Forum Home
Press F1
 
Thread ID: 124619 2012-05-07 08:44:00 Mac users beware somebody (208) Press F1
Post ID Timestamp Content User
1274043 2012-05-07 08:44:00 A major, major security flaw:

www.zdnet.com
somebody (208)
1274044 2012-05-07 08:56:00 What a FAIL Apple!!!:D stratex5 (16685)
1274045 2012-05-07 09:25:00 note: "in specific configurations" Its only a problem for people who used filevault before lion but keped the legacy version.

1. Hardly anyone uses filevault.
2. I doubt many people would keep the legacy version when updating to lion.
3. You have to have been using a legacy version of file vault prior to lion and then upgrade to lion. (anyone using legacy filevault probably wont be upgrading to lion)
Slankydudl (16687)
1274046 2012-05-07 09:41:00 It may or may not be a big problem, but what is very bad is this:

This bug (LEA feature?) seems to have been introduced into MacOS Lion 10.7.3 early February 2012 and so far has not been corrected by any updates

Not to many companies introduce bugs by mistake then do nothing to fix it. So almost 3 months down the track a known security risk and they have yet to do anything about it. Most companies who accidentally do something like this are damn quick to fix it and push out a fix.


On the Apple Support Communities, at least one user noticed the flaw exactly three months ago, and asked for an explanation.

Nobody got back to him

Way to go apple , time to live up to there own statements as stated malware-exposes-big-gaps-in-apple-security-response (www.zdnet.com) highlighted in the article :p

MAC's may be less prone to being infected, but all that can change when the malware writers take advantage of out dated systems. It will happen the more people use MAC's.
wainuitech (129)
1274047 2012-05-07 09:51:00 wow... look at my post. Slankydudl (16687)
1274048 2012-05-07 09:54:00 What about your post? stratex5 (16685)
1274049 2012-05-07 10:04:00 wow... look at my post. Its not just one bug. If anyone read articles its many security bugs that are not patched and Apple take longer than other companies to fix.

While its true that a lot has to do with user input, malware writers are getting smarter and starting to turn their "handy work" to MAC's.
wainuitech (129)
1274050 2012-05-07 10:05:00 note: "in specific configurations" Its only a problem for people who used filevault before lion but keped the legacy version.

1. Hardly anyone uses filevault.
2. I doubt many people would keep the legacy version when updating to lion.
3. You have to have been using a legacy version of file vault prior to lion and then upgrade to lion. (anyone using legacy filevault probably wont be upgrading to lion)

So what? The point is, Apple should have released a fix for this a long time ago.

People who are likely to use Filevault are precisely the people who want to keep their systems secure for whatever reason - e.g. three letter agencies, companies with commercial secrets, private individuals etc.

What would you say if Microsoft accidentally released a massive security hole as part of a patch to BitLocker for example?
somebody (208)
1274051 2012-05-07 10:08:00 wow... look at my post.

I still dont get what this post means.
stratex5 (16685)
1274052 2012-05-07 10:15:00 I still dont get what this post means.

Because you obviously don't use a mac regularly and/or bother to read much about how the OS works and the features it has.

I do agree with wainu though. Recently there has been a lot more rouge software and files floating around for mac. Guess they're slow to respond because they aren't used to dealing with these kind of things. You'd hope they would be able to get their act together and get on top of things like this soon.
icow (15313)
1 2