Help - Search - Members - Calendar
Full Version: Hijacking A Macbook In 60 Seconds Or Less
BleepingComputer.com > General Topics > News
   
Scarlett
<img src='/images/misc/hacker3.jpg' style='float:right' vspace='8' hspace='8'> <b>That's exactly what hackers Jon "Johnny Cache" Ellch and David Maynor plan to show today in their Black Hat presentation on hacking the low-level computer code that powers many internal and external wireless cards on the market today.</b><br /><br />By Brian Krebs | August 2, 2006; 7:30 AM ET <br /> <br /> <br /> While those device driver flaws are particular to the Macbook -- and presently not publicly disclosed -- Maynor said the two have found at least two similar flaws in device drivers for wireless cards either designed for or embedded in machines running the Windows OS. <br /> <br /> Still, the presenters said they ultimately decided to run the demo against a Mac due to what Maynor called the * "Mac user base aura of smugness on security."<br /> <br /> * Quote of the day... :-,<br /><br /> <div class='newslinks'><img src='http://www.bleepingcomputer.com/forums/style_images/1/cs_page.gif'> <b>Link: <a href='http://blog.washingtonpost.com/securityfix/2006/08/hijacking_a_macbook_in_60_seco_1.html' target='_blank'><font color='red'>Hijacking a Macbook in 60 Seconds or Less</font></a><br /><img src='http://www.bleepingcomputer.com/forums/style_images/1/cs_page.gif'> <b>Link: <a href='http://seattlepi.nwsource.com/business/1700AP_Wireless_Vulnerability.html' target='_blank'><font color='red'>Experts discuss wireless vulnerability @Seattle PI.com</font></a><br /><img src='http://www.bleepingcomputer.com/forums/style_images/1/cs_page.gif'> <b>Link: <a href='http://isc.sans.org/diary.php?storyid=1535' target='_blank'><font color='red'>Intel Centrino Vulnerabilities @ Sans.org</font></a><br /><img src='http://www.bleepingcomputer.com/forums/style_images/1/cs_page.gif'> <b>Link: <a href='http://www.f-secure.com/weblog/archives/archive-082006.html#00000940' target='_blank'><font color='red'>Intel Centrino Patch Follow Up @ F-Secure</font></a><br />
need TOS
Just goes to prove that MAC is as vulneralbe as Windows but not targeted as much. If you stick to Windows just take more caution. Remeber just because it is a MAC dont mean it is going to be safe forever..
Klinkaroo
MAC might be "safer" that is exactely the word they aren't "SAFE". Anything can be hacked as long as the hacker puts his mind to it... All we can do is slow them down and make new ways of trying to stop them...
Albert Frankenstein
This quote scares me a little:

Microsoft is trying to rectify that problem with Windows Vista -- the next version of its operating system by only allowing the installation of device drivers that have met the company's security testing procedures.


Don't creators of device drivers have to pay Microsoft in order to get tested and get signed by Microsoft? It sounds like the creation of another profit center for Micro$oft.
need TOS
I agree Albert. Just a way to make things worse for all or us. M$ makes enough $ as it is no need for ne more. If I cant install a driver tht isnt signed by M$ then I am staying with XP and DOS on most of my systems.
no one
QUOTE
MacBook Wi-Fi hack didn't use Apple drivers

By Jim Dalrymple

In early August a senior researcher at SecureWorks said he had revealed a vulnerability in Apple’s MacBook wireless software driver that would allow him to take control of the machine. While the researcher did find a vulnerability, he was using a third-party wireless driver, not the driver that ships with the MacBook.

“Despite SecureWorks being quoted saying the Mac is threatened by the exploit demonstrated at Black Hat, they have provided no evidence that in fact it is,” Apple Director of Mac PR, Lynn Fox, told Macworld. “To the contrary, the SecureWorks demonstration used a third party USB 802.11 device–not the 802.11 hardware in the Mac–a device which uses a different chip and different software drivers than those on the Mac. Further, SecureWorks has not shared or demonstrated any code in relation to the Black Hat-demonstrated exploit that is relevant to the hardware and software that we ship.”
http://www.macworld.com/news/2006/08/17/wi...shack/index.php
Gaming Guru
Yeah, Windows is mainly a target because most of the people use it, but if Mac gets really really popular it'll be a giant target too.
KoanYorel
UPDATE

"SecureWorks admits to falsifying MacBook wireless hack"

And some comments at CoU too.

(Liars deserve a large L burned onto their heads around all points of the compass so we can see them coming, going, passing or just idling.)
Scarlett
Thanks Koan for the update. I have edited the the title appropriately.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2008 Invision Power Services, Inc.