Rare find

Glass-Cage-iOS18-CVE-2025-24085-CVE-2025-24201. Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, bypassing LockDown mode protection by exploiting ImageIO (CVE-2025-43300), then WebKit(CVE-2025-24201) and Core Media(CVE-2025-24085) to achieve sandbox escape, kernel-level access, and device bricking. Triggered via iMessage, it enables full compromise with no user interaction.

github.com/JGoyd/Glass-Cage-iOS18-CVE-2025-24085-CVE-2025-24201

Vaya's read on this project

Problem, audience, market, and the verdict — sign in to see it.

Updates

No recent activity.