I know there are plenty of software missing from here. This is just a fun infographic I made, no need to take it seriously :)

  • Drunk & Root@sh.itjust.works
    link
    fedilink
    arrow-up
    1
    ·
    3 days ago

    wasn’t Pegasus attack vector sms how is it a OS issue if its a protocol its the same as saying Linux is insecure because xmpp had a vulnrabilty and allowed remote access

    • spv.sh@lemmy.spv.sh
      link
      fedilink
      English
      arrow-up
      1
      ·
      2 days ago

      depends on the chain in question. some used iMessage as a way in, but (at least in the case i’m thinking of rn) it was only used to trigger an image parsing bug. in others, sms was used to trick someone into clicking a link, exploiting a bug in JavaScriptCore.