Overclock.net › Forums › Industry News › Software News › [/.] New MacDefender Defeats Apple Security Update
New Posts  All Forums:Forum Nav:

[/.] New MacDefender Defeats Apple Security Update - Page 6  

post #51 of 74
Now I'm no programmer, but that fact that it gets root access without permission is kinda like... a big gaping hole, right?
The Fox Box
(16 items)
 
Macbook Pro
(10 items)
 
 
CPUMotherboardGraphicsRAM
Intel 3930K ASUS P9X79 ASUS GTX 570 DCII 4 x 4GB G.Skill Sniper 1600MHz LV 
Hard DriveOptical DriveCoolingOS
Intel 330 - 180GB LG HDDVD & Blu Ray Reader Cooler Master Hyper 612 Windows 7 Ultimate 64bit 
MonitorMonitorKeyboardPower
HP ZR30w Samsung 2243BWX Ducky! PCP&C 750w Silencer (coppa) 
CaseMouseMouse PadAudio
Lian Li PC-E8 G9x S&S Steel Onkyo Receiver/Design Acoustics 2.1 system 
CPUGraphicsRAMHard Drive
Core i5 2410M HD 3000 8GB 120GB SSD 
Optical DriveOSOSOS
Super Drive OSX 10.7.2 Win 7 Enterprise (In VB) Ubuntu 10.04 (In VB) 
MonitorPower
13" 1280x800 65w Magsafe 
CPUMotherboardRAMHard Drive
Q9300 Gigabyte P35 8GB DDR2 2TB WD 
Hard DriveHard DriveHard DriveHard Drive
2TB WD 2TB Seagate 1.5TB Seagate 1.5TB Seagate 
Hard DriveHard DriveHard DriveOptical Drive
1TB Hitachi 1TB Hitachi 500GB WD DVD-RW 
OSMonitorKeyboardPower
Win Server 2012 Headless/15" touchscreen Apple mini USB PC P&C 500W 
  hide details  
The Fox Box
(16 items)
 
Macbook Pro
(10 items)
 
 
CPUMotherboardGraphicsRAM
Intel 3930K ASUS P9X79 ASUS GTX 570 DCII 4 x 4GB G.Skill Sniper 1600MHz LV 
Hard DriveOptical DriveCoolingOS
Intel 330 - 180GB LG HDDVD & Blu Ray Reader Cooler Master Hyper 612 Windows 7 Ultimate 64bit 
MonitorMonitorKeyboardPower
HP ZR30w Samsung 2243BWX Ducky! PCP&C 750w Silencer (coppa) 
CaseMouseMouse PadAudio
Lian Li PC-E8 G9x S&S Steel Onkyo Receiver/Design Acoustics 2.1 system 
CPUGraphicsRAMHard Drive
Core i5 2410M HD 3000 8GB 120GB SSD 
Optical DriveOSOSOS
Super Drive OSX 10.7.2 Win 7 Enterprise (In VB) Ubuntu 10.04 (In VB) 
MonitorPower
13" 1280x800 65w Magsafe 
CPUMotherboardRAMHard Drive
Q9300 Gigabyte P35 8GB DDR2 2TB WD 
Hard DriveHard DriveHard DriveHard Drive
2TB WD 2TB Seagate 1.5TB Seagate 1.5TB Seagate 
Hard DriveHard DriveHard DriveOptical Drive
1TB Hitachi 1TB Hitachi 500GB WD DVD-RW 
OSMonitorKeyboardPower
Win Server 2012 Headless/15" touchscreen Apple mini USB PC P&C 500W 
  hide details  
post #52 of 74
I'm playing the worlds smallest violin right now.
    
CPUMotherboardGraphicsRAM
Intel i5 2500 @ 4,004GHz (1.202v) Asus P8P67-PRO B3 Leadtek GTX260 65nm 896MB 700|1430|1100 4GB DDR3 Muskin 1686MHz 
Hard DriveOptical DriveOSMonitor
2xWD CB 250GB, 2x SG 320GB, 1xSS F1 1TB Pioneer DVD-RW Windows 7 Professional 64bit Samsung 2032BW 20" 1680x1050 16:10 
KeyboardPowerCaseMouse
Razer Lycosa CoolerMaster GX 550W Coolermaster Storm Sniper Razer DeathAdder 
Mouse Pad
Razer Goliathus 
  hide details  
    
CPUMotherboardGraphicsRAM
Intel i5 2500 @ 4,004GHz (1.202v) Asus P8P67-PRO B3 Leadtek GTX260 65nm 896MB 700|1430|1100 4GB DDR3 Muskin 1686MHz 
Hard DriveOptical DriveOSMonitor
2xWD CB 250GB, 2x SG 320GB, 1xSS F1 1TB Pioneer DVD-RW Windows 7 Professional 64bit Samsung 2032BW 20" 1680x1050 16:10 
KeyboardPowerCaseMouse
Razer Lycosa CoolerMaster GX 550W Coolermaster Storm Sniper Razer DeathAdder 
Mouse Pad
Razer Goliathus 
  hide details  
post #53 of 74
Quote:
Originally Posted by Mootsfox View Post
Now I'm no programmer, but that fact that it gets root access without permission is kinda like... a big gaping hole, right?
Wide enough to park two buses in.

