Safari

Security researcher wh1te4ever shares Safari-based remote execution exploit patched in iOS 16.5.1, macOS 13.4.1

MacBook Pro Matrix Hack banner image.

In case you weren’t already aware, there was a Safari-based remote code execution (RCE) bug in the wild that Apple patched in a rapid security update for iOS & iPadOS 16.5.1 dubbed CVE-2023-37450, and ENKI WhiteHat is credited with the original proof of concept (PoC) showcasing the bug. But what if we told you someone made an exploit out of it? Interestingly enough, that seems to be exactly what has happened.

Lyncis is a JailbreakMe-style untethered jailbreak for 32-bit devices running iOS 7.1.x

Lyncis @staturnzdev WebKit untethered jailbreak for iOS 7.1.x.

I still remember how awesome it was when talented hacker comex released the JailbreakMe website from which iPhones, iPod touches, and iPads running iOS 4.3-4.3.3 could jailbreak their device with the swipe of a slider. Since then, there haven’t been many jailbreaks like it, which is why a newly released jailbreak called Lyncis for 32-bit devices running iOS 7.1.x by iOS developer @staturnzdev is somewhat special.