Username: 
 Password:


Featured Content
Posted Jun 12, 2007 09:55 by Tim Y. Listed in: Hacks & Exploits, News Tags: David Maynor
Ó
5 QJ
Safari icon - Image 1Barely a few hours after the beta release of the Safari browser for Windows, we've already picked up word of possible security issues. This appears to be the report being mentioned by David Maynor of Errata Security - the guy made famous for demonstrating how to "hack" a MacBook wirelessly. Here reads the consultant's description of the six detected bugs:

I'd like to note that we found a total of 6 bugs in an afternoon, 4 DoS and 2 remote code execution bugs. We have weaponized one of those to be reliable and its different that what Thor has found. I can't speak for anybody else but the bugs found in the beta copy of Safari on Windows work on the production copy on OSX as well (same code base for alot of stuff).


Given that it's a Beta releases, we'll be keeping our eyes peeled in case more developments are announced as Safari goes through its paces.

Email this   |   Digg It!   |   Comments [3] read more ...
Posted Aug 20, 2006 01:03 by Mabie A. Listed in: Hacks & Exploits, Software, MacBook, Wireless Tags: Las Vegas , David Maynor , SecureWorks
Ó
2 QJ
The Apple MacBook wireless device driver is clear from any weaknesses. apple macbook

This is what has been proven, contrary to the sensational claim made by two security specialists back at the August Black Hat security conference in Las Vegas. There, they demonstrated how to "hack" an Apple MacBook wirelessly. But as it later on turned out, the demonstrators did not use the native MacBook wireless driver.

While hacker demonstrators David Maynor and John Ellch of SecureWorks did not outright say that the vulnerability was a Mac problem per se, but rather was a weakness with wireless device drivers in general, they did not, however, clarify that they were using a third party wireless device driver in their demonstration. Because of this, it sent alarm bells ringing off, particularly from the upset Apple party.

In response, SecureWorks released a statement through its website, saying that "This video presentation at Black Hat demonstrates vulnerabilities found in wireless device drivers. Although an Apple MacBook was used as the demo platform, it was exploited through a third-party wireless device driver - not the original wireless device driver that ships with the MacBook. As part of a responsible disclosure policy, we are not disclosing the name of the third-party wireless device driver until a patch is available."

So obviously, the demonstrators really had nothing bad to say about the MacBook's native wireless device driver. But then again, they probably thought it would make for a great dramatic effect to bring in the brand of Apple.

While demonstrations such as these may offer benefits in terms of promoting and providing further securities against hacking, it is best for the security experts to stick with real-life scenarios rather than exploiting a particular brand to jump up publicity, without even offering a caveat that the brand is being used for demonstration purposes only, and not to identify it as one of the problems they are discussing. It is not only some form of cheapshot, but it can also prove to be very detrimental not only for the exploited brand's image, but also to the security expert company who may be inviting legal action because of their negligence.

Email this   |   Digg It!   |   Comments [0] read more ...
powered by
QJ.NET Blog Network RSS Feeds
MyQJ Feed / PDA
MyQJ RSS / PDA
Blog of Blogs Feed / PDA
QJ.NET RSS / PDA
Gaming Consoles Feed / PDA
Nintendo DS RSS / PDA
PlayStation 3 RSS / PDA
PSP Updates RSS / PDA
Wii RSS / PDA
Xbox 360 RSS / PDA
PC Gaming Feed / PDA
Games for Windows RSS / PDA
MMORPG RSS / PDA
Tabula Rasa RSS / PDA
World of Warcraft RSS / PDA
Science Feed / PDA
Science RSS / PDA
Technology Feed / PDA
Apple RSS / PDA
Gadgets RSS / PDA
Mobile RSS / PDA
Photography RSS / PDA
User Favorites - November
Most Commented
No available articles!
User Favorites - November
Top Jumps
No available articles!