24 KiB
âïž HackTricks Cloud âïž -ðŠ Twitter ðŠ - ðïž Twitch ðïž - ð¥ Youtube ð¥
-
ãµã€ããŒã»ãã¥ãªãã£äŒæ¥ã§åããŠããŸããïŒ HackTricksã§äŒç€Ÿã宣äŒãããã§ããïŒãŸãã¯ãPEASSã®ææ°ããŒãžã§ã³ã«ã¢ã¯ã»ã¹ããããHackTricksãPDFã§ããŠã³ããŒããããã§ããïŒSUBSCRIPTION PLANSããã§ãã¯ããŠãã ããïŒ
-
The PEASS FamilyãèŠã€ããŠãã ãããç¬å çãªNFTã®ã³ã¬ã¯ã·ã§ã³ã§ãã
-
å ¬åŒã®PEASSïŒHackTricksã®ã°ããºãæã«å ¥ããŸãããã
-
ð¬ Discordã°ã«ãŒããŸãã¯Telegramã°ã«ãŒãã«åå ããããTwitterã§ãã©ããŒããŠãã ããðŠ@carlospolopmã
-
ãããã³ã°ã®ããªãã¯ãå ±æããã«ã¯ãhacktricksãªããžããªãšhacktricks-cloudãªããžããªã«PRãæåºããŠãã ããã
ç¹æš©åé¢ãšãµã³ãããã¯ã¹
ãŠãŒã¶ãŒãã¢ã¯ã»ã¹ã§ããã¢ããªã±ãŒã·ã§ã³ã¯mobileãŠãŒã¶ãŒãšããŠå®è¡ãããéèŠãªã·ã¹ãã ããã»ã¹ã¯rootãšããŠå®è¡ãããŸãã
ãã ãããµã³ãããã¯ã¹ã䜿çšãããšãããã»ã¹ãã¢ããªã±ãŒã·ã§ã³ãå®è¡ã§ããã¢ã¯ã·ã§ã³ãããå¶åŸ¡ã§ããŸãã
ããšãã°ã2ã€ã®ããã»ã¹ãåããŠãŒã¶ãŒïŒmobileïŒãšããŠå®è¡ãããŠããŠãããäºãã®ããŒã¿ã«ã¢ã¯ã»ã¹ãããå€æŽãããããããšã¯ã§ããŸããã
åã¢ããªã±ãŒã·ã§ã³ã¯**private/var/mobile/Applications/{ã©ã³ãã ãªID}
ã®äžã«ã€ã³ã¹ããŒã«ãããŸãã
ã€ã³ã¹ããŒã«ããããšãã¢ããªã±ãŒã·ã§ã³ã¯äžéšã®ã·ã¹ãã é åãæ©èœïŒSMSãé»è©±ãªã©ïŒã«å¯ŸããŠå¶éä»ãã®èªã¿åãã¢ã¯ã»ã¹ãæã¡ãŸããã¢ããªã±ãŒã·ã§ã³ãä¿è·ãããé å**ã«ã¢ã¯ã»ã¹ããããšããå Žåãèš±å¯ãèŠæ±ãããããã¢ããã衚瀺ãããŸãã
ããŒã¿ä¿è·
ã¢ããªéçºè ã¯ãiOSã®ããŒã¿ä¿è·APIã掻çšããŠããã©ãã·ã¥ã¡ã¢ãªã«ä¿åããããŠãŒã¶ãŒããŒã¿ã®çŽ°ããã¢ã¯ã»ã¹å¶åŸ¡ãå®è£ ããããšãã§ããŸãããããã®APIã¯ãSecure Enclave ProcessorïŒSEPïŒã®äžã«æ§ç¯ãããŠããŸããSEPã¯ãããŒã¿ä¿è·ãšããŒç®¡çã®ããã®æå·æäœãæäŸããã³ããã»ããµã§ããããã€ã¹åºæã®ããŒããŠã§ã¢ããŒã§ããããã€ã¹UIDïŒäžæã®IDïŒã¯ãã»ãã¥ã¢ãšã³ã¯ã¬ãŒãã«åã蟌ãŸããŠããããªãã¬ãŒãã£ã³ã°ã·ã¹ãã ã«ãŒãã«ã䟵害ãããå Žåã§ãããŒã¿ä¿è·ã®å®å šæ§ãä¿èšŒããŸãã
