Major exploit found in macos kernel
Table of contents:
A security researcher in New York has been in charge of bringing to light a security problem, which is present in the kernel of the macOS operating system, and which allows complete control of the system.
macOS has a vulnerability that is 15 years old
This local privilege escalation bug resides in IOHIDFamily, a macOS kernel extension that has been designed for Human Interface Devices (HIDs), such as a touch screen or buttons, allowing an attacker to install a root shell or execute arbitrary code in the system.
Apple responds to accusations for reduced performance of its iPhone
The exploit affects all versions of macOS and allows arbitrary read / write errors in the kernel. In addition to this, it also disables the System Integrity Protection (SIP) and Apple Mobile File Integrity (AMFI) security features that offer protection against malware.
Since the vulnerability only affects macOS and is not remotely exploitable, the researcher decided to upload his findings online instead of reporting it to Apple. Apple's error rewards program does not cover macOS errors.
Thehackernews font"IOHIDFamily has been notorious in the past for the many race conditions it contained, which ultimately led to much of it being rewritten to use command gates, as well as large parts being blocked by rights."
"I was originally looking at its source in hopes of finding an easy-to-reach fruit that would allow me to compromise an iOS kernel, but what I didn't know then is that some parts of IOHIDFamily exist only in macOS, specifically in the IOHIDS system, which it contains the vulnerability."
Linksys routers found serious vulnerabilities
This time it's up to Linksys and some 26 signature router models, all sharing the same vulnerabilities. Find out what they are.
Exploit in ps4 kernel opens doors to jailbreak
Found a vulnerability in the PS4 operating system kernel, it opens a first door to hacking in the console.
Irreparable exploit found on nintendo switch
Hacker Katherine Temkin and the ReSwitched team revealed an exploit on the Nintendo Switch that no firmware update can shutdown.