Latest in Apple

Image credit:

Mac exploit dodges Apple's anti-malware app check

Share
Tweet
Share

Sponsored Links

If you've used a Mac running OS X Mountain Lion or later, you're well-acquainted with Gatekeeper: it's the security measure that prevents unsigned apps from running unless you want them to. Unfortunately, it turns out that this first line of defense isn't quite as secure as it's supposed to be. Synack security researcher Patrick Wardle has discovered a flaw that lets malware get around Gatekeeper and do what it wants with your system. The trick 'hijacks' a signed app to pretend that it's legit, and uses clever file packaging to launch hostile code once OS X declares the host app safe. Wardle only used one app in a proof of concept demonstration, but other apps should work. You could even use malicious plugins (say, Photoshop add-ons) to bypass Gatekeeper.

Needless to say, this is a potentially nasty flaw. If attackers can convince you to download and install an authentic-looking app, they'll have a field day. The good news? Wardle took care to notify Apple before disclosing the exploit, and the company says that it's already working on a patch. It's not clear when this will arrive, so you'll want to stay on your toes until then -- grab apps only from those sources you can trust.

[Image credit: Getty Images/OJO Images RF]

In this article: apple, exploit, gatekeeper, mac, osx, security, software
All products recommended by Engadget are selected by our editorial team, independent of our parent company. Some of our stories include affiliate links. If you buy something through one of these links, we may earn an affiliate commission.
Comment
Comments
Share
Tweet
Share

Popular on Engadget

Roku is giving away 30 days of premium video

Roku is giving away 30 days of premium video

View
NASA warns Moon base plans might slip by a year

NASA warns Moon base plans might slip by a year

View
Lab-in-a-box test can detect COVID-19 in 5 minutes

Lab-in-a-box test can detect COVID-19 in 5 minutes

View
Google rolls out Drive shortcuts ahead of folder structure changes

Google rolls out Drive shortcuts ahead of folder structure changes

View
SpaceX launches its original Dragon capsule for the last time

SpaceX launches its original Dragon capsule for the last time

View

From around the web

Page 1Page 1ear iconeye iconFill 23text filevr