BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//conference.c3w.at//bsidesvienna-0x7ea//LNXRNX
BEGIN:VTIMEZONE
TZID:Europe/Vienna
BEGIN:STANDARD
DTSTART:20001029T030000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=10
TZNAME:CET
TZOFFSETFROM:+0200
TZOFFSETTO:+0100
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20000326T020000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=3
TZNAME:CEST
TZOFFSETFROM:+0100
TZOFFSETTO:+0200
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
UID:pretalx-bsidesvienna-0x7ea-XX8GYX@cfp.bsidesvienna.at
DTSTART;TZID=Europe/Vienna:20260627T150500
DTEND;TZID=Europe/Vienna:20260627T160500
DESCRIPTION:This talk examines how established macOS exploitation technique
 s can be applied to a largely overlooked attack surface: audio plugin inst
 allers. By analyzing installers from multiple major vendors\, I demonstrat
 e how common design and implementation flaws can be leveraged to achieve l
 ocal privilege escalation. The presentation covers nine CVEs across five d
 ifferent vendors\, highlighting recurring vulnerability patterns\, exploit
 ation strategies\, and the security implications for both developers and e
 nd users. Attendees will gain insight into the intersection of macOS insta
 ller security and the audio software ecosystem\, along with practical less
 ons for identifying and mitigating similar issues.
DTSTAMP:20260702T214255Z
LOCATION:Kreativraum 3.1 (Track 3 - Women4Cyber/Rookie)
SUMMARY:XPC Client Validation? Music to my ears! - Florian Haselsteiner
URL:https://cfp.bsidesvienna.at/bsidesvienna-0x7ea/talk/XX8GYX/
END:VEVENT
END:VCALENDAR
