Exploiting the Impossible: A Deep Dive into A Vulnerability Apple Deems Unexploitable

Race-condition in Apple’s file-copy API allows symlink swap in tiny window to bypass checks; exploit remains even after patches.

https://jhftss.github.io/Exploiting-the-Impossible/

#TOCTOU #FileSystemExploit

Exploiting the Impossible: A Deep Dive into A Vulnerability Apple Deems Unexploitable

This is a blog post for my presentation at the conference Nullcon Berlin 2025. The slides are uploaded here.