Thread
Stories related to "Flatpak Permission Survey" across the full archive.
Android privilege escalation to mediaserver from zero permissions (CVE-2014-7920 + CVE-2014-7921)
(bits-please.blogspot.com)
An Analysis of the Privacy and Security Risks of Android VPN Permission-enabled Apps
(research.csiro.au)
> The first analysis of its kind, the report looked at 283 Android VPN apps, investigating a wide range of security and privacy features.VPN facts from the study
>
> Alarmingly, the report uncovered that not only did 18 per cent of the apps fail to encrypt users’ traffic but 38 per cent injected ...
Cloak and Dagger: From Two Permissions to Complete Control of the UI Feedback Loop
(cloak-and-dagger.org)
Oscar: A Practical Page-Permissions-Based Scheme for Thwarting Dangling Pointers (2017)
(usenix.org)
Abstract: "Using memory after it has been freed opens programs up
to both data and control-flow exploits. Recent work on
temporal memory safety has focused on using explicit
lock-and-key mechanisms (objects are assigned a new
lock upon allocation, and pointers must have the correct
key to be de...