Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Charlie Miller to reveal 20 zero day security holes in Mac OS X
Engadget ^ | 19 Mar 2010 | Darren Murph

Posted on 03/25/2010 1:15:01 PM PDT by for-q-clinton

Say, Charles -- it's been awhile! But we're pleased as punch to see that you're back to your old ways, poking around within OS X's mainframe just looking for ways to remotely control the system, snag credit card data and download a few interoffice love letters that are carefully stashed 15 folders down within 'Documents.' The famed Apple security expert is planning yet another slam on OS X at CanSecWest, where he'll reveal no fewer than 20 zero day security holes within OS X. According to Miller, "OS X has a large attack surface consisting of open source components, closed source third-party components and closed source Apple components; bugs in any of these types of components can lead to remote compromise." He also goes on to reemphasize something he's been screaming for years: "Mac OS X is like living in a farmhouse in the country with no locks, and Windows is living in a house with bars on the windows in the bad part of town." In other words, Apple users are "safer" (due to the lack of work that goes into hacking them), "but less secure." So, is this a weird way of applying for a security job in Cupertino, or what?


TOPICS: Miscellaneous; News/Current Events
KEYWORDS: exploit; itard; mac; osx; security
Navigation: use the links below to view more comments.
first 1-2021-29 next last
This should be interesting. But I thought Mac was unbreakable. If Charlie is correct and able to exploit a Mac then I guess what I've always said is correct...it's just not big enough to warrant the hackers to really put a focus on it. I love his analogy.

"Mac OS X is like living in a farmhouse in the country with no locks, and Windows is living in a house with bars on the windows in the bad part of town."

1 posted on 03/25/2010 1:15:02 PM PDT by for-q-clinton
[ Post Reply | Private Reply | View Replies]

To: ShadowAce

ping


2 posted on 03/25/2010 1:16:00 PM PDT by bamahead (Few men desire liberty; most men wish only for a just master. -- Sallust)
[ Post Reply | Private Reply | To 1 | View Replies]

To: for-q-clinton

according to a senior guy at Trend there are ~100,000 new malware signatures created every day.


3 posted on 03/25/2010 1:16:54 PM PDT by driftdiver (I could eat it raw, but why do that when I have a fire.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: driftdiver

I’m going to get the popcorn...this *should* be an interesting thread. Unless the Mac blinders are put on when anything bad about Mac is mentioned.


4 posted on 03/25/2010 1:19:05 PM PDT by for-q-clinton (If at first you don't succeed keep on sucking until you do succeed)
[ Post Reply | Private Reply | To 3 | View Replies]

To: for-q-clinton

I usually get flamed on these kinds of threads. No offense but I hope you’re the target for the hate and vitriol this time.


5 posted on 03/25/2010 1:24:35 PM PDT by driftdiver (I could eat it raw, but why do that when I have a fire.)
[ Post Reply | Private Reply | To 4 | View Replies]

To: driftdiver

I thought this would take off quicker than this. I may need to go find shadowace’s ping list and ping some of them over hear. I need some vitriol in this thread!


6 posted on 03/25/2010 1:28:46 PM PDT by for-q-clinton (If at first you don't succeed keep on sucking until you do succeed)
[ Post Reply | Private Reply | To 5 | View Replies]

To: for-q-clinton

its early in the day, once they get up we should see more activity.


7 posted on 03/25/2010 1:30:19 PM PDT by driftdiver (I could eat it raw, but why do that when I have a fire.)
[ Post Reply | Private Reply | To 6 | View Replies]

To: rdb3; Calvinist_Dark_Lord; GodGunsandGuts; CyberCowboy777; Salo; Bobsat; JosephW; ...

8 posted on 03/25/2010 1:32:37 PM PDT by ShadowAce (Linux -- The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 1 | View Replies]

To: driftdiver
its early in the day, once they get up we should see more activity....

LOL! Are you implying that mom's basement is dark and cozy?