ãã¡ã€ã«ããã£ã¹ã¯äžã«äœæããããšã256ãããã®AESããŒãçæãããŸãããã®ããŒã¯ãã»ãã¥ã¢ãšã³ã¯ã¬ãŒãã®ããŒããŠã§ã¢ããŒã¹ã®ä¹±æ°çæåšã®å©ããåããŠçæãããŸãããã¡ã€ã«ã®å 容ã¯çæãããããŒã§æå·åãããŸãããããŠããã®ããŒã¯ãã¯ã©ã¹ããŒãšã¯ã©ã¹IDãšå ±ã«æå·åãããç¶æ ã§ã·ã¹ãã ã®ããŒã«ãã£ãŠæå·åãããããŒã¿ãšãšãã«ããã¡ã€ã«ã®ã¡ã¿ããŒã¿ã«ä¿åãããŸãã
ãã¡ã€ã«ã埩å·ããããã«ã¯ãã¡ã¿ããŒã¿ãã·ã¹ãã ã®ããŒã§åŸ©å·ããå¿ èŠããããŸãã次ã«ãã¯ã©ã¹IDã䜿çšããŠã¯ã©ã¹ããŒãååŸãããã¡ã€ã«ã®ããŒã埩å·ããŠãã¡ã€ã«ã埩å·ããŸãã
ãã¡ã€ã«ã¯ãApple Platform Security Guideã§è©³ãã説æãããŠãã4ã€ã®ç°ãªãä¿è·ã¯ã©ã¹ã®ããããã«å²ãåœãŠãããšãã§ããŸãã
- Complete Protection (NSFileProtectionComplete): ãŠãŒã¶ãŒã®ãã¹ã³ãŒããšããã€ã¹UIDãã掟çããããŒããã®ã¯ã©ã¹ããŒãä¿è·ããŸããããã€ã¹ãããã¯ããããšããã«ã掟çããŒã¯ã¡ã¢ãªããåé€ãããããããŠãŒã¶ãŒãããã€ã¹ãã¢ã³ããã¯ãããŸã§ããŒã¿ã«ã¢ã¯ã»ã¹ã§ããŸããã
- Protected Unless Open (NSFileProtectionCompleteUnlessOpen): ãã®ä¿è·ã¯ã©ã¹ã¯Complete ProtectionãšäŒŒãŠããŸããããã¡ã€ã«ãã¢ã³ããã¯ãããç¶æ ã§éãããŠããå ŽåããŠãŒã¶ãŒãããã€ã¹ãããã¯ããŠãã¢ããªã¯ãã¡ã€ã«ã«ã¢ã¯ã»ã¹ãç¶ããããšãã§ããŸãããã®ä¿è·ã¯ã©ã¹ã¯ãããšãã°ã¡ãŒã«ã®æ·»ä»ãã¡ã€ã«ãããã¯ã°ã©ãŠã³ãã§ããŠã³ããŒããããŠããå Žåã«äœ¿çšãããŸãã
- Protected Until First User Authentication (NSFileProtectionCompleteUntilFirstUserAuthentication): ãŠãŒã¶ãŒãããã€ã¹ãèµ·ååŸãåããŠããã€ã¹ãã¢ã³ããã¯ãããšããã«ãã¡ã€ã«ã«ã¢ã¯ã»ã¹ã§ããŸãããŠãŒã¶ãŒããã®åŸããã€ã¹ãããã¯ããŠããã¯ã©ã¹ããŒã¯ã¡ã¢ãªããåé€ãããã«ã¢ã¯ã»ã¹ã§ããŸãã
- No Protection (NSFileProtectionNone): ãã®ä¿è·ã¯ã©ã¹ã®ããŒã¯UIDã®ã¿ã§ä¿è·ãããŸããã¯ã©ã¹ããŒã¯ãEffaceable StorageããšåŒã°ããé åã«æ ŒçŽãããŸããEffaceable Storageã¯ãiOSããã€ã¹ã®ãã©ãã·ã¥ã¡ã¢ãªã®äžéšã§ãããå°éã®ããŒã¿ãä¿åããããšãã§ããŸãããã®ä¿è·ã¯ã©ã¹ã¯ãããŒã¿ãããã«ãªã¢ãŒãã§åé€ããããã«ååšããŸãã
NSFileProtectionNone
以å€ã®ãã¹ãŠã®ã¯ã©ã¹ããŒã¯ãããã€ã¹UIDãšãŠãŒã¶ãŒã®ãã¹ã³ãŒããã掟çããããŒã§æå·åãããŸãããã®ããã埩å·ã¯ããã€ã¹èªäœã§ã®ã¿è¡ãããæ£ãããã¹ã³ãŒããå¿
èŠã§ãã
iOS 7以éãããã©ã«ãã®ããŒã¿ä¿è·ã¯ã©ã¹ã¯ãProtected Until First User Authenticationãã§ãã
