Remix.run Logo
MrDOS 3 hours ago

I wish I had a better sense of how these zero-click vulnerabilities work so I could get a sense of how to protect myself from them (you know, without giving in to Liquid Glass). Can they be blocked by an ad blocker? Are they blocked by any extant ad blockers? What about “Lockdown Mode”?

fn-mote 3 hours ago | parent | next [-]

Note that this is 1-click.

0-click example: receive an MMS with a malformed image that exploits a bug in decoding

SimianSci 2 hours ago | parent | prev | next [-]

It's a watering hole attack. At any point your iphone sends an http request to a compromised site, by add, link, embedded, etc. your device will be exploited. there really isn't a way to permanently defeat this. We are about to see an explosion of novel attack types utilizing this exploit as their basis, you realistically cannot defend yourself against these without either updating or no longer using an iphone.

walterbell an hour ago | parent | next [-]

> At any point your iphone sends an http request to a compromised site, by add, link, embedded, etc. your device will be exploited.

Would it help to disable Javascript on untrusted sites via Brave?

MrDOS 2 hours ago | parent | prev [-]

What are you talking about?

Why are we about to see an explosion?

bix6 3 hours ago | parent | prev [-]

My understand is ad blockers only stop one class. Lockdown Mode is supposedly a major upgrade given all the underlying processes it blocks / slows.