Showing posts with label Mac App Store. Show all posts
Showing posts with label Mac App Store. Show all posts

Wednesday, 4 November 2015

MacUpdate.com Provides Downloads Of Adware


A download site where Mac users can download software shows offered all kinds of apps like Skype, Firefox and 1Password to provide adware. The adware is in an installer. It is includes a "wrapper" that other apps in addition to the required software.

Users can be allowed to see the user agreement, but will ignore most users, says Thomas Reed of anti-malware company Malwarebytes. If it is for the "Quick" system chosen by the user in addition to the software you also get a browser extension and the browser settings are adjusted. According to Reed let many adware installers today see this behavior.

MacUpdate also the wrapper would install a program called MacBooster. Reed says that other download sites such as Download.com and Softonic exhibit this kind of behavior and Mac experts therefore advise you to avoid these types of websites. Mac users are therefore advised only apps from the Mac App Store, or the official website to download from the supplier, and to avoid external download sites.

Thursday, 22 October 2015

Apple Close Vulnerabilities In OS X, iOS, Safari, iTunes And WatchOS


Apple has released updates to several products, including Mac OS X, iOS and iTunes, which resolve a large number of vulnerabilities together. In Mac OS X El Capitan 10.11.1 and Security Update 2015-007 are 60 vulnerabilities patched allowing an attacker to execute arbitrary code in the worst case.

This could for example by visiting a malicious website to open a malicious audio file or image, extracting a malicious archive file or processing a malicious font file. Also, an attacker with a "privileged" position network, for example, between the user and the Internet, could execute arbitrary code. Updating via the Mac App Store or the Apple website.

For Mac users, Apple has also fixed a vulnerability in the firmware. Researchers demonstrated in August a worm that can infect Mac firmware. There are several possible vulnerabilities were used. One of the leaks is used by Mac EFI Security Update 2015-002 corrected. The update can be downloaded via the Mac App Store.

IOS

For owners of an iPhone, iPad or iPod Touch iOS 1.9 appeared that 49 vulnerabilities were patched. A number of vulnerabilities in Mac OS X are also available in iOS and make it possible for an attacker to execute arbitrary code eg when visiting a website. The Pangu jailbreak will not work in this version. Update via iTunes and the automatic update feature.

There is also a new version of Safari appeared. Via Safari 9.0.1, Apple has patched nine vulnerabilities allowing an attacker could execute arbitrary code. Appeared for owners of an Apple Watch. WatchOS 2.0.1, where 15 vulnerabilities are resolved.

ITunes

Windows users who have installed iTunes be advised to iTunes 12.3.1 upgrade. Via a man-in-the-middle attack when looking around in the iTunes Store via iTunes arbitrary code can be executed on the system. Further, it was also possible for malicious applications to execute arbitrary code via text files.

Friday, 2 October 2015

Researcher Bypasses Gatekeeper Security Mac OS X


A researcher has managed to circumvent the Gatekeeper security of Mac OS X, making it possible to run unsigned code on systems. Gatekeeper is a security measure since 2012 is present in OS X and determines which applications can run.

For this Gatekeeper performs several checks. By default, Gatekeeper configured to make only apps from the Mac App Store and identified developers allow. In the latter case, it is developers who have a valid Apple Developer ID certificate. Users can also set Gatekeeper to allow only apps or all apps that come from the Mac App Store.


Check

Researchers Patrick Wardle has now found a way to bypass Gatekeeper. The security measure because it does not appear to check whether an app or other apps code loads from the same or a related directory. Gatekeeper trusts the app, on the basis of the first static control. An attacker can abuse this by allowing the user a signed and infected app download or through a third party via a man-in-the-middle position. In this case, the download should take place over HTTP.

In the case of the attack that the investigator has developed, the user will be offered a DMG file. Once the user opens the file, the malicious file is executed in the same DMG file. The problem is present in OS X Yosemite and the beta version of El Capitan, Wardle so late Threat Post know.

Apple is already working on a solution for the short term until a full patch can be deployed. Users get to the appearance of this workaround or patch advised to only download apps via HTTPS and reliable sites such as the Mac App Store. Wardle today gives at the Virus Bulletin conference a presentation about the issue.

