Opening book details…
Can I read CVE-2023-26818 MacOS TCC Bypass Analysis on EtoBox?
CVE-2023-26818 MacOS TCC Bypass Analysis by artemesia.dnk is a document available to read on EtoBox.
What is CVE-2023-26818 MacOS TCC Bypass Analysis about?
The document discusses a vulnerability in the Telegram app for MacOS, identified as CVE-2023-26818, which allows for a TCC bypass through DyLib injection. This vulnerability can lead to local privilege escalation by granting unauthorized access to the camera and other sensitive resources. The analysis includes details on code signing, entitlements, and the exploitation process using DYLD_INSERT_LIBRARIES to load a malicious DyLib.
- Author
- artemesia.dnk
- Language
- EN