See the DNS bug attack in action.. OS X still not patched

Discussion in 'macOS' started by Amdahl, Jul 28, 2008.

  1. Amdahl macrumors 65816

    Joined:
    Jul 28, 2004
    #1
    http://www.infobyte.com.ar.nyud.net/demo/evilgrade.htm

    This is a cached link to a screen-movie that shows a hacker running their tool to fool a DNS server into thinking the hacker is the Java update server. Then, he runs the Java updater manually in Windows 2000, and takes over the computer.

    The tool can do the same for OS X, iTunes, Winzip, Java, Winamp, Notebook, OpenOffice, and more. Read more here:
    http://www.theregister.co.uk/2008/07/28/pwning_security_updates/

    Now, why has Apple still not got their updates out? The world is starting to wonder: http://it.slashdot.org/it/08/07/28/2311240.shtml
     
  2. Daveoc64 macrumors 601

    Joined:
    Jan 16, 2008
    Location:
    Bristol, UK
    #2
    This is pretty worrying.

    All of those other companies managed to get a fix out. Apple really needs to keep up if it is to be taken seriously by corporations with servers.
     

Share This Page