9 posted on 03/25/2010 1:32:50 PM PDT by r9etb
[ Post Reply | Private Reply | To 7 | View Replies]

To: rdb3; Calvinist_Dark_Lord; GodGunsandGuts; CyberCowboy777; Salo; Bobsat; JosephW; zeugma

ping


10 posted on 03/25/2010 1:33:22 PM PDT by for-q-clinton (If at first you don't succeed keep on sucking until you do succeed)
[ Post Reply | Private Reply | To 2 | View Replies]

To: r9etb
LOL! Are you implying that mom's basement is dark and cozy?

Well.... not really, I mean most have moved on to their very own apartments.

11 posted on 03/25/2010 1:35:51 PM PDT by driftdiver (I could eat it raw, but why do that when I have a fire.)
[ Post Reply | Private Reply | To 9 | View Replies]

To: driftdiver

Wow as slow as this thread is starting I guess Mac really does have a very tiny userbase.


12 posted on 03/25/2010 1:37:39 PM PDT by for-q-clinton (If at first you don't succeed keep on sucking until you do succeed)
[ Post Reply | Private Reply | To 11 | View Replies]

To: r9etb
darn, thats what I get for mult-tasking. I strikethru when I should italicize.
13 posted on 03/25/2010 1:37:46 PM PDT by driftdiver (I could eat it raw, but why do that when I have a fire.)
[ Post Reply | Private Reply | To 9 | View Replies]

To: for-q-clinton

Either that or they are hiding from the reality. I bet the standard “mac hasn’t ever had a self replicating virus” to be within the first 5 mac posts though.


14 posted on 03/25/2010 1:42:29 PM PDT by driftdiver (I could eat it raw, but why do that when I have a fire.)
[ Post Reply | Private Reply | To 12 | View Replies]

To: driftdiver

I think I found one brave enough to post, but it’s in the other apple exploit thread:
http://www.freerepublic.com/focus/news/2479781/posts?page=13#13


15 posted on 03/25/2010 2:05:08 PM PDT by for-q-clinton (If at first you don't succeed keep on sucking until you do succeed)
[ Post Reply | Private Reply | To 14 | View Replies]

To: for-q-clinton

I don’t see how malware can install itself on a Mac unless someone intentionally installs it by providing their user password. The Mac is only “breakable” if someone intentionally installs a piece of malware. Kind of a dumb thing to do.


16 posted on 03/25/2010 2:10:21 PM PDT by Theo (May Rome decrease and Christ increase.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: for-q-clinton

Feeling happy to be using Chrome.


17 posted on 03/25/2010 2:27:24 PM PDT by nickcarraway
[ Post Reply | Private Reply | To 1 | View Replies]

To: nickcarraway

Don’t be so sure of that. Someone posted that the Chrome really wasn’t tested because they applied a last minute patch that made it unfair to test against the others.

And someone said it is based on the same webkit as Safari. I really don’t know, but the point is EVERYONE is vulnerable and you’ll want to use multiple layers of security and common sense.


18 posted on 03/25/2010 2:50:29 PM PDT by for-q-clinton (If at first you don't succeed keep on sucking until you do succeed)
[ Post Reply | Private Reply | To 17 | View Replies]

To: for-q-clinton; Swordmaker
Wow as slow as this thread is starting I guess Mac really does have a very tiny userbase.

Let me help to get the party started...

19 posted on 03/25/2010 3:00:42 PM PDT by politicket (1 1/2 million attended Obama's coronation - only 14 missed work!)
[ Post Reply | Private Reply | To 12 | View Replies]

To: politicket

so far crickets.

I guess the Mac fans can’t defend this so they just stay away instead of admitting they were wrong in the past.

Oh well. Just need to bookmark this thread so it can be posted to any mac zealot that claims they are super secure and haven’t been exploited.


20 posted on 03/25/2010 3:50:36 PM PDT by for-q-clinton (If at first you don't succeed keep on sucking until you do succeed)
[ Post Reply | Private Reply | To 19 | View Replies]


Navigation: use the links below to view more comments.
first 1-2021-29 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson