<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>NSEcho</title>
    <link>https://nsecho.github.io/</link>
    <description>custom blog</description>
    <managingEditor>xdaemonx@protonmail.com (NSEcho)</managingEditor>
    <pubDate>Fri, 27 Dec 2024 11:21:44 +0000</pubDate>
    <item>
      <title>Abusing WhatsApp update process on macOS</title>
      <link>https://nsecho.github.io/posts/wa.html</link>
      <description>Hijacking update process to plant our own binary</description>
      <author>NSEcho</author>
      <pubDate>Tue, 07 May 2024 14:10:44 +0200</pubDate>
    </item>
    <item>
      <title>CVE-2023-43976 - CatoNetworks macOS LPE</title>
      <link>https://nsecho.github.io/posts/cve_2023_43976.html</link>
      <description>Exploiting notorization race conditions</description>
      <author>NSEcho</author>
      <pubDate>Thu, 28 Dec 2023 13:53:24 +0100</pubDate>
    </item>
    <item>
      <title>Certified iOS Security Engineer</title>
      <link>https://nsecho.github.io/posts/cise.html</link>
      <description>Review of the Certified iOS Security Engineer certification</description>
      <author>NSEcho</author>
      <pubDate>Wed, 29 Nov 2023 19:30:20 +0100</pubDate>
    </item>
    <item>
      <title>Fuzz iOS URL schemes with furlzz</title>
      <link>https://nsecho.github.io/posts/furlzz_fuzzing_bear.html</link>
      <description>Crashing Bear app with simple fuzzing</description>
      <author>NSEcho</author>
      <pubDate>Sun, 17 Sep 2023 09:59:09 +0200</pubDate>
    </item>
    <item>
      <title>Tunnelblick Local Privilege Escalation</title>
      <link>https://nsecho.github.io/posts/tunnelblick_assisted_lpe.html</link>
      <description>Abusing .ovpn files to gain privilege escalation</description>
      <author>NSEcho</author>
      <pubDate>Tue, 01 Aug 2023 17:23:07 +0200</pubDate>
    </item>
    <item>
      <title>Tunnelblick Arbitrary File Overwrite</title>
      <link>https://nsecho.github.io/posts/tunnelblick_file_overwrite.html</link>
      <description>Using hardlinks to overwrite root owned files</description>
      <author>NSEcho</author>
      <pubDate>Sun, 30 Jul 2023 10:12:06 +0200</pubDate>
    </item>
    <item>
      <title>CVE-2023-39107 - NoMachine Arbitrary File Overwrite</title>
      <link>https://nsecho.github.io/posts/nomachine_afo.html</link>
      <description>Using hardlinks to overwrite root owned files</description>
      <author>NSEcho</author>
      <pubDate>Fri, 21 Jul 2023 19:09:42 +0200</pubDate>
    </item>
    <item>
      <title>CVE-2023-33298 - Perimeter81 Local Privilege Escalation</title>
      <link>https://nsecho.github.io/posts/cve_2023_33298.html</link>
      <description>Exploiting XPC HelperTool to gain LPE</description>
      <author>NSEcho</author>
      <pubDate>Fri, 30 Jun 2023 00:38:03 +0200</pubDate>
    </item>
    <item>
      <title>GObjCResolv</title>
      <link>https://nsecho.github.io/posts/gobjcresolv.html</link>
      <description>Creating ObjC resolver in Golang</description>
      <author>NSEcho</author>
      <pubDate>Mon, 15 May 2023 23:44:08 +0200</pubDate>
    </item>
    <item>
      <title>CVE-2023-27574 - Shadowsocks-NG code execution</title>
      <link>https://nsecho.github.io/posts/cve_2023_27574.html</link>
      <description>Exploiting get-task-allow for code execution</description>
      <author>NSEcho</author>
      <pubDate>Sun, 05 Mar 2023 13:45:06 +0100</pubDate>
    </item>
    <item>
      <title>Code signature and new dylibs (Part 1)</title>
      <link>https://nsecho.github.io/posts/codesig_dylib.html</link>
      <description>Adding new loads and removing code signature</description>
      <author>NSEcho</author>
      <pubDate>Sat, 18 Feb 2023 21:32:40 +0100</pubDate>
    </item>
    <item>
      <title>Frida and time-based logout</title>
      <link>https://nsecho.github.io/posts/time_based_logout.html</link>
      <description>Bypassing application logout with frida</description>
      <author>NSEcho</author>
