Get a Pentest and security assessment of your IT network.

Cyber Security

Signature Validation Bug Let Malware Bypass Several Mac Security Products

A years-old vulnerability has been discovered in the way several security products for Mac implement Apple’s code-signing API that could make it easier for malicious programs to bypass the security check. The vulnerability is not a vulnerability in MacOS itself but a flaw in how third-party security tools implemented Apple’s Code Signing API when dealing with Mac’s executable files called Universal/Fat files. The exploitation of the vulnerability requires an attacker to use Universal or Fat binary format, which contains several Mach-O files (executable, dyld, or bundle)

Source: https://thehackernews.com/2018/06/apple-mac-code-signing.html

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security