Security researcher spots a maOS malware vulnerability that's not yet patched

Watch out for this potential vulnerability if you're opening up apps on a Mac: a security researcher has worked out a way that malware makers can bypass the macOS Gatekeeper protections to run malicious code.

Filippo Cavallarin details the security hole on his website and explains how it gets around Gatekeeper – the feature that prompts users to confirm they want to install applications from outside the Mac App Store.

The key is in the way macOS handles network shares and treats them as safe: the system could be tricked into opening a zip file archive that contains malicious code. In theory, would-be hackers gets to run whatever code they like.

While the vulnerability would still require someone to open a zip file and trust the files it contains in order to work, it does seem to be a valid way of getting around the protections that Gatekeeper puts in place.

90-day deadline

Cavallarin says he told Apple about the issue 90 days ago and was assured it had been dealt with. However, the latest macOS 10.14.5 remains vulnerable, apparently.

"This issue was supposed to be addressed, according to the vendor, on May 15th 2019 but Apple started dropping my emails," says Cavallarin. "Since Apple is aware of my 90 days disclosure deadline, I make this information public."

As yet Apple hasn't responded to Cavallarin's report, and so we don't know when the vulnerability is going to get patched up (or if it works in exactly the way Cavallarin has claimed in his report).

It's a reminder to treat all incoming files with suspicion, whatever operating system you're running – especially if they have the ability to run code on your computer.

Via AppleInsider



from TechRadar - All the latest technology news http://bit.ly/2VS6jXo
Share:

Related Posts:

No comments:

Post a Comment

Categories

Rove Reviews Youtube Channel

  1. Subscribe to our youtube channel
  2. Like our videos and share them too.
  3. Our youtube channel name Rove reviews.

WITNUX

This website is made by Witnux LLC. This website provides you with all the news feeds related to technology from large tech media industries like GSM Arena, NDTV, Gadgets 360, Firstpost and many other such ates altogether at technical depicts so that you need not go to several sites to view their post provide you advantantage of time.

From the developer
Tanzeel Sarwar

OUR OTHER NETWORKS

OUR YOUTUBE CHANNEL

ROVE REVIEWS PLEASE SUBSCRIBE

OUR FACEBOOK PAGE

The Rove Reviews

Support

Trying our best to provide you the best DONATE or SUPPORTour site Contact me with details how are you gonna help us