Apple Security Advisory 2013-03-14-1 – OS X Mountain Lion version 10.8.3 and Security Update 2013-001 addresses multiple vulnerabilities. These updates address a canonicalization issue with HFS and Apache, a buffer overflow in libtiff, an authentication bypass, and more.

This Metasploit module exploits a vulnerability in Viscosity 1.4.1 on Mac OS X. The vulnerability exists in the setuid ViscosityHelper, where an insufficient validation of path names allows execution of arbitrary python code as root. This Metasploit module has been tested successfully on Viscosity 1.4.1 over Mac OS X 10.7.5.

This Metasploit module exploits a vulnerability in Tunnelblick 3.2.8 on Mac OS X. The vulnerability exists in the setuid openvpnstart, where an insufficient validation of path names allows execution of arbitrary shell scripts as root. This Metasploit module has been tested successfully on Tunnelblick 3.2.8 build 2891.3099 over Mac OS X 10.7.5.

Telegraph.co.uk WikiLeaks soldier Bradley Manning: I wanted to expose 'bloodlust' of US forces … Telegraph.co.uk The young soldier revealed for the first time how he approached both The New York Times and The Washington Post with the archive of US secrets but was brushed off by both newspapers and turned instead to the anti-secrecy website WikiLeaks . Bradley Manning pleads guilty to 10 WikiLeaks charges DigitalJournal.com Private who gave US military secrets to WikiLeaks is facing up to 20 years in ..