3 ms·
What exactly attack vectors you think are possible against macOS without SIP but not possible against Linux?
by slonopotamus 3y ago
What exactly attack vectors you think are possible against macOS without SIP but not possible against Linux?
- radlad 3y agoI think the argument is that file permissions may not be applied as rigorously, with the assumption that SIP is in effect.
- slonopotamus 3y agoSIP won't save you from wrong file permissions. And SIP doesn't defend you from editing files in /bin. They are guarded by the fact that root filesystem is mounted read-only.
- saagarjha 3y agoEntitlement stealing, for example.
- Klonoar 3y agoWith SIP enabled it’s not possible to load arbitrary kernel extensions, for one - they must be signed.