FileDPã¯ãåãã¡ã€ã«ã®
kSecAttrAccessibleAlways
: ããŒãã§ãŒã³ã¢ã€ãã ã®ããŒã¿ã¯ãããã€ã¹ãããã¯ãããŠãããã©ããã«é¢ä¿ãªããåžžã«ã¢ã¯ã»ã¹ã§ããŸããkSecAttrAccessibleAlwaysThisDeviceOnly
: ããŒãã§ãŒã³ã¢ã€ãã ã®ããŒã¿ã¯ãããã€ã¹ãããã¯ãããŠãããã©ããã«é¢ä¿ãªããåžžã«ã¢ã¯ã»ã¹ã§ããŸããããŒã¿ã¯iCloudãããŒã«ã«ããã¯ã¢ããã«å«ãŸããŸãããkSecAttrAccessibleAfterFirstUnlock
: ãŠãŒã¶ãŒã«ãã£ãŠããã€ã¹ãäžåºŠããã¯è§£é€ããããŸã§ãããŒãã§ãŒã³ã¢ã€ãã ã®ããŒã¿ã«ã¯ã¢ã¯ã»ã¹ã§ããŸãããkSecAttrAccessibleAfterFirstUnlockThisDeviceOnly
: ãŠãŒã¶ãŒã«ãã£ãŠããã€ã¹ãäžåºŠããã¯è§£é€ããããŸã§ãããŒãã§ãŒã³ã¢ã€ãã ã®ããŒã¿ã«ã¯ã¢ã¯ã»ã¹ã§ããŸããããã®å±æ§ãæã€ã¢ã€ãã ã¯æ°ããããã€ã¹ã«ç§»è¡ããŸããããããã£ãŠãç°ãªãããã€ã¹ã®ããã¯ã¢ãããã埩å ããåŸããããã®ã¢ã€ãã ã¯ååšããŸãããkSecAttrAccessibleWhenUnlocked
: ãŠãŒã¶ãŒã«ãã£ãŠããã€ã¹ãããã¯è§£é€ãããŠããéã®ã¿ãããŒãã§ãŒã³ã¢ã€ãã ã®ããŒã¿ã«ã¢ã¯ã»ã¹ã§ããŸããkSecAttrAccessibleWhenUnlockedThisDeviceOnly
: ãŠãŒã¶ãŒã«ãã£ãŠããã€ã¹ãããã¯è§£é€ãããŠããéã®ã¿ãããŒãã§ãŒã³ã¢ã€ãã ã®ããŒã¿ã«ã¢ã¯ã»ã¹ã§ããŸããããŒã¿ã¯iCloudãããŒã«ã«ããã¯ã¢ããã«å«ãŸããŸãããkSecAttrAccessibleWhenPasscodeSetThisDeviceOnly
: ããã€ã¹ãããã¯è§£é€ãããŠããå Žåã«ã®ã¿ãããŒãã§ãŒã³ã®ããŒã¿ã«ã¢ã¯ã»ã¹ã§ããŸãããã®ä¿è·ã¯ã©ã¹ã¯ãããã€ã¹ã«ãã¹ã³ãŒããèšå®ãããŠããå Žåã«ã®ã¿äœ¿çšã§ããŸããããŒã¿ã¯iCloudãããŒã«ã«ããã¯ã¢ããã«å«ãŸããŸããã
**AccessControlFlags
**ã¯ããŠãŒã¶ãŒãããŒã«å¯ŸããŠèªèšŒã§ããã¡ã«ããºã ãå®çŸ©ããŸãïŒSecAccessControlCreateFlags
ïŒïŒ
kSecAccessControlDevicePasscode
: ãã¹ã³ãŒãã䜿çšããŠã¢ã€ãã ã«ã¢ã¯ã»ã¹ããŸããkSecAccessControlBiometryAny
: ç»é²ãããTouch IDã®æçŽã®ããããã䜿çšããŠã¢ã€ãã ã«ã¢ã¯ã»ã¹ããŸããæçŽã®è¿œå ãåé€ã¯ã¢ã€ãã ãç¡å¹ã«ããŸãããkSecAccessControlBiometryCurrentSet
: ç»é²ãããTouch IDã®æçŽã®ããããã䜿çšããŠã¢ã€ãã ã«ã¢ã¯ã»ã¹ããŸããæçŽã®è¿œå ãåé€ã¯ã¢ã€ãã ãç¡å¹ã«ããŸããkSecAccessControlUserPresence
