• Download the Constitution of Pakistan
  • Advertise
Thursday, May 8, 2025
  • Login
NEWSLETTER
ECONOMY
  • Business
  • Education
  • Entertainment
  • Finance
  • Health
  • Life & Style
  • Politics
  • Sports
  • Technology
No Result
View All Result
  • Business
  • Education
  • Entertainment
  • Finance
  • Health
  • Life & Style
  • Politics
  • Sports
  • Technology
No Result
View All Result
ECONOMY
No Result
View All Result
Home Business

Mac’OS software bug let malware through security defenses

by Web Desk
April 27, 2021
in Business, Economy, Education, Mobiles, New, Social Media, Technology, World
Reading Time: 2 mins read
0
MacOS
Share on FacebookShare on TwitterLinkedinWhatsapp

Apple has spent years reinforcing macOS with new security features to make it tougher for malware to break in. But a newly discovered vulnerability broke through most of macOS’ newer security protections with a double-click of a malicious app, a feat not meant to be allowed under Apple’s watch.

Worse, evidence shows a notorious family of Mac malware had been exploiting this vulnerability for months before it was subsequently patched by Apple this week.

Over the years, Macs have adapted to catch the most common types of malware by putting technical obstacles in their way. Indeed, macOS flags potentially malicious apps masquerading as documents that have been downloaded from the internet. And if macOS hasn’t reviewed the app — a process Apple calls notarization — or if it doesn’t recognize its developer, the app won’t be allowed to run without user intervention.

But security researcher Cedric Owens said the bug he found in mid-March bypasses those checks and allows a malicious app to run.

Owens told TechCrunch that the bug allowed him to build a potentially malicious app to look like a harmless document, which when opened bypasses macOS’ built-in defenses when opened.

“All the user would need to do is a double click — and no macOS prompts or warnings are generated,” he stated. Owens built a proof-of-concept app disguised as a harmless document that exploits the bug to launch the Calculator app, a way of demonstrating that the bug works without dropping malware. But a malicious attacker could exploit this vulnerability to remotely access a user’s sensitive data simply by tricking a victim into opening a spoofed document, he explained.

GIF showing a proof of concept app opening uninhibited on an unpatched macOS computer.

Fearing the potential for attackers to abuse this vulnerability, Owens reported the bug to Apple.

Apple told TechCrunch it fixed the bug in macOS 11.3. Apple also patched earlier macOS versions to prevent abuse, and pushed out updated rules to XProtect, macOS’ in-built anti-malware engine, to block malware from exploiting the vulnerability.

Tags: AppleMacMacOSMalware
Web Desk

Web Desk

Related Posts

IMF and PAK

IMF to Approve $2.3B for Pakistan Amid Mixed Fiscal Outlook

by Anum Arif
May 8, 2025
0

Washington, 08 May 2025 — The International Monetary Fund (IMF) Executive Board is set to convene tomorrow in Washington, where...

PSX crash

PSX Crashes Over 6,500 Points Amid India-Pakistan Tensions

by Anum Arif
May 8, 2025
0

Karachi, 08 May 2025 — The Pakistan Stock Exchange (PSX) experienced one of its darkest days on Wednesday, suffering the...

Reduction in Power

CPPA-G Forecasts Power Price Drop for FY 2025-26

by Anum Arif
May 8, 2025
0

Islamabad, 08 May 2025 — The Central Power Purchasing Agency-Guaranteed (CPPA-G) has projected a reduction in the Power Purchase Price...

British Councils cancels papers

British Council Cancels Exams in Lahore Over Security Fears

by Anum Arif
May 8, 2025
0

LAHORE – May 8, 2025:The British Council has cancelled all Thursday afternoon exams scheduled in Lahore, including GCE O-Level and...

PSX PSX

PSX Recovers After Historic Plunge Amid Indo-Pak Tensions

by Anum Arif
May 7, 2025
0

May 07, 2025 The Pakistan Stock Exchange (PSX) experienced a volatile trading session on Wednesday, following a dramatic plunge of...

Jets

CAC Stock Soars After PAF Downs Indian Rafales

by Anum Arif
May 7, 2025
0

Shares of China’s Chengdu Aircraft Corporation (CAC), the manufacturer of the JF-17 and J-10C fighter jets, surged more than 17%...

Next Post
Tesla

Tesla views bitcoin as an important financial tool

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

About Us

Economy.pk is a source of economic, political, business, finance, health and sports updates.

Important Categories

  • Business
  • Education
  • Entertainment
  • Finance
  • Health
  • Life & Style
  • Politics
  • Sports
  • Technology

Social Media

  • Facebook
  • Instagram
  • Twitter
  • Linkedin
  • YouTube
  • Linkedin
  • TikTok
  • WhatsApp
  • About
  • Advertise
  • Careers
  • Contact

© 2024 Economy.pk - Web Development by Digital Otters

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Business
  • Education
  • Entertainment
  • Finance
  • Health
  • Life & Style
  • Politics
  • Sports
  • Technology

© 2024 Economy.pk - Web Development by Digital Otters