A malicious Jar file can bypass all OS X Gatekeeper warnings and protections, allowing a remote attacker to execute arbitrary unsigned code downloaded by the user. Java must be installed…
>> ARCHIVE: 2015-01
Ghost Vulnerability CVE-2015-0235 White Paper
McAfee Data Loss Prevention Endpoint – Arbitrary Write Privilege Escalation
VSAT Sailor 900 – Remote Exploit
OS X < 10.10.x – Gatekeeper bypass Vulnerability
UniPDF 1.1 – Crash PoC (SEH overwritten)