: ç»é²ãããæçŽïŒTouch IDã䜿çšïŒã®ããããã䜿çšããŠã¢ã€ãã ã«ã¢ã¯ã»ã¹ãããããã¹ã³ãŒããããã©ã«ããšããŸãã
Touch IDã«ãã£ãŠä¿è·ãããããŒïŒkSecAccessControlBiometryAny
ãŸãã¯kSecAccessControlBiometryCurrentSet
ã䜿çšïŒã¯ãã»ãã¥ã¢ãšã³ã¯ã¬ãŒãã«ãã£ãŠä¿è·ãããŠããŸããããŒãã§ãŒã³ã«ã¯ããŒã¯ã³ã®ã¿ãä¿æãããå®éã®ããŒã¯ã»ãã¥ã¢ãšã³ã¯ã¬ãŒãã«ååšããŸãã
iPhoneã¯ãããã€ã¹ã®ããã¯ã解é€ããããã«ãŠãŒã¶ãŒãå°å ¥ãããã¹ã³ãŒãã䜿çšããŠããŒãã§ãŒã³ã®ç§å¯ã埩å·åããŸãã
iOSã¯ãAppIdentifierPrefixïŒããŒã IDïŒãš_BundleIdentifier_ïŒéçºè ãæäŸããïŒã䜿çšããŠãããŒãã§ãŒã³ã¢ã€ãã ãžã®ã¢ã¯ã»ã¹å¶åŸ¡ã匷å¶ããŸãããã®åŸãåãããŒã ã¯2ã€ã®ã¢ããªãããŒãã§ãŒã³ã¢ã€ãã ãå ±æããããã«èšå®ã§ããŸãã
ããã¯ã¢ããããã»ã¹ãéå§ããããšãããŒãã§ãŒã³ã®ããŒã¿ã¯æå·åããããŸãŸããã¯ã¢ãããããããŒãã§ãŒã³ã®ãã¹ã¯ãŒãã¯ããã¯ã¢ããã«å«ãŸããŸããã
{% hint style="warning" %} è±çãããããã€ã¹ã§ã¯ãããŒãã§ãŒã³ã¯ä¿è·ãããŸããã {% endhint %}
ããŒãã§ãŒã³ããŒã¿ã®æ°žç¶æ§
iOSã§ã¯ãã¢ããªã±ãŒã·ã§ã³ãã¢ã³ã€ã³ã¹ããŒã«ããããšãã¢ããªã±ãŒã·ã§ã³ã«ãã£ãŠäœ¿çšãããããŒãã§ãŒã³ããŒã¿ã¯ããã€ã¹ã«ä¿æãããŸãããã¢ããªã±ãŒã·ã§ã³ã®ãµã³ãããã¯ã¹ã«ä¿åãããããŒã¿ã¯åé€ãããŸããããã€ã¹ã®ãŠãŒã¶ãŒãå·¥å Žåºè·æã®ãªã»ãããè¡ããã«ããã€ã¹ã販売ããå Žåãåã®ãŠãŒã¶ãŒã䜿çšããŠããåãã¢ããªã±ãŒã·ã§ã³ãåã€ã³ã¹ããŒã«ããããšã§ãããã€ã¹ã®è³Œå ¥è ã¯åã®ãŠãŒã¶ãŒã®ã¢ããªã±ãŒã·ã§ã³ã¢ã«ãŠã³ããšããŒã¿ã«ã¢ã¯ã»ã¹ã§ããå ŽåããããŸããããã«ã¯æè¡çãªèœåã¯å¿ èŠãããŸããã
ã¢ããªã±ãŒã·ã§ã³ãã¢ã³ã€ã³ã¹ããŒã«ãããéã«ããŒã¿ã匷å¶çã«åé€ããããã«ãéçºè ã䜿çšã§ããiOSã®APIã¯ãããŸããã代ããã«ãéçºè ã¯æ¬¡ã®æé ãå®è¡ããŠãã¢ããªã±ãŒã·ã§ã³ã®ã€ã³ã¹ããŒã«éã«ããŒãã§ãŒã³ããŒã¿ãæ°žç¶åãããªãããã«ããå¿ èŠããããŸãïŒ
- ã€ã³ã¹ããŒã«åŸãã¢ããªã±ãŒã·ã§ã³ãåããŠèµ·åããããšãã¢ããªã±ãŒã·ã§ã³ã«é¢é£ãããã¹ãŠã®ããŒãã§ãŒã³ããŒã¿ãåé€ããŸããããã«ãããããã€ã¹ã®2çªç®ã®ãŠãŒã¶ãŒãåã®ãŠãŒã¶ãŒã®ã¢ã«ãŠã³ãã«èª€ã£ãŠã¢ã¯ã»ã¹ããããšãé²æ¢ãããŸãã以äžã®Swiftã®äŸã¯ããã®åé€æé ã®åºæ¬çãªãã¢ã³ã¹ãã¬ãŒã·ã§ã³ã§ãïŒ
let userDefaults = UserDefaults.standard