EDIT:

Sideways.
    
CPUMotherboardGraphicsRAM
Intel i5 2500 @ 4,004GHz (1.202v) Asus P8P67-PRO B3 Leadtek GTX260 65nm 896MB 700|1430|1100 4GB DDR3 Muskin 1686MHz 
Hard DriveOptical DriveOSMonitor
2xWD CB 250GB, 2x SG 320GB, 1xSS F1 1TB Pioneer DVD-RW Windows 7 Professional 64bit Samsung 2032BW 20" 1680x1050 16:10 
KeyboardPowerCaseMouse
Razer Lycosa CoolerMaster GX 550W Coolermaster Storm Sniper Razer DeathAdder 
Mouse Pad
Razer Goliathus 
  hide details  
    
CPUMotherboardGraphicsRAM
Intel i5 2500 @ 4,004GHz (1.202v) Asus P8P67-PRO B3 Leadtek GTX260 65nm 896MB 700|1430|1100 4GB DDR3 Muskin 1686MHz 
Hard DriveOptical DriveOSMonitor
2xWD CB 250GB, 2x SG 320GB, 1xSS F1 1TB Pioneer DVD-RW Windows 7 Professional 64bit Samsung 2032BW 20" 1680x1050 16:10 
KeyboardPowerCaseMouse
Razer Lycosa CoolerMaster GX 550W Coolermaster Storm Sniper Razer DeathAdder 
Mouse Pad
Razer Goliathus 
  hide details  
post #54 of 74
Quote:
Originally Posted by Mootsfox View Post
Now I'm no programmer, but that fact that it gets root access without permission is kinda like... a big gaping hole, right?
I don't think it's gaining root privilages. It's acting as a safe-file that is allowed to be opened without a password.

Ya see, on OS X, you can tell Safari to "open safe files after download." Not allowing it to will avoid this issue altogether. What's curious to me is that this is somehow utilizing the safe-file category to install itself... Usually when you install an application, no matter what it is, you have to have Admin rights... this is something different. It's been a few years since I've touched OS X so I'm not exactly sure how this is doing what it does.
post #55 of 74
I don't know why people think virus's are some magical code that destroys worlds... It's really just exploits within the operating system... any operating system can get Virus's including Phones, Tablets, Windows, Mac, Linux... everything.

I made a Virus today in my class (networking security) and It took about 10 minutes, It's pretty destructive to a person without any form of anti virus, however it only works on Windows XP (Lol) . I don't know any coding at all, I'm just a script kiddie.. but that doesn't mean I can't be malicious with it.
Cashcow
(13 items)
 
   
CPUMotherboardGraphicsRAM
Phenom II 955 | C3 | 4GHz MSI | 790FX | GD70 MSI | GTX570 1.25GB G.Skill | Ripjaws | 4GB | 1600MHz 
Hard DriveOptical DriveOSMonitor
60GB Corsair F3 | Caviar Black1TB Lite-On | Blu-Ray Windows | 7 | Ultimate Sony Bravia | EX500 46" 
KeyboardPowerCaseMouse
Razer Lycosa Corsair | TX650W Corsair Obsidian | 800D Razer Death Adder 
Mouse Pad
Razer Goliathus 
CPUGraphicsRAMHard Drive
1.2GHz Exynos SoC Mali-400 MP 1GB 16GB Flash storage 
OSMonitorPower
Android 3.2.7 (CriskelloROM Variant)  4.3" Super AMOLED+ Display 1650ma Battery 
CPUGraphicsRAMHard Drive
i5-2557M Dual-core 1.7ghz Intel HD3000 386mb 4G 1333mhz 128gb Intel SSD 
OSMonitorKeyboardCase
Mac OSX Lion 13.3" 1440x900 LED Backlit  Unibody  
  hide details  
Cashcow
(13 items)
 
