New CSS Attack Restarts an iPhone or Freezes a Mac

"All browsers on iOS are affected because the underlying rendering engine is WebKit"
Attack works by simply by visiting a web page
hahahahaha the state of Applel security is bad very bad

Attached: over 9000 keks.jpg (680x680, 33K)

Other urls found in this thread:

youtube.com/watch?v=9FthGZ6GhfU
cdn.rawgit.com/pwnsdx/ce64de2760996a6c432f06d612e33aea/raw/23f2faa0aadb4babbfd228c8bb32a26a8c51c741/safari-ripper.html
twitter.com/pwnsdx/status/1040944750973595649
rawgit.com/pwnsdx/6c1049ed4e17a8dc3f36ba6a677b98a6/raw/2f254b43d91285c888b42e9b7d9270171ebb04ae/dos.html
cdn.rawgit.com/gmgmgmg/1aa0c29938a6cf494f85ee74b4d45f0b/raw/b622cb9fb5c7cd5c057c951431470d629d972515/thepayload.html
twitter.com/NSFWRedditGif

post the exploit or didn't happen, fucko

just google the title,is available on github

Yes, please do
I’ll test it on my ipad

Post it her cuck

here*

op is a faggot confirmed for not posting it

youtube.com/watch?v=9FthGZ6GhfU

Attached: ok hand.gif (640x480, 1001K)

Not OP but cmon guys this was easy to find. Cant test though because I dont have apple products.

cdn.rawgit.com/pwnsdx/ce64de2760996a6c432f06d612e33aea/raw/23f2faa0aadb4babbfd228c8bb32a26a8c51c741/safari-ripper.html

twitter.com/pwnsdx/status/1040944750973595649

Kek this thread got quiet. Are all the ifags ok?

>cdn.rawgit.com/pwnsdx/ce64de2760996a6c432f06d612e33aea/raw/23f2faa0aadb4babbfd228c8bb32a26a8c51c741/safari-ripper.html
rekt

>On iOS every browser is just a “skin” over Safari/WebKit. For example Firefox on iOS doesn’t use Gecko like it does on Desktop or Android but uses the build in WebKit Rendering Engine.

So any bug in the rendering engine would be replicated across all the browsers on iOS.

Why did the video cut after he clicked the link?

iTODDLERS BTFO

Attached: 1515709338351.png (1013x1184, 106K)

iTODDLERS BTFO

kek
Apple has become a bigger joke than I would have imagined. It seems like there's a new vulnerability published every day.

Attached: New CSS+HTML Attack Crashes and Restarts or Resprings an iPhone-9FthGZ6GhfU.webm (598x1080, 1.75M)

Attached: 1531947038299.gif (285x200, 938K)

applefags are literally the dumbest and most useless people on earth

This is pretty funny

Attached: lol.png (2464x1454, 3.4M)

I literally cannot add more in notepad since windows gives an error about memory or something (notepad uses 4.2 GB when having it open).

Attached: chunky.jpg (363x509, 60K)

when your platform becomes mainstream, it will get exploited and people will make malware for it.

Attached: 1517912859182.jpg (600x440, 121K)

This happens but incels on Jow Forums want their own browser written in C
LOL!

>not using lynx
>2018

We have gentoo you dumb fuck.

BROWSER retard

The exploit is possible because of the shit OS

Just crashes Safari for me.
iPhone SE, iOS 10.3.1

whatever lol

lol

I guess I can see how that would crash a browser at least. Makes me think how easy it would be to make the world burn if I went back in time to the early internet.

it shouldn't be possible for any application to crash the whole os

>the ABSOLUTE state of iToddlers

Attached: 1523644296821.gif (500x491, 376K)

fuck off satania you dumb slut

haha ifags BTFO

Attached: 1505643139233.png (1017x1014, 513K)

Idiot

Attached: COPE.png (1721x678, 225K)

Who cares, now at least I can get around to updating my software.

>Who cares
lel

What happens doing this?

Softbricks the phone on some older iOS version. Has to do with the fact that 1/1/1970 midnight is a negative Unix date in USA timezones.

poor people are so mad that they cant afford iOS that they just try and hack it instead. XD

How can spamming divs crash an operating system?

