Fake Bitecoin, North Korea, and WordPress – Paul’s Security Weekly #541

In the news, we discuss Uber paying hacker to keep quiet, flaw in Intel processors, banking apps found vulnerable to MITM attacks, Apple patching all other High Sierra security holes, and more on this episode of Paul’s Security Weekly! Paul’s Sto… Continue reading Fake Bitecoin, North Korea, and WordPress – Paul’s Security Weekly #541

Yet another flaw in Apple’s “iamroot” bug fix

Flaws in Apple’s response to the “iamroot” vulnerability show that some systems can remain vulnerable even after applying the patch.
Categories:

Mac
Threat analysis

Tags: AppleHigh Sierraiamrootmac vulnerabilitymacOS

(Read more…)

The… Continue reading Yet another flaw in Apple’s “iamroot” bug fix

Yet another flaw in Apple’s “iamroot” bug fix

Flaws in Apple’s response to the “iamroot” vulnerability show that some systems can remain vulnerable even after applying the patch.
Categories:

Mac
Threat analysis

Tags: AppleHigh Sierraiamrootmac vulnerabilitymacOS

(Read more…)

The… Continue reading Yet another flaw in Apple’s “iamroot” bug fix

Apple fixes root password bug: ‘Install this update as soon as possible’

To their credit, it didn’t take Apple long to fix their horrendous bug that allowed *anyone* to log into computers running macOS High Sierra with admin rights, without needing to know a password.
But it should really never have got past quality control… Continue reading Apple fixes root password bug: ‘Install this update as soon as possible’