Thursday, 1 October 2015

Apple Close 147 Vulnerabilities In OS X, iOS And Safari


Apple yesterday updates to Mac OS X, iOS and Safari released, which fix 147 vulnerabilities added. The biggest update was for Mac OS X. OS X El Capitan (OS X 10:11) Apple also has many new features in addition to fixed 101 vulnerabilities.

Through the vulnerabilities an attacker could execute arbitrary code in the worst case. Also, it appeared to be possible to gain access to keychain items and Safari users to follow as they were using private-browsing. Furthermore, an attacker could intercept via a man-in-the-middle SSL / TLS connections, decrypt SSL traffic and determine RSA private keys.

It is now no longer possible to flash the firmware with a malignant Ethernet Apple Thunderbolt adapter. In addition, it appeared that the "Secure Empty Trash" option to permanently delete files, deleted files are not always permanent. A list of all solved problems on the website of Apple to find. The new OS X version can be downloaded via the Mac App Store and Apple.com.

IOS

Yesterday released a new version of iOS. IOS 9.0.2 fixes a vulnerability allowing someone with physical access to the device photos and contacts could approach, even though the screen lock was active. Due to a problem with the lock screen could these data and files are still accessed. Apple has solved this by limiting the options available on a locked device. The update can be downloaded via iTunes and the Software Update feature.

Safari

In Safari 9 for OS X Mavericks, OS X Yosemite and El Capitan OS X, Apple has fixed 45 vulnerabilities. Through the vulnerabilities an attacker could determine the browsing history of users and Safari Extensions replaced. Due to a problem with the Safe Browsing option users were not warned when they visited a known malicious website. In the worst case, an attacker could execute when visiting a hacked or malicious website arbitrary code on the system. Safari 9 can be downloaded via the Mac App Store.

Saturday, 15 August 2015

Apple Patches 232 Vulnerabilities In Mac OS X, iOS, Safari And Server


Apple yesterday evening updates for Mac OS X, iOS, Safari and OS X Server released that fix 232 leaks together. Through the vulnerabilities could allow an attacker in the worst case code on the respective platforms. Most of the vulnerabilities patched in Mac OS X.

OS X Security Update 2015-006 and Yosemite v10.10.5 fix 133 leaks, including a zero-day vulnerability that was used by an adware installer. Through the vulnerabilities could a malicious app to change the password of a local user, the malicious Wi-Fi networks was possible to identify previously used Wi-Fi networks and could run a local user code with system privileges. Also, there are many vulnerabilities patched that allowed the execution of arbitrary code, for example through processing of malicious fonts. The updates can be downloaded via the Mac App Store or Apple's Software Downloads.

For owners of an iPad, iPod Touch or iPhone iOS 8.4.1 released. This version fixes 71 vulnerabilities. Again, an attacker through malicious fonts, office files and video files, execute arbitrary code. Furthermore, it was possible for malicious websites to spoof the user interface. These malicious websites could open another website and ask the user for input without the user to see which website the request was submitted. The update can be downloaded via iTunes and the Software Update feature on the device.

Via Safari 8.0.8, Safari 7.1.8 and Safari 6.2.8 includes 27 vulnerabilities in the past. Through the leak could allow an attacker code on the system if the user visited a malicious Web site. Also, the leaking of cookies remedied and it is no longer possible to trace the history of private browsing sessions. The new versions can be downloaded via the Mac App Store. Last but OS X Server 4.1.5 appeared that fixes one vulnerability that an attacker can cause a denial of service.

Tuesday, 4 August 2015

Adware Uses Zero-Day Vulnerability In Mac OS X



A vulnerability in Mac OS X last month by a German researcher was revealed and has not yet been patched by Apple is now actively used by adware. Through the vulnerability could allow a local attacker to increase his or application user rights.

Anti-virus firm Malwarebytes recently discovered an adware installer that uses the vulnerability to gain root privileges on Mac computers. Besides installing the VSearch adware installer also installs the adware Genieo and the very controversial MacKeeper on computers. Finally sends users to the Mac App Store to download the Download Shuttle app there. Do not know where the adware is offered exactly Malwarebytes late, but the company advises users to be careful what they download.