if userDefaults.bool(forKey: "hasRunBefore") == false {
// Remove Keychain items here
// Update the flag indicator
userDefaults.set(true, forKey: "hasRunBefore")
userDefaults.synchronize() // Forces the app to update UserDefaults
}
- iOSã¢ããªã±ãŒã·ã§ã³ã®ãã°ã¢ãŠãæ©èœãéçºããéã«ã¯ãã¢ã«ãŠã³ãã®ãã°ã¢ãŠãã®äžç°ãšããŠKeychainã®ããŒã¿ãåé€ãããããšã確èªããŠãã ãããããã«ããããŠãŒã¶ãŒã¯ã¢ããªã±ãŒã·ã§ã³ãã¢ã³ã€ã³ã¹ããŒã«ããåã«ã¢ã«ãŠã³ããã¯ãªã¢ããããšãã§ããŸãã
ã¢ããªã±ãŒã·ã§ã³ã®æ©èœ
åã¢ããªã«ã¯åºæã®ããŒã ãã£ã¬ã¯ããªãããããµã³ãããã¯ã¹åãããŠããŸããããã«ãããä¿è·ãããã·ã¹ãã ãªãœãŒã¹ãã·ã¹ãã ãŸãã¯ä»ã®ã¢ããªã«ãã£ãŠä¿åããããã¡ã€ã«ã«ã¢ã¯ã»ã¹ããããšã¯ã§ããŸããããããã®å¶éã¯ãTrusted BSD (MAC) Mandatory Access Control Frameworkã«ãã£ãŠã«ãŒãã«æ¡åŒµãä»ããŠå®æœããããµã³ãããã¯ã¹ããªã·ãŒïŒãŸãã¯ãããã¡ã€ã«ïŒã«ãã£ãŠå®è£ ãããŠããŸãã
äžéšã®æ©èœ/èš±å¯ã¯ãã¢ããªã®éçºè ã«ãã£ãŠèšå®ã§ããŸãïŒäŸïŒããŒã¿ä¿è·ãŸãã¯Keychainå ±æïŒããã€ã³ã¹ããŒã«åŸã«çŽæ¥å¹æãçŸããŸãããã ããä»ã®æ©èœã«ã€ããŠã¯ãã¢ããªãä¿è·ããããªãœãŒã¹ã«ã¢ã¯ã»ã¹ããããšããæåã®æã«ãŠãŒã¶ãŒã«æ瀺çã«å°ããããŸãã
ç®çã®æååãŸãã¯_䜿çšç®çã®æåå_ã¯ãä¿è·ãããããŒã¿ããªãœãŒã¹ãžã®ã¢ã¯ã»ã¹ã®èš±å¯ãèŠæ±ããéã«ãã·ã¹ãã ã®èš±å¯ãªã¯ãšã¹ãã¢ã©ãŒãã§ãŠãŒã¶ãŒã«æäŸãããã«ã¹ã¿ã ããã¹ãã§ãã
å
ã®ãœãŒã¹ã³ãŒããããå Žåã¯ãInfo.plist
ãã¡ã€ã«ã«å«ãŸããèš±å¯ã確èªã§ããŸãïŒ
- Xcodeã§ãããžã§ã¯ããéããŸãã
- ããã©ã«ãã®ãšãã£ã¿ã§
Info.plist
ãã¡ã€ã«ãèŠã€ããŠéãã"Privacy -"
ã§å§ãŸãããŒãæ€çŽ¢ããŸãã
å³ã¯ãªãã¯ããŠãShow Raw Keys/Valuesããéžæããããšã§ããã¥ãŒãçã®å€ã«åãæ¿ããããšãã§ããŸãïŒããã«ãããããšãã°"Privacy - Location When In Use Usage Description"
ãNSLocationWhenInUseUsageDescription
ã«å€ãããŸãïŒã
IPAã®ã¿ãããå ŽåïŒ
- IPAã解åããŸãã
Info.plist
ã¯Payload/<appname>.app/Info.plist
ã«ãããŸãã- å¿
èŠã«å¿ããŠå€æããŸãïŒäŸïŒ
plutil -convert xml1 Info.plist
