Subscribe via feed.
Posts under OSX security tools

Apple Security Advisory 2012-11-01-2

Apple Security Advisory 2012-11-01-2 – Safari 6.0.2 is now available and addresses multiple arbitrary code execution vulnerabilities.

Tags: , , , ,

Apple Security Advisory 2012-11-01-1

Apple Security Advisory 2012-11-01-1 – iOS 6.0.1 is now available and addresses an information disclosure issue, a Passbook bypass, an arbitrary code execution vulnerability, and more.

Tags: , ,

Apple QuickTime Player 7.7.2 Crash

Apple QuickTime Player version 7.7.2 division by zero crash proof of concept exploit.

Tags: , , , ,

DropBox iOS / Android App File Theft

DropBox version 1.4.6 on iOS, 2.0.1 on Android, and Google Drive version 1.0.1 on iOS suffer from a file theft vulnerability due to allowing arbitrary javascript to be executed inside of the privileged file zone.

Tags: , ,

Secunia Security Advisory 50942

Secunia Security Advisory – Apple has issued an update for Java for Mac OS X. This fixes multiple vulnerabilities, which can be exploited by malicious people to disclose potentially sensitive information, manipulate certain data, cause a DoS (Denial of Service), and potentially compromise a vulnerable system.

Tags: , , ,

Apple Security Advisory 2012-10-16-1

Apple Security Advisory 2012-10-16-1 – Multiple vulnerabilities exist in Java 1.6.0_35, the most serious of which may allow an untrusted Java applet to execute arbitrary code outside the Java sandbox. Visiting a web page containing a maliciously crafted untrusted Java applet may lead to arbitrary code execution with the privileges of the current user.

Tags: , , , ,

Apple iOS Default SSH Password

This Metasploit module exploits the default credentials of Apple iOS when it has been jailbroken and the passwords for the ‘root’ and ‘mobile’ users have not been changed.

Tags: , , ,

Rubilyn 0.0.1

This is a 64bit Mac OS-X kernel rootkit that uses no hardcoded address to hook the BSD subsystem in all OS-X Lion and below.

Tags: , , ,

strongSwan IPsec Implementation 5.0.1

strongSwan is a complete IPsec implementation for the Linux, Android, Maemo, FreeBSD, and Mac OS X operating systems. It interoperates with with most other IPsec-based VPN products via the IKEv2 or IKEv1 key exchange protocols

Tags: , ,

Secunia Security Advisory 50859

Secunia Security Advisory – Some vulnerabilities have been reported in Apple OS X Server, which can be exploited by malicious people to disclose certain sensitive information, bypass certain security restrictions, and compromise a user’s system.

Tags: , , , ,