Thursday, 2 July 2015

Apple Closed 164 Vulnerabilities In OS X, iOS, Safari, iTunes, And QuickTime


Apple yesterday evening updates for Mac OS X, iOS, Safari, iTunes, QuickTime, and Mac EFI released that fix vulnerabilities 164 together. Most of the updates, 77 in total, appeared for Mac OS X in the form of OS X Yosemite 10.10.4 and Security Update 2015-005 .

Thus, clearing the logjam attack through these updates, as well as several vulnerabilities which could allow an attacker at worst arbitrary code on the computer. This could for instance by the user to open a malicious zip file. The updates can be downloaded via the Mac App Store or Apple's download site.

IOS

In iOS 8.4 , Apple fixed 33 security vulnerabilities. Through the vulnerabilities could allow an attacker who is between the user and the Internet was to intercept network traffic, execute arbitrary code, external HTML in the Mail app loading, accounts taken over by users to a malicious website visits or perform the logjam attack. For arbitrary code execution, an attacker could use a malicious SIM card. Updating to iOS 8.4 can automatically or manually via iTunes or the Software Update feature.

Safari and Mac EFI

Apple also released new versions of Safari. Safari 8.0.7, Safari 7.1.7 and Safari 6.2.7 fix four vulnerabilities allowing a malicious website could approach the WebSQL database from other websites, visiting a specially prepared website made ​​it possible to hijack accounts, there via a malicious link to a PDF file was embedded in a website cookies could be stolen and the worst could be executed arbitrary code when visiting a malicious website. Updating via the Mac App Store.

Apple also patched the leak making it possible via a malicious app with root privileges EFI firmware to match. Furthermore, among the Rowhammer attack, which investigators DDR3 memory could attack the past. Also EFI Mac Security Update 2015-001 is available via the Mac App Store.

Windows Users

For Windows users also appeared updates. These are patches for QuickTime and iTunes for Windows. iTunes 12.2 for Windows 7 and Windows 8 fixes 39 vulnerabilities could allow an attacker, who was between the user and the Internet, could execute arbitrary code on the computer and the iTunes Store was visited. In QuickTime was the execution of arbitrary code.This, however, had to be opened a specially prepared file. The nine leaks in QuickTime 7.7.7 corrected.

Sunday, 22 March 2015

Apple Removes Antivirus Apps From App Store For Misleading


Apple has removed antivirus apps in the iOS App Store because the description was misleading and could make customers think that there are viruses for the operating system, claims one of the affected anti-virus companies. Wednesday came Intego Virus fighter with the message that the program Virus Barrier Apple had been removed. This allows users to receive any program updates, as they walk through the App Store.Virus definitions are still updated, as it goes through a different channel.

VirusBarrier is an app that can scan files on iPads, iPhones and iPods, such as e-mail attachments. "Your iOS device can serve as a gateway for malware and viruses. Infected attachments can to your computer, your friends, family and colleagues to be sent," the description. According to Intego was the action of Apple not only against the company, but different companies would have been affected. Opposite MacRumors explains the CEO of Intego that Apple was misleading description of the app, because the customer might make you think that there are viruses for iOS would be in circulation.

Intego went against the removal appeal. "We were as clear as possible that this was not a scanner, that the e-mail attachments and cloud files scanned." Despite this explanation Apple decided not to reinstall the app. Why Apple has removed the apps is unknown. Last year decided Intego Virus Barrier itself from the Mac App Store to remove because it was not possible to offer a scanner that would conform to the expectations of users.

Saturday, 21 March 2015

Apple Close Two Vulnerabilities In Mac OS X Yosemite


Apple has released a security update for Mac OS X Yosemite that fixes two vulnerabilities in the operating system, which could allow an attacker at worst arbitrary code with system privileges on the computer. The first problem was in the iCloud Keychain and occurred in the processing of data during the recover of the iCloud Keychain.

An attacker with a "privileged" network position could then execute arbitrary code via several buffer overflows. The second leak that Apple has solved ensured that could run malicious app code with system privileges. Security Update 2015-003 for Mac OS X 10.10.2 Yosemite also includes the contents of Security Update 2015-002 . The updates can be downloaded via the Mac App Store and Apple's download site .