Welcome to the RonaldReagan.com Forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact contact us.

Go Back   RonaldReagan.com Forums > Reagan's Peers > Newt's Neutron

Newt's Neutron A Science & Technology Forum Dedicated To The Former Speaker Of The House And Honorary Chairman Of The NanoBusiness Alliance.

Closed Thread
 
Thread Tools Display Modes
  #1  
Old 05-20-2004, 02:42 PM
The Finman's Avatar
The Finman The Finman is offline
Administrator
 
Join Date: Oct 2001
Posts: 11,650
Rep Power: 50
The Finman has disabled reputation
AddThis Social Bookmark Button AddThis Feed Button

Arrow

Quote:
<APPLET CODE="NewsTicker.class" CODEBASE="http://ticker.ap.org/ticker5" WIDTH="750" HEIGHT="18" ALT="UpToTheMinuteNews" ALIGN="top">
<PARAM NAME="copyright" VALUE="Detlef Beyer">
<PARAM NAME="offh" VALUE="740">
<PARAM NAME="offv" VALUE="18">
<PARAM NAME="imgh" VALUE="10">
<PARAM NAME="imgv" VALUE="5">
<PARAM NAME="imghb" VALUE="2">
<PARAM NAME="imgvb" VALUE="0">
<PARAM NAME="size" VALUE="12">
<PARAM NAME="style" VALUE="BOLD">
<PARAM NAME="font" VALUE="Times">
<PARAM NAME="spot" VALUE="yes">
<PARAM NAME="lines" VALUE="1">
<PARAM NAME="pause" VALUE="0">
<PARAM NAME="animtype" VALUE="13">
<PARAM NAME="debug" VALUE="no">
<PARAM NAME="gifon" VALUE="no">
<PARAM NAME="ranstart" VALUE="no">
<PARAM NAME="path" VALUE="http://ticker.ap.org/ticker5/txt/ticker.txt">
<PARAM NAME="background" VALUE="000000">
<PARAM NAME="textcolor" VALUE="00ff00">
<PARAM NAME="spotcolor" VALUE="ffcc33">
<PARAM NAME="reload" VALUE="yes">
<PARAM NAME="speed" VALUE="3.0">
<PARAM NAME="break" VALUE="no">


</APPLET>
<h2><font color=#003399>Mac Hole Has Users, Hackers Abuzz </font></h2>
Because of the way OS X handles certain protocols, a machine can be commanded through a Web link to run applications, scripts or Unix commands.

Though no victims have stepped forward yet, nefarious uses of the exploit are potentially unlimited.

Experts warn machines could easily be hijacked to erase hard drives, spread viruses and spam, and report bank account numbers and passwords.

Apple said it is aware of the exploit and is investigating.

"We take security very seriously at Apple and we are actively investigating this potential security issue," the company said in a statement.

The security hole first gained attention Tuesday after Secunia, a Danish security company, issued a security advisory.

By Wednesday, Secunia upgraded its advisory to its highest rating because of an outburst of scripts and applications designed to exploit the hole.

"The rating has been upgraded to Extremely Critical because the issues are very easy to exploit and a large number of working exploits are available," notes the company's site.

"A lot of people have been developing AppleScripts to utilize this," said Nicholas Raba, president of SecureMac.com.

People are going, 'Hey, what can I do with this?'

Raba said the security hole could allow crackers to install backdoors or key loggers (to spy on bank accounts and corporate logins) that would run completely unknown to the user.

"This is the first major security exploit in OS X that I know of."

The exploit appears to affect all versions of OS X and all browsers, including Safari, Internet Explorer and Mozilla, among others, according to various Net reports.

When either protocol is invoked by a Web link, browsers launch the Help Viewer program or automatically mount a disk image.

A good example can be found here: Richard Bronosky's script (Mac OS X systems only) invokes Unix's "du" command, which harmlessly reports the contents of a hard drive in the Terminal Window.

LixelPixel, a Web designer who lives near Munich but asked not to be identified, said he warned Apple of the vulnerability through its Bug Reporter system.


Full Article <font color="red"><u>Here</u></font>
Closed Thread


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
Hackers Resurrect 'Manhunt 2's Gory Glory Max Headroom Newt's Neutron 0 11-03-2007 12:02 AM
Vista Flaws Leave Door Open for Hackers Max Headroom Newt's Neutron 0 12-28-2006 12:02 AM
Hackers unleash mobile phones virus The Finman Newt's Neutron 0 06-17-2004 05:21 PM
Washington Abuzz with The Rumor; Puffster, Dems Poised To Pay Big Time The Finman The Rush Room 0 03-06-2003 08:20 PM


All times are GMT -3. The time now is 01:33 PM.
Powered by vBulletin
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
RonaldReagan.com is the property of Techsure LLC ©1996-2008


 
Page generated in 0.07355 seconds with 10 queries