      <pubDate>Wed, 12 Oct 2022 14:33:01 +0200</pubDate>
    </item>
    <item>
      <title>Buggy lldb fuzzer</title>
      <link>https://nsecho.github.io/posts/lldb_fuzzing.html</link>
      <description>How can we fuzz with lldb and python</description>
      <author>NSEcho</author>
      <pubDate>Thu, 21 Oct 2021 22:39:17 +0200</pubDate>
    </item>
    <item>
      <title>mutiny fuzzer</title>
      <link>https://nsecho.github.io/posts/mutiny_fuzzing.html</link>
      <description>Fuzzing the network with mutiny fuzzer</description>
      <author>NSEcho</author>
      <pubDate>Tue, 19 Oct 2021 09:29:40 +0200</pubDate>
    </item>
    <item>
      <title>Cracking Mac OS applications for fun and no profit</title>
      <link>https://nsecho.github.io/posts/cracking_macos.html</link>
      <description>Cracking or should I say patching of Mac OS applications</description>
      <author>NSEcho</author>
      <pubDate>Tue, 08 Jun 2021 14:58:20 +0200</pubDate>
    </item>
    <item>
      <title>Radare2 and iOS Apps</title>
      <link>https://nsecho.github.io/posts/radare_objectivec.html</link>
      <description>Analyzing the iOS applications using radare2</description>
      <author>NSEcho</author>
      <pubDate>Wed, 14 Apr 2021 20:46:23 +0200</pubDate>
    </item>
    <item>
      <title>SSL pinning is not that hard... sometimes</title>
      <link>https://nsecho.github.io/posts/ssl_bypass_simple.html</link>
      <description>Bypassing SSL pinning</description>
      <author>NSEcho</author>
      <pubDate>Mon, 22 Feb 2021 17:22:16 +0100</pubDate>
    </item>
    <item>
      <title>American F Lop</title>
      <link>https://nsecho.github.io/posts/afl_fuzzing.html</link>
      <description>Fuzzing can be fun</description>
      <author>NSEcho</author>
      <pubDate>Fri, 05 Feb 2021 19:04:36 +0100</pubDate>
    </item>
    <item>
      <title>Jailbreak bypass</title>
      <link>https://nsecho.github.io/posts/jailbreak_bypass.html</link>
      <description>Simple jailbreak detection bypass</description>
      <author>NSEcho</author>
      <pubDate>Mon, 25 Jan 2021 18:05:36 +0100</pubDate>
    </item>
    <item>
      <title>Code injection on nonjailbroken iPhone</title>
      <link>https://nsecho.github.io/posts/theos_like.html</link>
      <description>Using custom dylib to modify applications on nonjailbroken iPhone</description>
      <author>NSEcho</author>
      <pubDate>Wed, 09 Dec 2020 19:31:28 +0100</pubDate>
    </item>
    <item>
      <title>FridaGadget.dylib on nonjailbroken iPhone</title>
      <link>https://nsecho.github.io/posts/frida_patching.html</link>
      <description>Finally got it</description>
      <author>NSEcho</author>
      <pubDate>Sat, 05 Dec 2020 22:31:11 +0100</pubDate>
    </item>
    <item>
      <title>Modlishka &amp; Lateralus</title>
      <link>https://nsecho.github.io/posts/lateralus.html</link>
      <description>Strange words</description>
      <author>NSEcho</author>
      <pubDate>Thu, 08 Oct 2020 14:54:09 +0200</pubDate>
    </item>
    <item>
      <title>Fun RCE with PHP upload</title>
      <link>https://nsecho.github.io/posts/rce.html</link>
      <description>500 Internal Error sometimes can be good</description>
      <author>NSEcho</author>
      <pubDate>Mon, 17 Aug 2020 13:09:06 +0200</pubDate>
    </item>
    <item>
      <title>Connecting the dots between Theos and Cycript/Cyrun</title>
      <link>https://nsecho.github.io/posts/theos_cycript_cyrun.html</link>
      <description>What is the releationship between the two</description>
      <author>NSEcho</author>
      <pubDate>Fri, 03 Jul 2020 17:28:54 +0200</pubDate>
    </item>
    <item>
      <title>Debugging iOS apps on jailbroken iPhone</title>
      <link>https://nsecho.github.io/posts/debugging.html</link>
      <description>LLDB + debugserver to debug iOS apps</description>
      <author>NSEcho</author>
      <pubDate>Fri, 03 Jul 2020 13:44:28 +0200</pubDate>
    </item>
  </channel>
</rss>