ïŒããiOS Basic Security Testingãã®ç« ããThe Info.plist Fileãã®ã»ã¯ã·ã§ã³ã§èª¬æãããŠããããã«ã - éåžžããã¹ãŠã®ç®çã®æååInfo.plistããŒã調ã¹ãŸãããããã¯éåžžã
UsageDescription
ã§çµãããŸãïŒ
<plist version="1.0">
<dict>
<key>NSLocationWhenInUseUsageDescription</key>
<string>Your location is used to provide turn-by-turn directions to your destination.</string>
ããã€ã¹ã®æ©èœ
ããã€ã¹ã®æ©èœã¯ãApp Storeãäºææ§ã®ããããã€ã¹ã®ã¿ããªã¹ãã¢ããããã¢ããªã®ããŠã³ããŒããèš±å¯ããããã«äœ¿çšãããŸãããããã¯ãã¢ããªã®Info.plist
ãã¡ã€ã«ã®UIRequiredDeviceCapabilities
ããŒã®äžã«æå®ãããŸãã
<key>UIRequiredDeviceCapabilities</key>
<array>
<string>armv7</string>
</array>
éåžžã
armv7
ã®èœåãèŠã€ãããŸããããã¯ãã¢ããªãarmv7åœä»€ã»ããã®ã¿ã«ã³ã³ãã€ã«ãããŠããããšãæå³ããŸãããŸãã¯ã32/64ãããã®ãŠãããŒãµã«ã¢ããªã®å Žåã§ãã
ããšãã°ãã¢ããªãå®å
šã«NFCã«äŸåããŠããå ŽåïŒäŸïŒ"NFC Tag Reader"ã¢ããªïŒãiOSããã€ã¹äºææ§ãªãã¡ã¬ã³ã¹ïŒã¢ãŒã«ã€ãçïŒã«ãããšãNFCã¯iPhone 7ïŒããã³iOS 11ïŒããå©çšå¯èœã§ããéçºè
ã¯ãnfc
ããã€ã¹ã®èœåãèšå®ããããšã§ããã¹ãŠã®éäºæããã€ã¹ãé€å€ããããšãã§ããŸãã
ãšã³ã¿ã€ãã«ã¡ã³ã
ãšã³ã¿ã€ãã«ã¡ã³ãã¯ãã©ã³ã¿ã€ã èŠå ã®ãããªãã®ãè¶ ããèªèšŒãå¯èœã«ãããã¢ããªã«çœ²åãããããŒããªã¥ãŒãã¢ã§ãããšã³ã¿ã€ãã«ã¡ã³ãã¯ããžã¿ã«ã«çœ²åãããŠãããããå€æŽããããšã¯ã§ããŸããããšã³ã¿ã€ãã«ã¡ã³ãã¯ãã·ã¹ãã ã¢ããªãããŒã¢ã³ãç¹å®ã®ç¹æš©æäœãå®è¡ããããã«åºç¯ã«äœ¿çšãããŸããããã«ããã䟵害ãããã·ã¹ãã ã¢ããªãããŒã¢ã³ã«ããç¹æš©ãšã¹ã«ã¬ãŒã·ã§ã³ã®å¯èœæ§ãå€§å¹ ã«äœäžããŸãã
ããšãã°ããããã©ã«ãã®ããŒã¿ä¿è·ãæ©èœãèšå®ãããå ŽåãXcodeã®Capabilitiesã¿ãã«ç§»åããData Protectionãæå¹ã«ããå¿
èŠããããŸããããã¯ãXcodeã«ãã£ãŠ<appname>.entitlements
ãã¡ã€ã«ã«çŽæ¥æžã蟌ãŸããããã©ã«ãå€NSFileProtectionComplete
ãæã€com.apple.developer.default-data-protection
ãšã³ã¿ã€ãã«ã¡ã³ããšããŠèšè¿°ãããŸããIPAå
ã§ã¯ããããembedded.mobileprovision
å
ã«èŠã€ããããšãã§ããŸãã
<key>Entitlements</key>
<dict>
...
