What a surprise...
Obviously, Apple doesn't care about security..
What else can go wrong ?
thought.
Perhaps I'm different than most users of portable electronics, but my most important private/sensitive/financial data is on my portable laptop, not an iOS device. I'd much rather have my iOS device hacked into than my laptop.
I would think that most people do their taxes and financial management on a OSX machine rather than an iOS device....plus have a lot of other sensitive data on an OSX machine due to storage capacity.
But whatever. Heck of a job, Apple. Handled perfectly. Bravo!![]()
This is the first *REAL* vulnerability reported for a long time. And ... you are happy to switch to Windows; which has these issues all the time: this one was just published over the weekend:
http://www.darkreading.com/attacks-...40166255&elq=634c6bdfcd064335aa48243eb173c195
Many security flaws seem to be exploitable in theory but you'd have to be in the perfect storm of public wifi and around a hacker at the exact same time and place while transferring sensitive data.
GoToFail.com actually exists.
Nice.
That's a really good question. Any experts with insight? Many security flaws seem to be exploitable in theory but you'd have to be in the perfect storm of public wifi and around a hacker at the exact same time and place while transferring sensitive data.
A Whois lookup shows the identity of the gotofail.com registrant is protected behind an anonymous registration service.
So, is it possible that gotofail.com itself is nefarious? (Serious question I'm not trolling, I really don't know whether this should be worrisome.)
I'm a little interested how they know that it's goto and not some thing else… does goto actually have a one-to-one mapping with something in x86?
I'm surprised Apple doesn't have a static analyzer that automatically rejects code using a goto…)
I'm glad it happened. Just stop using useless Safari and go with Chrome.
Microsoft magically defies reality and fixes, tests, and releases Windows security fixes in a matter of minutes?'Microsoft issues fix" is the pertinent phrase in that headline. Meanwhile at Apple deleting one line of code proves too difficult to attempt over a weekend.
Because testing something for one completely different system is somehow relevant to another, right?I'm surprised that they aren't releasing any temporary fix.. while they are working on patch to fix one line of code.
Somebody might say that they need to test the patch, but they've already done that with iOS where the bug was exactly the same.
Microsoft magically defies reality and fixes, tests, and releases Windows security fixes in a matter of minutes?
Yes, but I think this article does a good job of explaining why that's such an issue...
My mbp has not left my house it two years lol I'm not worried. And I always shut wifi off when asked to join in a public unsecured area. Sometimes LTE is even snappier.
Hang on - "goto"? What code is this in? I take it it's not in Objective C - is a different language used for the lower level stuff?
----------
Makes it easier for the government to spy on you over the LTE of course. Not that a they apparently had much trouble anyway. Well, OK, that's not fair - they actually went to quite a lot of trouble to spy on you all didn't they.
Because testing something for one completely different system is somehow relevant to another, right?
I can imagine an NSA techie slamming his head into a wall while saying "*******! They found the loophole I inserted!"
"GoToFail"![]()
I can imagine an NSA techie slamming his head into a wall while saying "*******! They found the loophole I inserted!"