6 ms·
Ex-NSA hacker drops macOS High Sierra zero-day hours before launch
- dovdovdov 9y agoIt's almost like deliberately running malicious code is bad for your PC.
- dvhh 9y agoOr someone you lend your PC to for a few minutes
- jlgaddis 9y ago... so long as you give them administrative privileges.
- dpark 9y agoIs loaning your laptop to nefarious characters something you do frequently? Pretty much the only time I've ever "loaned" my laptop to someone, it was a co-worker who used it for a presentation, projected on the wall, with me and a room full of other colleagues watching everything they do. When it's not a co-worker presenting, it's my wife.
- mfukar 9y agoAre you implying you (or anybody) can somehow verify the intentions of any macOS app? You should publish.
- dpark 9y agoI can verify that running random executables you receive in email is a bad idea, as is downloading apps from untrusted sources. I don't think this is groundbreaking or worthy of publishing in a reputable journal.
- deleted 9y ago[deleted]
- mfukar 9y agoYou've missed the point. "Trusted", signed applications can do the same things this PoC did.
- breakingcups 9y agoRecently CCleaner was hacked to distribute infected versions through it's updating mechanism. It sure would be nice if gaining a foothold on my computer didn't instantly mean gaining complete control over al my credentials.
- CompuHacker 9y agoEncrypt your credentials at rest and aggressively purge them from memory when any are decrypted.
- FabHK 9y agoThe idea (and assumption) was that the macOS Keychain app does encrypt my credentials at rest (and allows access only after express user permission).
- dpark 9y agoFor sure, Apple should fix this bug, and presumably they will. Some basic app hygiene greatly reduces the risk though.
- dangerface 9y agoThats a straw man argument the comment you are replying to specifically said "verify the intentions of any macOS app". If you disagree with his argument perhaps you could give an actual counter argument?
- dpark 9y agoThat comment itself was a straw man. Obviously the answer is no, no one can solve the halting problem and verify the intentions of any arbitrary app.
- detaro 9y agoIt's almost like malicious code can come from trusted or unexpected sources. (Yes, the examples of infection paths in the article aren't very creative, that doesn't mean local exploits are irrelevant)
- miles 9y agoI wonder what aspect of this is new or novel? It's been possible to dump passwords from the current user's Login Keychain via "security dump-keychain -d login.keychain" or "sudo keychaindump" for a long time: https://tinyapps.org/blog/mac/201211030700_recover_keychain_passwords.html https://tinyapps.org/blog/mac/201211030700_recover_keychain_...