   
CPUMotherboardGraphicsRAM
Phenom II 955 | C3 | 4GHz MSI | 790FX | GD70 MSI | GTX570 1.25GB G.Skill | Ripjaws | 4GB | 1600MHz 
Hard DriveOptical DriveOSMonitor
60GB Corsair F3 | Caviar Black1TB Lite-On | Blu-Ray Windows | 7 | Ultimate Sony Bravia | EX500 46" 
KeyboardPowerCaseMouse
Razer Lycosa Corsair | TX650W Corsair Obsidian | 800D Razer Death Adder 
Mouse Pad
Razer Goliathus 
CPUGraphicsRAMHard Drive
1.2GHz Exynos SoC Mali-400 MP 1GB 16GB Flash storage 
OSMonitorPower
Android 3.2.7 (CriskelloROM Variant)  4.3" Super AMOLED+ Display 1650ma Battery 
CPUGraphicsRAMHard Drive
i5-2557M Dual-core 1.7ghz Intel HD3000 386mb 4G 1333mhz 128gb Intel SSD 
OSMonitorKeyboardCase
Mac OSX Lion 13.3" 1440x900 LED Backlit  Unibody  
  hide details  
post #56 of 74
Apple security has been horrible for YEARS, thing is no one used their OS until recently...
    
CPUMotherboardGraphicsRAM
Intel 3930k @ stock  Asus P9x79ws EVGA 670 + EVGA 560 Ti 16gb Gskill 2133 @ 1.6v 
Hard DriveOptical DriveOSMonitor
Samsung 830 256Gb + 3.75 Tb ya Win8 5 - 24'' Dell U2412M 
KeyboardPowerCaseMouse
nope... entirely overrated Seasonic 1250w p182 of course... 
Mouse Pad
no 
  hide details  
    
CPUMotherboardGraphicsRAM
Intel 3930k @ stock  Asus P9x79ws EVGA 670 + EVGA 560 Ti 16gb Gskill 2133 @ 1.6v 
Hard DriveOptical DriveOSMonitor
Samsung 830 256Gb + 3.75 Tb ya Win8 5 - 24'' Dell U2412M 
KeyboardPowerCaseMouse
nope... entirely overrated Seasonic 1250w p182 of course... 
Mouse Pad
no 
  hide details  
post #57 of 74
Can't wait till stuff like this hits the ipad and iphone, hit them where it really hurts.
Ereshkigal
(13 items)
 
  
CPUMotherboardGraphicsRAM
E8400 ASUS P5B DELUXE EVGA 8800GTS 2GB G.SKILL DDR2 800MHZ 
Hard DriveOSMonitorKeyboard
western digital 200GBSATA XP SP2 Home 19" generic Saitek Eclipse Red 
PowerCaseMouseMouse Pad
stock 410W / TT dedicated GPU 250W PSU INWIN x710 Logitech MX1000 ... Uhhhh my desk 
  hide details  
Ereshkigal
(13 items)
 
  
CPUMotherboardGraphicsRAM
E8400 ASUS P5B DELUXE EVGA 8800GTS 2GB G.SKILL DDR2 800MHZ 
Hard DriveOSMonitorKeyboard
western digital 200GBSATA XP SP2 Home 19" generic Saitek Eclipse Red 
PowerCaseMouseMouse Pad
stock 410W / TT dedicated GPU 250W PSU INWIN x710 Logitech MX1000 ... Uhhhh my desk 
  hide details  
post #58 of 74
Quote:
Originally Posted by ZainyAntics View Post
I don't know why people think virus's are some magical code that destroys worlds... It's really just exploits within the operating system... any operating system can get Virus's including Phones, Tablets, Windows, Mac, Linux... everything.
Yes, you're right. The question you have to ask is how far do you have to go to infect a computer with said OS on it?

On Linux / Unix, files aren't considered executable because of their file extension. IIRC, file extensions are meaningless in *nix operating systems. So, lets say you found a script that did something malicious on Linux [like su -c 'rm -rf /' ]. What would it take to run?

Well, first you have to actually download the code in question. Then, you have to navigate to the script and give it permission to execute, which requires root access. Then, you have to run the code, and give your root password again.

So, while I agree that any OS can get viruses, some are more difficult than others.

But hey, if its so easy, why not write the first linux virus? You'd be famous.
post #59 of 74
Quote:
Originally Posted by Bluescreen_Of_Death View Post
Yes, you're right. The question you have to ask is how far do you have to go to infect a computer with said OS on it?

On Linux / Unix, files aren't considered executable because of their file extension. IIRC, file extensions are meaningless in *nix operating systems. So, lets say you found a script that did something malicious on Linux [like su -c 'rm -rf /' ]. What would it take to run?

Well, first you have to actually download the code in question. Then, you have to navigate to the script and give it permission to execute, which requires root access. Then, you have to run the code, and give your root password again.

So, while I agree that any OS can get viruses, some are more difficult than others.

