logoalt Hacker News

basilikumtoday at 12:21 AM3 repliesview on HN

For what is this exploited in the wild when it doesn't include a sandbox escape?

Is this chained with n-days?


Replies

pizlonatortoday at 1:59 AM

There's a risk that someone had been sitting on a sandbox escape that assumed having RCE inside the sandbox first, and so they'd been waiting for an RCE exactly like this one.

Those folks would not be disclosing their sandbox escape unless they were good guys.

(Posted with a memory safe WebKit, Fil-C FTW)

show 1 reply
sebstefantoday at 1:32 AM

If it's in the CISA known exploited vulnerabilities catalog, tell me if I'm wrong but I assume people don't go around exploiting million dollar 0-days in public just to fuck around safely in a chrome sandbox.

So maybe we're going to see another CVE for the sandbox escape soon?

daveguytoday at 1:35 AM

Crypto mining would be one application. But also, combined with a sandbox escape would make it particularly devastating. Usually full control of a device takes at least two exploits given the layers of security present in OS and browser environments.