan 6y ago
No, Safari is just an easy way to exploit this bug.
In principle, it works with any app that can be convinced to run arbitrary code by changing its resources. What Safari is doing isn't wrong and wouldn't cause an issue if TCC would check the entire app, including resources.
It's true that you can't use this to copy the privileges of _any_ app, only of those that have this property.
- bluesign 6y agoIt works with any app that can be convinced to run arbitrary code. It is limiting the scope very much. TCC shouldnt check entire app for signature. Safari should verify its resources, is what I am saying
- kbumsik 6y ago> It works with any app that can be convinced to run arbitrary code. I guess any Electron apps and apps using webview for its local resources do it too.