Attached: anime-girl-confused-png-3.png (700x700, 50K)

I see, so it happens because of "negative" timezones then?

>1/1/1970 midnight is a negative Unix date in USA timezones
Unix time is independent of timezone

It's an out of memory problem. If you look at the source of the exploit, you'll see that if a browser takes it literally, it will exhaust system memory and panic.

apple gay

Or you know, just make a platform that's not shit in the first place instead of patching as you go.

Already been done boyo

Attached: 1516092384801.jpg (640x480, 70K)

Whats divs

rawgit.com/pwnsdx/6c1049ed4e17a8dc3f36ba6a677b98a6/raw/2f254b43d91285c888b42e9b7d9270171ebb04ae/dos.html

fuck you

found the mac fag

Attached: 1532144974501.jpg (491x324, 40K)

>mac
Found your problem.

Honestly iOS exploits are barely even news anymore, there's one every other week. Apple tards will continue to defend it though

Attached: 1531151079669.jpg (1632x1224, 237K)

cringe

yikes

doesn't work on my machine, doesn't even crash the browser

Attached: 1537040342840.png (1438x1057, 788K)

based

SEETHING

I hope he releases this one

Attached: css-attack.png (1692x172, 69K)

Thank doge I'm on Windows 10™.

>allowing scripts by default
ifags dont even have to allow scripts and it will work. But with js it could be even worse

0:00:00 01/01/1970 PDT (GMT-7) is exactly what timestamp?

cdn.rawgit.com/gmgmgmg/1aa0c29938a6cf494f85ee74b4d45f0b/raw/b622cb9fb5c7cd5c057c951431470d629d972515/thepayload.html

Who's gunna try? Please record it.

This is starting to smell like Jow Forums.js and I don't like it.

If you're a lunixfag you can test with dolphin on kde. Or konqueror. Or midori.

Kek. On Android it forces my phone to try to print the page

Attached: Screenshot_20180915-170715_Print Spooler.jpg (1440x2960, 121K)

not on my phone

Does on my desktop too, but you can just press cancel.

>this source protect by evil spirits dont look
Learn english, nigger.

> for('VIRUS SPAM ACTIVATED INDIA #1';'www.Jow Forums.com/post'/'post'/'submit';'FUCK AMERICA')

Do you have brain cancer? Good job writing code that does nothing. Go back to india.

>cdn.rawgit.com/pwnsdx/ce64de2760996a6c432f06d612e33aea/raw/23f2faa0aadb4babbfd228c8bb32a26a8c51c741/safari-ripper.html
umm... no, sweaty

Attached: Screen Shot 2018-09-15 at 22.47.34.png (2644x1584, 2.62M)

>cdn.rawgit.com/gmgmgmg/1aa0c29938a6cf494f85ee74b4d45f0b/raw/b622cb9fb5c7cd5c057c951431470d629d972515/thepayload.html
literally just works

Attached: Screen Shot 2018-09-15 at 22.50.00.png (2648x1588, 937K)

Pretty sure it's just Safari.
More of a problem on iOS because all browsers are just skins of Safari.

So this should work on browsers using WebKit. Namely Midori, Rekonq, Konqueror, GNOME Web and most console browsers.
Any brave user would be kind enough to test it?

>out of memory
And why the fuck would the OS let a process consume memory beyond its limits? That's a trivial problem you have to solve when making up a kernel. Is this the power of *BSD?

How about

rawgit.com/pwnsdx/6c1049ed4e17a8dc3f36ba6a677b98a6/raw/2f254b43d91285c888b42e9b7d9270171ebb04ae/dos.html

Only thing it does is open print dialog. Everything else is broken code by retard.

Attached: india.jpg (2183x332, 49K)

just:
view-source:pajeet-link-here

This causes Chrome to lock up for me, but if I click the X on the tab it closes after a couple of seconds and Chrome goes back to normal.

yikes

>install brave
>want to go to gmail


>type 'gm' into address bar in brave
>second search result is my gmail account
>first is some chinese website i have never been to
>hit enter
>now at some chinese botnet

maybe eich is a faggot

yikes

The hilarious part is that anything to do with Webkit requires a whole IOS update because God forbid apple learns decoupling.

3 C H I L L O N C O M P A N Y