26.09.2017 14:10 Uhr, Quelle: 9to5Mac

Major macOS (incl. High Sierra) Keychain password extraction vulnerability to be addressed by Apple in update [Video]

A macOS vulnerability discovered by security researcher Patrick Wardle allows any app – signed or unsigned – to extract plain text passwords from Keychain. Wardle demonstrated the exploit with a proof of concept app, seen in the video below. The vulnerability is a huge one, because Keychain data is secured by 256-bit AES encryption, which should make it virtually uncrackable – and because the bug affects all versions of macOS, including High Sierra … more…

Weiterlesen bei 9to5Mac

Digg del.icio.us Facebook email MySpace Technorati Twitter

JustMac.info © Thomas Lohner - Impressum - Datenschutz