Showing posts with label Apple Mac OS X. Show all posts
Showing posts with label Apple Mac OS X. Show all posts

Friday, 21 August 2015

Adware Changing Settings Adblock Plus For Mac OS X



Adblock Plus is the most installed browser extension the world, with tens of millions of users. All of these users will not see ads, something that adware developers now have gotten through. Security company Webroot recently discovered copies of the VSearch- and adware Genieo for Mac OS X that adjust settings Adblock Plus.

For this, the Mac user, the first adware already installed on your system. Once active monitors adware or a AdBlocker the system is present and then add an exception, so the ads from adware still be displayed. According to Webroot's most malware for Mac OS X which it encounters adware, which displays all kinds of ads. Earlier this year, Mac users were already adware warned. Users become infected mainly because software outside the site of the supplier or downloading illegal software use.

Saturday, 15 August 2015

Apple Patches 232 Vulnerabilities In Mac OS X, iOS, Safari And Server


Apple yesterday evening updates for Mac OS X, iOS, Safari and OS X Server released that fix 232 leaks together. Through the vulnerabilities could allow an attacker in the worst case code on the respective platforms. Most of the vulnerabilities patched in Mac OS X.

OS X Security Update 2015-006 and Yosemite v10.10.5 fix 133 leaks, including a zero-day vulnerability that was used by an adware installer. Through the vulnerabilities could a malicious app to change the password of a local user, the malicious Wi-Fi networks was possible to identify previously used Wi-Fi networks and could run a local user code with system privileges. Also, there are many vulnerabilities patched that allowed the execution of arbitrary code, for example through processing of malicious fonts. The updates can be downloaded via the Mac App Store or Apple's Software Downloads.

For owners of an iPad, iPod Touch or iPhone iOS 8.4.1 released. This version fixes 71 vulnerabilities. Again, an attacker through malicious fonts, office files and video files, execute arbitrary code. Furthermore, it was possible for malicious websites to spoof the user interface. These malicious websites could open another website and ask the user for input without the user to see which website the request was submitted. The update can be downloaded via iTunes and the Software Update feature on the device.

Via Safari 8.0.8, Safari 7.1.8 and Safari 6.2.8 includes 27 vulnerabilities in the past. Through the leak could allow an attacker code on the system if the user visited a malicious Web site. Also, the leaking of cookies remedied and it is no longer possible to trace the history of private browsing sessions. The new versions can be downloaded via the Mac App Store. Last but OS X Server 4.1.5 appeared that fixes one vulnerability that an attacker can cause a denial of service.

Tuesday, 4 August 2015

Adware Uses Zero-Day Vulnerability In Mac OS X



A vulnerability in Mac OS X last month by a German researcher was revealed and has not yet been patched by Apple is now actively used by adware. Through the vulnerability could allow a local attacker to increase his or application user rights.

Anti-virus firm Malwarebytes recently discovered an adware installer that uses the vulnerability to gain root privileges on Mac computers. Besides installing the VSearch adware installer also installs the adware Genieo and the very controversial MacKeeper on computers. Finally sends users to the Mac App Store to download the Download Shuttle app there. Do not know where the adware is offered exactly Malwarebytes late, but the company advises users to be careful what they download.

Saturday, 1 August 2015

Researcher: Most Mac Malware Is Hopelessly Behind


Most malware for Mac OS X is hopelessly behind compared to Windows malware, says researcher Patrick Wardle . "To draw a comparison, it is almost true Windows malware 10 to 15 years ago," so let him opposite Threat Post know. Most specimens Wardle encounter are individual files that are easy to find via the Activity Monitor.

The researcher is concerned about the Mac malware is unknown and unnoticed by the sluggishness of advanced testing tools. Where Windows has advanced and aggressive tools to detect malware, which are not for OS X, allowing sophisticated threats are missed possible. Therefore he will showcase at the upcoming Black Hat conference in Las Vegas how "elegant" Mac malware is making, which can evade anti-malware measures of OS X and third-party security tools.

So Wardle shows how Gatekeeper is remotely bypass to from unsigned code downloaded and run and how to get round all the popular virus scanners and firewalls are simple via malware. However, the investigator concludes with several free security tools that can detect or even prevent advanced Mac malware. "With these tools, we ensure that our computers are better protected against both current and future Mac malware."

