Vulnerability on macOS helps hackers easily overcome security barriers
To protect users, software developers often warn them with dialogs that appear to confirm whether you want to perform a certain task. This protection method prevents malicious applications from being able to access and control with a wrong click of the user.
However, the MacOS security expert and a former white-hat hacker of the US National Security Agency have found a way to overcome these types of user alerts. The hacker discovered that the macOS interface allows converting keystrokes into mouse operations. Even when a user performs a double-click operation, macOS will recognize that as the command to click the OK button.
Warning occurs when suspicious software wants to access user information.
And just write a few more simple lines of code, your malware can bypass the user warning dialog and get access to geographic location, contact list and more without verification .
Hacker can only take advantage of this vulnerability to bypass the warning request verification and click OK but cannot break the user's password.
However, this finding also shows that the most basic protection mechanism can be cracked easily and manufacturers need to further enhance the security elements of the operating system.
The vulnerability can be fixed in the next macOS Mojave update.
See more:
- Foreshadow - the fifth most serious security hole in the CPU in 2018
- Millions of Android devices stick with security holes in firmware, hackers can exploit to lock users' machines
- iPhone and Android smartphone series stick with serious Bluetooth security error
- Hackers took control of 18,000 Huawei router devices in just one day
You should read it
- Google announced a serious vulnerability in the macOS kernel
- Some useful file manipulation tips on macOS
- How to fix signature errors when upgrading macOS
- 3 ways to downgrade to the old macOS version
- 6 reasons why Windows 11 is better than macOS
- How to fix corrupted macOS installer errors
- Microsoft discovered a critical vulnerability on macOS
- Fix the Mac crashed during macOS update
May be interested
- New features on Google Play will save your datagoogle play has added new features in the latest update, allowing users to optionally download the application.
- Google is about to launch Android 9 Pie (Go Edition) for low-end smartphonesgoogle recently announced that it will soon release android 9 pie (go edition). the go version of the android 9 pie operating system will be designed with a few enhancements to run on mid-range and low-cost smartphones, making them a little worse.
- The magic card table like in Yu-Gi-Oh! appeared in real lifea twitter user named reo in japan posted a video recording a scene playing cards on a special touch-sensitive desk. when a player plays a card or each time a game is transferred, the table plays the corresponding light and sound.
- See the unique Windows 10 concept with the smart interface design of the Taskbarin this concept, samuel ojeda unites the taskbar with the toolbar to simplify the windows 10 interface, allowing users to pin the system processes such as windows ink, screen brightness, time and even releases are games.
- Google released a new version for Android Messages application with a completely new Material designthe default android messages application from google has just been upgraded to a new version with a 3.5.048 number with the design of the material theme interface and a completely new dark mode display mode.
- Compare battery life Galaxy Note 9 with some other flagship models: Galaxy S9 + / iPhone X / Huawei P20 Pro and OnePlus 6in order to bring longer usage time for users, samsung has equipped a 4000mah capacity battery for galaxy note 9. here are the results of comparing the battery life of this device with some other flagship models due to channel youtube mrwhosetheboss done.