Get a Pentest and security assessment of your IT network.

News

Apple OS X Sandbox Predefined Profiles Bypass

The use of Apple events is possible within the several default profiles as no-network, no-internet (kSBXProfileNoNetwork) and others. Some developer tools restrict Apple events by default while defining the sandbox. A compromised application hypothetically restricted by the use of the no-Network profile may have access to network resources. The vulnerability was discovered and researched by Anibal Sacco and Matias Eissler from Core Security Technologies. Vulnerable packages include Mac OS X 10.7.x, 10.6.x and 10.4.x.”]

Source: https://www.coresecurity.com/core-labs/advisories/apple-osx-sandbox-bypass

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

SEA has stolen invoices that shows Microsoft charges FBI for user data

News

Greek police arrested a man running the BTC-e Bitcoin exchange to launder more than US$4bn worth of the Bitcoin