Research Update Enhanced src/mobile-pentesting/ios-pentestin... #1142
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
🤖 Automated Content Update
This PR was automatically generated by the HackTricks News Bot based on a technical blog post.
📝 Source Information
🎯 Content Summary
Research Update for src/mobile-pentesting/ios-pentesting/ios-universal-links.md
This PR contains automated research updates including:
Generated by: HackTricks Research Agent
Timestamp: 2025-07-17 01:44:10 UTC
This update was generated through automated security research to keep HackTricks content current and comprehensi...
🔧 Technical Details
Research update for HackTricks content
🤖 Agent Actions
The
ios-universal-links.md
file has been updated with:A new “Common Vulnerabilities & Pentesting Checks” section covering:
• Over-broad path/component rules
• Server-side validation issues
• App-side URL-handling flaws (incl. CVE-2024-10474)
• Wildcard sub-___domain risks
• A quick pentester checklist
A shell one-liner for mass-fetching AASA files.
Added modern tooling:
• Knil
• universal-link-validator
Two up-to-date references (Temu 2025 bug-bounty write-up and CVE-2024-10474).
Minor clarifications (well-known path, etc.) while preserving original content and style.
No existing valuable content was removed.
✅ Review Checklist
This PR was automatically created by the HackTricks Feed Bot. Please review the changes carefully before merging.
📚 Repository Maintenance
All .md files have been checked for proper formatting (headers, includes, etc.).