1.888.913.6266

Nanotek

Nanotek
  • About Us
    • Microsoft Partnership
    • Available Positions
    • Contact Us
  • Services
    • NanoConsult
      • IT Consulting Services
      • IT Support Services
      • Managed IT Services
      • Office 365 Migration Consultants
      • Microsoft Azure Managed Services
    • NanoCloud
    • NanoBackup
    • NanoVoice
    • NanoSecure
      • Nano Archiver
      • Nano Spam
      • NanoSecureMail
    • NanoCreaDev
  • Industries
    • Legal
    • Financial
    • Manufacturing
    • Associations / Lobby Groups
    • Small Businesses
    • Enterprises
  • IT Support Options
    • Get Customer Support
    • Support Packages & Contracts
    • Emergency Support Services
  • Case Studies
    • Success Story Videos
      • NanoVoice
      • NanoConsult
      • NanoCloud
    • Testimonials
  • Resources
    • Nanotek Blogs
    • Videos
    • Support Tools
  • Contact
    • Book Consultation
    • Request Quote
    • Request Cloud Demo
    • Referral Program
    • Contact Us
  • Like 

Apple failed to fix “rootpipe” backdoor flaw, researcher warns

11 years ago nanotek

terminal windowA bug that Apple said it fixed in the latest release of its OS X desktop operating system continues to plague every Mac owner, after a researcher found a way to exploit the flaw again.

Dubbed “rootpipe,” researchers claimed the vulnerability allows hackers or malicious actors to escalate a user’s privileges, making it easier to spread system-wide malware or take over an entire machine.

Apple indicated that the bug would only be fixed in the latest version of its software, OS X Yosemite, effectively forcing every older operating system user to upgrade in order to be patched. But, one researcher took a second attempt at exploiting the vulnerability on a patched machine, and succeeded.

Patrick Wardle said he was on a flight home when he found a “novel, yet trivial way” for any user to exploit the vulnerability for a second time — even on a patched machine — allowing the user to become the highest user privilege level, known as “root.”

Wardle said he informed Apple of the technical details behind the attack, but did not release further details in the spirit of responsible disclosure.

It’s not the first time Apple is said to have slipped up in issuing security updates. In iOS 7, a bug now known as the “goto fail” flaw allowed devices to be hit with man-in-the-middle attacks Check This Out.

Previous Post

10 VoIP features that can benefit your small business

Next Post

Security firm shows how to crash an iPhone with a wireless DoS attack

Recent Posts

  • NanoTek - Growth Chart Image
  • two young businessmen discussing document
  • Cloud computing
  • Doing Overtime Stacking Many Emails In Cyberspace
  • Blizzard
  • spam email
June 2026
M T W T F S S
1234567
891011121314
15161718192021
22232425262728
2930  
« Feb    

Tweets

  • About Us
    • Microsoft Partnership
    • Available Positions
    • Contact Us
  • Services
    • NanoConsult
      • IT Consulting Services
      • IT Support Services
      • Managed IT Services
      • Office 365 Migration Consultants
      • Microsoft Azure Managed Services
    • NanoCloud
    • NanoBackup
    • NanoVoice
    • NanoSecure
      • Nano Archiver
      • Nano Spam
      • NanoSecureMail
    • NanoCreaDev
  • Industries
    • Legal
    • Financial
    • Manufacturing
    • Associations / Lobby Groups
    • Small Businesses
    • Enterprises
  • IT Support Options
    • Get Customer Support
    • Support Packages & Contracts
    • Emergency Support Services
  • Case Studies
    • Success Story Videos
      • NanoVoice
      • NanoConsult
      • NanoCloud
    • Testimonials
  • Resources
    • Nanotek Blogs
    • Videos
    • Support Tools
  • Contact
    • Book Consultation
    • Request Quote
    • Request Cloud Demo
    • Referral Program
    • Contact Us
  • Toll Free: (888) 913.6266
  • General: info@nanotek.thedev.ca Support: support@nanotek.thedev.ca Sales: sales@nanotek.thedev.ca
  • 81 Zenway Boulevard Unit #1, Vaughan, ON L4H OS5 Canada

_________

© 2017 Nanotek Consulting Corp. All rights reserved.