Wednesday, 29 April 2015

Free Virus Scanners Convince On Mac OS X


Mac OS X has to do with much less malware than Windows, most recently in a report revealed by the Finnish anti-virus firm F-Secure. Yet there are also threats to Apple's operating system, which mainly via pirated software and downloading software from the wrong source managed to spread. The reason for the German testing body AV-Test to test ten paid and free virus for OS X.

"Criminals are always looking for groups that are worthy to steal. The now become big group of Mac users is a good target," said Maik Morgenstern of AV-Test. For the test, we looked at various components such as malware detection, false positives, tax system and features. The detection test worked with an "on-demand" scan and an "on-access" scanning. For these two tests were used in a total of 244 malware instances.

Average know the scanners to detect 91% of malware. This percentage is mainly due ClamXav brought down, which scored 36.6% and 54.7% respectively. The other virus scanners are above 88%, with Avira and Symantec both tests score even 100%. However, Avira is a free product. The free virus scanner Avast convinces with a score of 100% and 98.8%.

When it comes to system load Symantec puts the best score down. Copying files to 26,6GB took no scanner 66.1 seconds.The virus took an average of 75.4 seconds. Symantec sitting there with 66.2 seconds, well below while Intego with 97.9 seconds is the greatest strain on the system. Regarding "false positives," the unjustified considering clean files as malware, no single scanner was in the wrong. On ClamXav after all were virus by AV-Test certification. Below the results of the on-demand scan.

Saturday, 21 March 2015

Apple Close Two Vulnerabilities In Mac OS X Yosemite


Apple has released a security update for Mac OS X Yosemite that fixes two vulnerabilities in the operating system, which could allow an attacker at worst arbitrary code with system privileges on the computer. The first problem was in the iCloud Keychain and occurred in the processing of data during the recover of the iCloud Keychain.

An attacker with a "privileged" network position could then execute arbitrary code via several buffer overflows. The second leak that Apple has solved ensured that could run malicious app code with system privileges. Security Update 2015-003 for Mac OS X 10.10.2 Yosemite also includes the contents of Security Update 2015-002 . The updates can be downloaded via the Mac App Store and Apple's download site .

Saturday, 31 January 2015

Apple Blocks Unsafe Flash Player On Mac OS X


To protect users from potential attacks, Apple insecure versions of Adobe Flash Player on Mac OS X blocked. Mac OS X has a "Web Plugin blocking mechanism" that Apple regularly will update to block unsafe plug-ins and prevent drive-by downloads.

This weekend Adobe patched a critical vulnerability in Flash Player that is actively used to attack Windows users. Who surfs on Mac OS X with Safari and not using the latest version of Flash Player and a site visit to see the plug-in calls notifies ranging from "Blocked plug-in", "Flash Security Alert" or "Flash out-of-date ". The message is that Adobe Flash Player is outdated and there is a newer version can be downloaded from Adobe.

Flash Player versions on Mac OS X Flash Player 16.0.0.296 and 13.0.0.264. All versions are blocked before. Users who still want to use an older version of Flash Player can do this via the "Internet Plug-in management" in Safari, and so the plug-in running on reliable websites in an insecure fashion. Further notes that Apple users who have problems downloading or installing Flash Player, this should contact Adobe.

Tuesday, 27 January 2015

Apple: "Thunderbolt Attack In OS X Patch"


Apple will soon release an update for Mac OS X Yosemite discovered next three vulnerabilities revealed by Google and also the last year demonstrated Thunderbolt attack will remedy. Let sources with access to the beta version of Mac OS X 10.10.2 opposite iMore know.

In late December showed researcher Trammell Hudson during the CCC hacker conference in Hamburg how he bootkit can install on an Apple Macbook that reinstalling the operating system and replace the hard drive can survive through the Thunderbolt port. Once the bootkit is running that can spread virally by infecting other Thunderbolt devices.

To install the bootkit is need physical access to the computer. To adjust Mac computers to protect against the attack Apple had not only the code that prevents the boot ROM is replaced, but that a rollback to a previous state which prevented the attack still works.

Further, Mac OS X, 10.10.2 Yosemite also three vulnerabilities remedy that Google recently revealed in the OS.Researchers from the search giant had vulnerabilities discovered last year and reported to Apple. Since they are not within the Apple patched the details were automatically made ​​public time limits provided by Google. Something happened earlier vulnerabilities in Microsoft.