> then this would be rather serious indeed for a lot of HN users
It would be even more serious for the Usenix Security conference that posted the paper!
It would be even more serious for the Usenix Security conference that posted the paper!
I wouldn’t even know where to start in looking at that PDF for some sort of iOS exploit payload, my guess is it would be extremely difficult to find (if it exists).
There is also your non-reproducible report that the PDF was incorrectly loaded as an Apple Wallet pass, which would require a web server MIME type of:
application/vnd.apple.pkpass