iOS browser exploit for CVE-2020-9802, an old JIT bug.
# jitsploitation
iOS browser exploit for CVE-2020-9802, an old JIT bug.
This is an exploit for a popular JIT compiler bug in the WebKit engine for macOS and iOS originally documented by Project Zero.
I re-implemented the exploit for this bug as an exercise in learning browser exploitation.
Video explanation: [How 1 Click can Hack your iPhone](https://www.youtube.com/watch?v=o6mVgygo-hk&t=34s)
### Credits
[ProjectZero blog](https://googleprojectzero.blogspot.com/2020/09/jitsploitation-one.html)
[JakeBlair420 implementation](https://github.com/JakeBlair420/totally-not-spyware/blob/master/root/js/utils.js)
登录后查看神龙缓存的 POC 文件快照
登录查看