CVE-2024-42011 by (0xRushy - Abdullah Al-Harbi)

hepfp.jpg

Find me here!


PoC Video:

https://youtu.be/xmJOAWYZY0w

Steps to Reproduce:

1 - Analyze the Spotify binary for insecure functions:

2 - Identify the location of strcat using the otool output: