|
Look, we’re fine with Apple gloating about the security of OS X in their Mac vs. PC adverts. |
|
|
Apparently, a previously undisclosed vulnerability in the OS X mDNSResponder (which Apple has patched before) allowed Sir Sellout to cobble together a worm dubbed “Rape.osx.” InfoSec Sellout claims to have released the worm into a controlled environment thereby infecting a network of about 1,500 OS X systems by nabbing root and dumping a text file as an evidentiary foot print.
However, the worm’s author claims that it can be broadly weaponised with a payload of choice across both PPC and Intel-class Macs with just a bit more work.
InfoSec Sellout will disclose the vulnerability to Apple only after his/her “research is complete” and after an appropriate level of compensation (er, InfoSec Ransom?) received.
Dubious as that sounds, for good or for worse, it’s the way the game’s currently played.
More information [Via Slashdot]




0 Responses to “New OS X vulnerability found: worm released in lab?”
Leave a Reply