But hey, if its so easy, why not write the first linux virus? You'd be famous.
I needed a project for my thesis, great idea!
Snowdevil
(16 items)
 
ASUS G750JM
(9 items)
 
 
CPUMotherboardGraphicsGraphics
[i7 4790K @ 4.4 GHz (1.186v)] [Asus Sabertooth Z97 Mark S] [nVidia Geforce GTX 1080] [nVidia Geforce GTX 1080] 
RAMHard DriveCoolingOS
[G.Skill 32GB DDR3 2133 MHz] [Crucial MX100 256GB] [Phanteks PH-TC12DX] [Win 10.1 Pro] 
MonitorMonitorKeyboardPower
[LG 29UM65 (2560x1080)] [QNIX Evo II LED (2560x1440)] [WASD v2 Tenkeyless] [NZXT Hale90 v2 ] 
CaseMouseMouse PadAudio
[ThermalTake GT10 Snow Edition] [Razer Mamba - Chroma] [Razer Kabuto] [Razer Man O' War] 
CPUMotherboardGraphicsRAM
i7 4770HQ Intel HM87 Express Chipset Geforce GTX 860M 8GB DDR3L 1600 MHz 
Hard DriveOptical DriveCoolingOS
Samsung SSD EVO DVD-RW Stock Windows 8.1 
Monitor
1920x1080 TN 
  hide details  
Snowdevil
(16 items)
 
ASUS G750JM
(9 items)
 
 
CPUMotherboardGraphicsGraphics
[i7 4790K @ 4.4 GHz (1.186v)] [Asus Sabertooth Z97 Mark S] [nVidia Geforce GTX 1080] [nVidia Geforce GTX 1080] 
RAMHard DriveCoolingOS
[G.Skill 32GB DDR3 2133 MHz] [Crucial MX100 256GB] [Phanteks PH-TC12DX] [Win 10.1 Pro] 
MonitorMonitorKeyboardPower
[LG 29UM65 (2560x1080)] [QNIX Evo II LED (2560x1440)] [WASD v2 Tenkeyless] [NZXT Hale90 v2 ] 
CaseMouseMouse PadAudio
[ThermalTake GT10 Snow Edition] [Razer Mamba - Chroma] [Razer Kabuto] [Razer Man O' War] 
CPUMotherboardGraphicsRAM
i7 4770HQ Intel HM87 Express Chipset Geforce GTX 860M 8GB DDR3L 1600 MHz 
Hard DriveOptical DriveCoolingOS
Samsung SSD EVO DVD-RW Stock Windows 8.1 
Monitor
1920x1080 TN 
  hide details  
post #60 of 74
Quote:
Originally Posted by Bluescreen_Of_Death View Post
Yes, you're right. The question you have to ask is how far do you have to go to infect a computer with said OS on it?

On Linux / Unix, files aren't considered executable because of their file extension. IIRC, file extensions are meaningless in *nix operating systems. So, lets say you found a script that did something malicious on Linux [like su -c 'rm -rf /' ]. What would it take to run?

Well, first you have to actually download the code in question. Then, you have to navigate to the script and give it permission to execute, which requires root access. Then, you have to run the code, and give your root password again.

So, while I agree that any OS can get viruses, some are more difficult than others.

But hey, if its so easy, why not write the first linux virus? You'd be famous.
http://en.wikipedia.org/wiki/Linux_malware#Viruses
Primary PC
(13 items)
 
  
CPUMotherboardGraphicsRAM
Phenom II 720 (2.8 ghz) BIOSTAR A780L3L (AM3) MSI GeForce 9800GT G.Skill Ripjaws Series DDR3 1600 (8GB) 
Hard DriveOSMonitorPower
Crucial M4 64GB / Samsung F3 1TB Windows 7 Pro (64-bit) Dell SP2309W (2048x1152) PC Power & Cooling 610W 
CaseMouse
Cooler Master Elite 430 RC Logitech MX518 
  hide details  
Primary PC
(13 items)
 
  
CPUMotherboardGraphicsRAM
Phenom II 720 (2.8 ghz) BIOSTAR A780L3L (AM3) MSI GeForce 9800GT G.Skill Ripjaws Series DDR3 1600 (8GB) 
Hard DriveOSMonitorPower
Crucial M4 64GB / Samsung F3 1TB Windows 7 Pro (64-bit) Dell SP2309W (2048x1152) PC Power & Cooling 610W 
CaseMouse
Cooler Master Elite 430 RC Logitech MX518 
  hide details  
New Posts  All Forums:Forum Nav:
  Return Home
  Back to Forum: Software News
This thread is locked  
Overclock.net › Forums › Industry News › Software News › [/.] New MacDefender Defeats Apple Security Update