<key>com.apple.developer.default-data-protection</key>
<string>NSFileProtectionComplete</string>
</dict>
ä»ã®æ©èœïŒäŸïŒHealthKitïŒã«ã€ããŠã¯ããŠãŒã¶ãŒã«èš±å¯ãæ±ããå¿
èŠããããŸãããã®ããããšã³ã¿ã€ãã«ã¡ã³ããè¿œå ããã ãã§ã¯ååã§ã¯ãããŸãããã¢ããªã®Info.plist
ãã¡ã€ã«ã«ç¹å¥ãªããŒãšæååãè¿œå ããå¿
èŠããããŸãã
Objective-CãšSwiftã®åºç€
Objective-Cã¯åçãªã©ã³ã¿ã€ã ãæã£ãŠãããããiOSã§Objective-Cããã°ã©ã ãå®è¡ããããšãã¡ãã»ãŒãžã§éä¿¡ãããé¢æ°ã®ååã䜿çšããŠãå©çšå¯èœãªãã¹ãŠã®é¢æ°åã®ãªã¹ããšæ¯èŒããŠãã©ã³ã¿ã€ã ã§é¢æ°ã®ã¢ãã¬ã¹ã解決ããŸãã
æåã¯ãAppleãäœæããã¢ããªã®ã¿ãiPhoneã§å®è¡ãããä¿¡é ŒãããŠããããã圌ãã¯ãã¹ãŠã«ã¢ã¯ã»ã¹ã§ããŸãããããããAppleããµãŒãããŒãã£ã®ã¢ããªã±ãŒã·ã§ã³ãèš±å¯ãããšãAppleã¯åŒ·åãªé¢æ°ã®ããããŒãã¡ã€ã«ãåé€ããŠãéçºè ã«ãããããé ããŸããããããããéçºè ã¯ãå®å šãªãé¢æ°ã«ã¯ãããã®æªå ¬éã®é¢æ°ãå¿ èŠã§ããããšã«æ°ä»ããæªå ¬éã®é¢æ°ã®ååãå«ãã«ã¹ã¿ã ããããŒãã¡ã€ã«ãäœæããã ãã§ããã®åŒ·åãªé ãé¢æ°ãåŒã³åºãããšãã§ããŸãããå®éãAppleã¯ã¢ããªãå ¬éããåã«ããã®ã¢ããªããããã®çŠæ¢ãããé¢æ°ã®ãããããåŒã³åºããŠãããã©ããããã§ãã¯ããŸãã
ãããŠãSwiftãç»å ŽããŸãããSwiftã¯éçã«ãã€ã³ããããŠããããïŒObjective-Cã®ããã«ã©ã³ã¿ã€ã ã§é¢æ°ã®ã¢ãã¬ã¹ã解決ããªãïŒãSwiftããã°ã©ã ãè¡ãåŒã³åºããéçãªã³ãŒã解æã§ããç°¡åã«ãã§ãã¯ã§ããŸãã
ããã€ã¹ç®¡ç
iOSããŒãžã§ã³6以éãããã€ã¹ç®¡çæ©èœã®çµã¿èŸŒã¿ãµããŒãããããçµç¹ãäŒæ¥ã®Appleããã€ã¹ãå¶åŸ¡ã§ãã现ããå¶åŸ¡ãå¯èœã§ãã
ç»é²ã¯ããŠãŒã¶ãŒããšãŒãžã§ã³ããã€ã³ã¹ããŒã«ããŠäŒæ¥ã®ã¢ããªã«ã¢ã¯ã»ã¹ããããšã§éå§ã§ããŸãããã®å Žåãããã€ã¹ã¯éåžžããŠãŒã¶ãŒã®ææã§ãã
ãŸãã¯ãäŒæ¥ã¯è³Œå
