Skip to content

v1.1

Choose a tag to compare

@Petitoto Petitoto released this 16 Sep 23:56
· 90 commits to main since this release

Core changes

  • sbxMemory is now a dataview-like object covering the whole sandbox memory cage (1 TB).
  • Each script now runs in a global JavaScript context (using indirect eval instead of the previous custom __EVAL()). Introduced run() in main.js to run all included scripts in the same context at once.
  • Synchronous logging is now used on the testing webpage via WebSockets (replacing postMessage()). Added server.py to automatically serve files and the websocket server.

New features

  • Added rwx/helpers/partitionalloc-chrome.js to retrieve Chrome DLL and sandbox base addresses from PartitionAlloc metadata.

New exploits

Fixes

  • General improvements and fixes to enhance compatibility across versions and exploits.

Full Changelog: v1.0...v1.1