News:

So the widespread use of emojis these days kinda makes forum smileys pointless, yeah?

Main Menu

OS X on the radar of exploit-developers

Started by iago, February 25, 2006, 03:19:40 AM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

iago

http://isc.sans.org/diary.php?storyid=1145

Getting scary! 

Of course:
QuoteThe recent news of these vulnerabilities in the OS is getting plenty of attention.  [...]  I think there is some lazy journalism, and sensationalism afoot.  Yet, like any FUD-storm there is usually some kernel of truth. 

Ergot

Mmm I read about two of those vulnerabilities, both seem rather hard to pull off though.
Quote from: Newby on February 26, 2006, 12:16:58 AM
Who gives a damn? I fuck sheep all the time.
Quote from: rabbit on December 11, 2005, 01:05:35 PM
And yes, male both ends.  There are a couple lesbians that need a two-ended dildo...My router just refuses to wear a strap-on.
(05:55:03) JoE ThE oDD: omfg good job i got a boner thinkin bout them chinese bitches
(17:54:15) Sidoh: I love cosmetology

deadly7

Yeah.  They don't seem very easy to pull off.

There's an exploit I've seen with Safari that allows a user to basically "rootkit" you, for the lack of a better word.  Basically the person gains complete access to your computer just because you visited a website via Safari.
[17:42:21.609] <Ergot> Kutsuju you're girlfrieds pussy must be a 403 error for you
[17:42:25.585] <Ergot> FORBIDDEN

on IRC playing T&T++
<iago> He is unarmed
<Hitmen> he has no arms?!

on AIM with a drunk mythix:
(00:50:05) Mythix: Deadly
(00:50:11) Mythix: I'm going to fuck that red dot out of your head.
(00:50:15) Mythix: with my nine

Warrior

It's going to get pummeled by exploits, think about it: Apple has never had experience with being "under the scope" of hackers so to say. It should be interesting to see how it fares against how XP fairs (Seriously, it isn't hard to fare better)
One must ask oneself: "do I will trolling to become a universal law?" And then when one realizes "yes, I do will it to be such," one feels completely justified.
-- from Groundwork for the Metaphysics of Trolling

iago

It's hard to say.  OS X was designed with security as a forethought rather than as an afterthought, so I think it could fair pretty well. 

Nate

Increasing Market Share will result in an increase in security issues.  Also targeting college students for your product is going to result in problems.

Anyways im waiting for the virus that corrupts iPods.

Sidoh

Quote from: Nate on February 27, 2006, 09:38:08 PM
Increasing Market Share will result in an increase in security issues.  Also targeting college students for your product is going to result in problems.

Not necessarily.  I don't see anyone exploiting Google.

iago

Quote from: Sidoh on February 27, 2006, 09:40:58 PM
Quote from: Nate on February 27, 2006, 09:38:08 PM
Increasing Market Share will result in an increase in security issues.  Also targeting college students for your product is going to result in problems.

Not necessarily.  I don't see anyone exploiting Google.

There are actually a lot of exploits involving Google + other sites.  There was a recent worm spreading that used Google to find vulnerable hosts.  A guy at work had the book Google Hacking for Penetration Testers.  I flipped through it and it looked like a hell of a good read, but I never got around to reading it. 

My point is that although Google isn't directly targetted, some of its "weaknesses" are indirectly used. 

Sidoh

Quote from: iago on March 09, 2006, 10:55:04 PMThere are actually a lot of exploits involving Google + other sites.  There was a recent worm spreading that used Google to find vulnerable hosts.  A guy at work had the book Google Hacking for Penetration Testers.  I flipped through it and it looked like a hell of a good read, but I never got around to reading it. 

My point is that although Google isn't directly targetted, some of its "weaknesses" are indirectly used. 

Hehe, I heard about those.  I misused the word "exploit."

iago

Quote from: Sidoh on March 09, 2006, 11:00:27 PM
Hehe, I heard about those.  I misused the word "exploit."

Welll, in a way.  I was kind of taking the word "exploit" to have a different meaning than you intended it to.  I realized I was doing it, but I still thought it was useful to point out. 

Joe

Quote from: iago on March 09, 2006, 10:55:04 PM
Quote from: Sidoh on February 27, 2006, 09:40:58 PM
Quote from: Nate on February 27, 2006, 09:38:08 PM
Increasing Market Share will result in an increase in security issues.  Also targeting college students for your product is going to result in problems.

Not necessarily.  I don't see anyone exploiting Google.

There are actually a lot of exploits involving Google + other sites.  There was a recent worm spreading that used Google to find vulnerable hosts.  A guy at work had the book Google Hacking for Penetration Testers.  I flipped through it and it looked like a hell of a good read, but I never got around to reading it. 

My point is that although Google isn't directly targetted, some of its "weaknesses" are indirectly used. 

I don't know if you'd consider this harmful, but there used to be a tool that would mount your Gmail account as a local hard drive and allow you to save files on to it, in the form of attachments.
Quote from: Camel on June 09, 2009, 04:12:23 PMI'd personally do as Joe suggests

Quote from: AntiVirus on October 19, 2010, 02:36:52 PM
You might be right about that, Joe.


iago

I don't think that's an exploit in any way.  I'd be surprised if Google did anything about it.  In fact, Google is planning (maybe beta-testing? I forget) a program called GDrive, I think, which lets you store your files on Google.