Vulnerability on macOS helps hackers easily overcome security barriers
To protect users, software developers often warn them with dialogs that appear to confirm whether you want to perform a certain task. This protection method prevents malicious applications from being able to access and control with a wrong click of the user.
However, the MacOS security expert and a former white-hat hacker of the US National Security Agency have found a way to overcome these types of user alerts. The hacker discovered that the macOS interface allows converting keystrokes into mouse operations. Even when a user performs a double-click operation, macOS will recognize that as the command to click the OK button.
Warning occurs when suspicious software wants to access user information.
And just write a few more simple lines of code, your malware can bypass the user warning dialog and get access to geographic location, contact list and more without verification .
Hacker can only take advantage of this vulnerability to bypass the warning request verification and click OK but cannot break the user's password.
However, this finding also shows that the most basic protection mechanism can be cracked easily and manufacturers need to further enhance the security elements of the operating system.
The vulnerability can be fixed in the next macOS Mojave update.
See more:
- Foreshadow - the fifth most serious security hole in the CPU in 2018
- Millions of Android devices stick with security holes in firmware, hackers can exploit to lock users' machines
- iPhone and Android smartphone series stick with serious Bluetooth security error
- Hackers took control of 18,000 Huawei router devices in just one day
You should read it
- Google announced a serious vulnerability in the macOS kernel
- Some useful file manipulation tips on macOS
- How to fix signature errors when upgrading macOS
- 3 ways to downgrade to the old macOS version
- 6 reasons why Windows 11 is better than macOS
- How to fix corrupted macOS installer errors
- Microsoft discovered a critical vulnerability on macOS
- Fix the Mac crashed during macOS update
May be interested
- Critical Vulnerability Discovered in 3 WordPress Plugins, Affects 84,000 Websitessecurity researchers have just disclosed a new vulnerability affecting three different wordpress plugins, posing a security risk to 84,000 websites. by exploiting this vulnerability, hackers can take control of the affected websites.
- Apple patched many zero-day bugs in iOS 15.4.1 and macOS 12.3.1 updatesapple has simultaneously released new versions of their software to update features, fix bugs and patch security holes.
- Patches of dangerous vulnerabilities being exploited by hackers contain dangerous holes and then continue to be exploited by hackersnot long after the log4j vulnerability was discovered, the patch was released. however, the irony is that this patch has holes.
- Detecting a new Linux vulnerability allows hackers to gain control of the VPN connectioninternational security researchers have found an entirely new linux vulnerability that allows potential attackers to hijack vpn connections on the device * nix and 'inject' the arbitrary data payload into it. tcp4 and ipv6 streams.
- Mozilla patches a vulnerability in Firefox that helps hackers gain admin rights of Windowsmozilla has just released a security update to patch a critical security vulnerability that allows hackers to escalate privileges on windows computers. this critical security flaw has been patched in the recently released version of firefox 97.
- Apple expanded the size of the security bug detection program to receive bonuses, including macOS, a maximum bonus of $ 1 millionsecurity researchers have, are, and will find a vulnerability in macos that will be awarded by apple in the near future.
- Detected critical zero-day vulnerability on Adobe Readeradobe has just released the may security update to patch security holes in 12 of their products. among them is a serious zero-day vulnerability in adobe reader that is being actively exploited by hackers.
- Detecting a serious security vulnerability on macOS, this 18-year-old youth refused to disclose it because Apple did not pay the bonuslinus henze, an 18-year-old german, recently claimed to have discovered a serious security flaw on macos that could expose the machine's storage passwords to malicious applications.
- Windows 10 vulnerability from Cortana helps hackers open unauthorized malicious websites and how to fix themby default, cortana will always listen to users' requests, even if the lock screen on windows 10, this is the hole that gives hackers the opportunity to manipulate the device and install malicious code. in computer.
- Detected a serious BIOS vulnerability, affecting many Intel processorslocated in the bios, two newly discovered vulnerabilities allow hackers to perform malicious attacks on the victim's system.