Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.
Is this something that has been possible since the very first OSX release?????

Slow down Apple please focus the next major release on OSX refinements not buggy and slow feature releases.
 
The sooner everyone STOPS downloading the new versions - the sooner Apple will notice that folks are tired of beta testing and buggy software.
But in this day and age in the western world, people have nothing better to do than download the latest greatest in between work and reality tv. :D

This isn't really the users' fault. I'm still running Sierra, and the last reminder Apple spammed me with asking me to update to High Sierra had two options: Update, and Tell me More (which turned out to link to Apple.com). There was no way to even remove the reminder without either updating, or clicking on the Apple.com link.
 
OMG IT WORKS!!!!

Mommy, I am scared.

Scared?

Robert Downey (not credited as Jr) in Weird Science
We're ******** eggrolls
Scene: Trying to make a Lisa with bigger um you get the idea (funny Lisa is an Apple computer).

I just tried this on my Active Directory Domain Joined Macbook Pro 13" on macOS 10.13.1 and this exploit gets worse!

Macbook has FileVault Turned ON
Brought up the lock screen and clicked switch user
Was able to bring up a Blank User ID and Password prompt
Username root
Manually clicked with the trackpad in the password field (left it blank)
Hit Enter key

System let me right in the "System Administrator" account. This so called account does not appear in the users section of the preference pane.

Also I am able to unlock any locked system preference with this root user and no password.

This is insanity. All a person needs is physical access to a machine and you are done. Not as big of a problem for the home but a massive issue for corporations like IBM or Google, both of which have thousands of Macs for their developers.

BUT you forgot you're on an Active Directory domain machine!
If you're on the internal network, any admin that logs onto a Win Server can access the IP of your MBP (domain joined) and try this. They can affectively change permissions remotely can they not? This is regardless of folders being shared in system preferences.

This may occur as well if you're connected to corporate network via VPN too - if you're VPN IP shows as internal IP after say 15mins or if updated immediately. Welcome to our control.
 
  • Like
Reactions: Feenician
Wonder if anyone at apple cares enough about this issue to do something about it or are they all on their Thanksgiving break still and couldn't give a s***?
What a sloppy, messy joke their software is becoming.
Simply too rich,fat, and lazy to care I guess.
 
Read the article. The login screen can be fooled too. That means, anyone with physical access, have root access.
This level of "hack" requires the IQ of a potato to perform which means this is one of the worst security bugs to pop up in YEARS!

Not only physical access but network access as well. I was able to perform the exploit on a remote computer using ARD.
 
  • Like
Reactions: DeepIn2U
can one ssh on this machine as root? (if remote login enabled)

Edit: I usually forget to disable remote access
 
root? Lawd, I can hear the Unix sys admins I used to work with now... I have to forward this to my Security instructor. More importantly, I need to tell my friends who have Macs that DON’T frequent these forums.

Fortunately, I’m still on Sierra, but coincidentally was just having conversations earlier this evening with a friend who wanted to buy a MacBook Pro for the first time. He was asking my opinion and experience. I’m over here singing praises over the phone all while THIS is going on. Wow, let me go back and tell him to make sure whatever he decides to buy is NOT on High Sierra.

As crazy as this is to read, it’s sadly not surprising (outside of it being Apple where this happened!). Testing always gets shafted when software development projects get under the gun - if that phase is even given enough time to begin with. It’s becoming more and more common, but Apple really should know better. This is basic security and absolutely unacceptable. Apple should probably investigate this looking for malicious intent - it’s so basic and it clearly didn’t exist before. Just unbelievable.

I expect more to come out of this besides heads rolling. Just wow.

Hats off to the devs who found this and are spreading the word on fixes until Apple resolves this.
 
  • Like
Reactions: DeepIn2U
Is this something that has been possible since the very first OSX release?????

Slow down Apple please focus the next major release on OSX refinements not buggy and slow feature releases.

No, this particular bug is unique to High Sierra. Root escalation exploits on the other hand have been available on every version, until found and patched.
 
root? Lawd, I can hear the Unix sys admins I used to work with now... I have to forward this to my Security instructor. More importantly, I need to tell my friends who have Macs that DON’T frequent these forums.

Fortunately, I’m still on Sierra, but coincidentally was just having conversations earlier this evening with a friend who wanted to buy a MacBook Pro for the first time. He was asking my opinion and experience. I’m over here singing praises over the phone all while THIS is going on. Wow, let me go back and tell him to make sure whatever he decides to buy is NOT on High Sierra.

As crazy as this is to read, it’s sadly not surprising (outside of it being Apple where this happened!). Testing always gets shafted when software development projects get under the gun - if that phase is even given enough time to begin with. It’s becoming more and more common, but Apple really should know better. This is basic security and absolutely unacceptable. Apple should probably investigate this looking for malicious intent - it’s so basic and it clearly didn’t exist before. Just unbelievable.

I expect more to come out of this besides heads rolling. Just wow.

Hats off to the devs who found this and are spreading the word on fixes until Apple resolves this.

Unfortunately we'll not see heads roll ... too costly with stock options and such. It's like a union at the executive level. To be quite honest anyone with a PHD in Software or leads under and including Federighi should be checking security such as root on EVERY Alpha/Beta version of OSX / iOS prior to beta developer release and public releases.

Somebody should get a hurt, real bad!

Read the news item. Fixed the bug with per Apple's instructions. All good. Move along peeps.

A high level security issue like this is fixed by Apple releasing a fix it support page for MANUAL action by the end user to resolve?! Seriously you call THIS FIXED?!

This should be an immediate patch sent out by Apple ... THAT is a fix. If this was Microsoft on Windows (take your pick on ANY version) .... man Bloomberg and everyone else would be pointing fingers dissing and saying this/that.

Apple should NOT get any sort of pass on this, as your post sort of implies, imho. I believe somewhere in the software acceptance page the OS belongs to Apple and it's their responsibility, no?
PS: I don't own a Mac and haven't for 6mths. I will in another 4mths.
 
  • Like
Reactions: ThaRuler
This should be an immediate patch sent out by Apple ... THAT is a fix. If this was Microsoft on Windows (take your pick on ANY version) .... man Bloomberg and everyone else would be pointing fingers dissing and saying this/that.

There is, always has been, and probably always will be methods to bypass local security on Windows.

https://www.myce.com/news/old-looph...and-reset-the-windows-10-user-password-78066/

This isn’t even the only way. Once again, there is no local security on Windows. If you have physical access you can get Admin access. This won’t be fixed.
 
  • Like
Reactions: DeepIn2U
I am root.

Apple quick ****ing up/end_rant
[doublepost=1511935813][/doublepost]
This is worrying. Apple need to focus on Mac and stop rushing! What’s happening with Apple?
Spreading themselves too thin and I've heard can't retain talent? Not sure about the second one.
[doublepost=1511936108][/doublepost]
Is this something that has been possible since the very first OSX release?????

Slow down Apple please focus the next major release on OSX refinements not buggy and slow feature releases.


EXACTLY!!!

Quit making "innovation" for the sake of being different and make the products work. Added a touch bar with fingerprint scanner but forgot to take out Root level access by typing in Root on the administer lock screen. Just sloppy work. People need to be fired or stripped down to their underwear and throw tomatoes at them in middle of their spaceship office.

I don't want my phone to freeze and have to restart constantly (cought cought IOS 11), and I don't want my laptop to have such security lapses its ridiculous.
 
Last edited:
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.