mirror of
https://github.com/JGoyd/ams-failopen.git
synced 2026-02-12 12:53:01 +00:00
Update README.md
This commit is contained in:
committed by
GitHub
parent
45d9e1d5a5
commit
c966749cf7
@@ -101,3 +101,7 @@ CVSS Score (Preliminary): 9.1 Critical
|
||||
Vector: CVSS:3.1/AV\:N/AC\:L/PR\:N/UI\:N/S\:C/C\:L/I\:H/A\:N
|
||||
|
||||
---
|
||||
|
||||
## Why This Matters
|
||||
|
||||
Apple devices rely on signed requests for trust — from the App Store to media playback. If those signatures vanish whenever a config file can’t load, attackers on a Wi-Fi network can strip away integrity and inject or replay traffic without the user knowing. A single dropped Bag request means Apple’s security guarantees fail open.
|
||||
|
||||
Reference in New Issue
Block a user