¥ããããã€ã¹ã®ã·ãªã¢ã«çªå·ã泚æIDãæå®ãããããã®ããã€ã¹ã«ã€ã³ã¹ããŒã«ããMDMãããã¡ã€ã«ãæå®ããããšãã§ããŸãããã ããAppleã¯ãã®æ¹æ³ã§ç¹å®ã®ããã€ã¹ã2åç»é²ããããšãèš±å¯ããŠããŸãããæåã®ãããã¡ã€ã«ãåé€ããããšãå¥ã®ãããã¡ã€ã«ãã€ã³ã¹ããŒã«ããããã«ãŠãŒã¶ãŒã®åæãå¿
èŠã§ãã
ãŠãŒã¶ãŒã¯ãèšå® --> äžè¬ --> _ãããã¡ã€ã«ãšããã€ã¹ç®¡ç_ã§ã€ã³ã¹ããŒã«ãããããªã·ãŒã確èªã§ããŸãã
ãããã®MDMããªã·ãŒã¯ä»ã®ã¢ããªã±ãŒã·ã§ã³ããã§ãã¯ããã³å¶éãããããããé«ãç¹æš©ã§å®è¡ãããŸãã
MDMããªã·ãŒã¯ããŠãŒã¶ãŒã«ãã¹ã³ãŒãã®èšå®ã匷å¶ããããšãã§ããŸãããã¹ã¯ãŒãã®è€éãã«ã¯æå°ã®èŠä»¶ããããŸãã
ãããã¡ã€ã«ã¯ããã€ã¹IDã«çŽã¥ããããMDMãµãŒããŒã«ãã£ãŠçœ²åãããæå·åãããæ¹ããã§ããªãããã«ãªã£ãŠããŸãããããã¯åé€ããããšãã§ãããåé€ãããšãã¹ãŠã®äŒæ¥ããŒã¿ã倱ãããŸãã
MDMãããã¡ã€ã«ã«ãããXåã®ãã¹ã¯ãŒã誀ããããå Žåã«ã¯ãã¹ãŠã®ããŒã¿ãæ¶å»ããããšãã§ããŸãããŸãã管çè
ã¯MDMã€ã³ã¿ãŒãã§ãŒã¹ãä»ããŠãã€ã§ãiPhoneããªã¢ãŒãã¯ã€ãããããšãã§ããŸãã
MDMãšãŒãžã§ã³ãã¯ãããã€ã¹ã®è±çã®å¯èœæ§ããã§ãã¯ããŸãããªããªããããã¯iPhoneã«ãšã£ãŠéåžžã«å±éºãªç¶æ ã ããã§ãã
âïž HackTricks Cloud âïž -ðŠ Twitter ðŠ - ðïž Twitch ðïž - ð¥ Youtube ð¥
-
ãµã€ããŒã»ãã¥ãªãã£äŒæ¥ã§åããŠããŸããïŒ HackTricksã§ããªãã®äŒç€Ÿã宣äŒãããã§ããïŒãŸãã¯ãPEASSã®ææ°ããŒãžã§ã³ãHackTricksã®PDFãããŠã³ããŒããããã§ããïŒ SUBSCRIPTION PLANSããã§ãã¯ããŠãã ããïŒ
-
The PEASS FamilyãèŠã€ããŠãã ãããç¬å çãªNFTã®ã³ã¬ã¯ã·ã§ã³ã§ãã
-
å ¬åŒã®PEASSïŒHackTricksã°ããºãæã«å ¥ããŸãããã
-
ð¬ Discordã°ã«ãŒããŸãã¯Telegramã°ã«ãŒãã«åå ããããTwitter ðŠ@carlospolopmããã©ããŒããŠãã ããã
-
ãããã³ã°ã®ããªãã¯ãå ±æããã«ã¯ãhacktricksãªããžããªãšhacktricks-cloudãªããžããªã«PRãæåºããŠãã ããã