Oct. 18, 2023, 4:56 p.m. | Hossein Lotfi

Zero Day Initiative - Blog www.zerodayinitiative.com

In May 2023, we received a vulnerability report from an anonymous researcher regarding a vulnerability in Apple Safari. It turned out to be an interesting classic integer underflow vulnerability. Apple assigned CVE-2023-38600 to this issue and fixed it in the following security advisories:

iOS 16.6 and iPadOS 16.6
macOS Ventura 13.5
tvOS 16.6
Safari 16.6
watchOS 9.6

 Now that this vulnerability has been addressed by the vendor, we are ready to share additional details with …

anonymous apple apple safari blog post cve integer ios ios 16 ipados issue may may 2023 report researcher safari security security advisories story vulnerability

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

Information Security Specialist, Sr. (Container Hardening)

@ Rackner | San Antonio, TX

Principal Security Researcher (Advanced Threat Prevention)

@ Palo Alto Networks | Santa Clara, CA, United States

EWT Infosec | IAM Technical Security Consultant - Manager

@ KPMG India | Bengaluru, Karnataka, India

Security Engineering Operations Manager

@ Gusto | San Francisco, CA; Denver, CO; Remote

Network Threat Detection Engineer

@ Meta | Denver, CO | Reston, VA | Menlo Park, CA | Washington, DC