6 din 6
6
(IN)Securitate
  [ Ignoră ]   [ # 76 ]
RankRankRank
Member
Din: Pitesti
Macuser din: 26.01.08

macOS High Sierra’s App Store System Preferences Can Be Unlocked With Any Password https://www.macrumors.com/2018/01/10/macos-high-sierra-app-store-password-bug/
Fruitfly Malware Creator Indicted for Spying on Windows/Mac Users for 13 Years http://news.softpedia.com/news/fruitfly-malware-creator-indicted-for-spying-on-windows-mac-users-for-13-years-519331.shtml

 Semnătură 

iMac G4
iBook G3

Profil
 
  [ Ignoră ]   [ # 77 ]
Avatar
RankRankRankRank
Sr. Member
Din: București
Macuser din: 23.03.09

Primul UEFI rootkit la insectar:
https://www.welivesecurity.com/2018/09/27/lojax-first-uefi-rootkit-found-wild-courtesy-sednit-group/

Made in CCCP, prietenii știu de ce.

Poate vrem totuși Mac cu T2.

 Semnătură 

Mac Mini Intel MGEN2LL/A, MC815LL/A - Sierra, MC239LL/A - ESXI 5.5, MB138LL/A Lion
Power Mac G4 M8787LL/A OpenBSD/macppc
Power Mac G5 Leopard
AppleTV2, iPhone 6+/64, iPhone 4, iPhone 2G

Profil
 
  [ Ignoră ]   [ # 78 ]
Avatar
RankRankRankRank
Sr. Member
Din: București
Macuser din: 23.03.09

https://www.bloomberg.com/news/features/2018-10-04/the-big-hack-how-china-used-a-tiny-chip-to-infiltrate-america-s-top-companies

 Semnătură 

Mac Mini Intel MGEN2LL/A, MC815LL/A - Sierra, MC239LL/A - ESXI 5.5, MB138LL/A Lion
Power Mac G4 M8787LL/A OpenBSD/macppc
Power Mac G5 Leopard
AppleTV2, iPhone 6+/64, iPhone 4, iPhone 2G

Profil
 
  [ Ignoră ]   [ # 79 ]
Avatar
RankRankRankRank
Sr. Member
Din: București
Macuser din: 23.03.09

TL;DR la link-ul de mai sus:

Unitatea specializată în hack-uri hardware a armatei chineze infiltrează 4 fabrici din China care produc plăci de bază pentru Supermicro.
Țintit, sunt alterate plăci de bază care ajung la Amazon și la Apple, printre alte 30 de companii americane de top.

La ce folosește Apple serverele Supermicro respective ?

This project, known internally as Ledbelly, was designed to make the search function for Apple’s voice assistant, Siri, faster, according to the three senior Apple insiders.

Zău, citiți articolul, e demențial.

In one case, the malicious chips were thin enough that they’d been embedded between the layers of fiberglass onto which the other components were attached

The illicit chips could do all this because they were connected to the baseboard management controller, a kind of superchip that administrators use to remotely log in to problematic servers, giving them access to the most sensitive code even on machines that have crashed or are turned off.

 Semnătură 

Mac Mini Intel MGEN2LL/A, MC815LL/A - Sierra, MC239LL/A - ESXI 5.5, MB138LL/A Lion
Power Mac G4 M8787LL/A OpenBSD/macppc
Power Mac G5 Leopard
AppleTV2, iPhone 6+/64, iPhone 4, iPhone 2G

Profil
 
  [ Ignoră ]   [ # 80 ]
RankRankRank
Member
Din: Pitesti
Macuser din: 26.01.08

Security Code AutoFill Flaw Exposes iOS, macOS Users to Banking Fraud Attacks
https://news.softpedia.com/news/security-code-autofill-flaw-exposes-ios-macos-users-to-banking-fraud-attacks-523543.shtml

Although Apple patched the Security Code AutoFill feature which automatically displays one-time passcodes received by SMS as AutoFill suggestions, the mechanism allowing bad actors to exploit the feature is still there.

 Semnătură 

iMac G4
iBook G3

Profil
 
  [ Ignoră ]   [ # 81 ]
Avatar
RankRank
Jr. Member
Din: Bucuresti
Macuser din: 12.06.10

https://lgtm.com/blog/apple_xnu_icmp_error_CVE-2018-4407

Kernel remote code execution vulnerability, allowing reboots of MacOS or iOS devices on the same network.

 Semnătură 



Profil
 
  [ Ignoră ]   [ # 82 ]
Avatar
RankRankRankRank
Sr. Member
Din: București
Macuser din: 23.03.09

Cum papucii lui Hercule să rutezi doi ani jumate traficul dintre Washington, DC și Los Angeles, CA prin China și nimeni nu vede ?
Pe bune, doi ani jumate ?

https://arstechnica.com/information-technology/2018/11/strange-snafu-misroutes-domestic-us-internet-traffic-through-china-telecom/

 Semnătură 

Mac Mini Intel MGEN2LL/A, MC815LL/A - Sierra, MC239LL/A - ESXI 5.5, MB138LL/A Lion
Power Mac G4 M8787LL/A OpenBSD/macppc
Power Mac G5 Leopard
AppleTV2, iPhone 6+/64, iPhone 4, iPhone 2G

Profil
 
   
6 din 6
6