Home | VerSprite Resources
View VerSprite's Compliance Advisory Services →
Download Service Listings
XPC Services API
NordVPN for MacOS suffers from a root privilege escalation vulnerability. The vulnerability stems from its privileged helper tool’s implemented XPC service. This XPC service is responsible for receiving and processing new openvpn connection requests from the main application.
Learn more
VerSprite
In the final installment of the Frida Engage blog series, we will demonstrate how to use Frida for hooking and inspecting Apple’s NSXPC API using the CleanMyMac 3 application as our guinea pig.
ZenMate VPN for macOS suffers from a type confusion vulnerability within the com.zenmate.chron-xpc LaunchDaemon component. The LaunchDaemon implements an XPC service that uses an insecure XPC API for accessing data from an inbound XPC message. T
The PureVPN for MacOs’s HelperTool LaunchDaemon implements an unprotected XPC service that can be abused to execute system commands as root.
Back to Resources
We are an international squad of professionals working as one.
Email
Phone