Mac hacked in 2 minutes


Recommended Posts

Someone had to surf to the page....

But the hacker himself doesn't need physical access. I have seen atleast three instances when Neowin itself served malicious code in its pages -- I am not sure whether Neowin was hacked or it was some compromised ad servers (more likely the later). Futhermore, the browser engine can itself be used by several other parts of the system for example to render gadgets, widgets. Any of these can be vector for exploiting the system.

Name an OS? I can tell you how to pull data. Remember, even encrypted drives can be thwarted by reading the keys form memory.

Really...

So you can read the data of an encrypted Bitlocker drive witht he encryption key on an USB stick ? you know one of the ways that actully secures your encrypted drives against those RAM memory rebot tricks ? that'd be interesting to see :)

----

Also this particular hack, since it uses a webpage exploit. Though no data is released about it, it would seem that a properly set up Vista laptop with UAC on and IE in protected mode would have stopped the exploit from reading this file. uless the exploit somehow manages to evade protected mode.

its userland, core libraries, and applications are almost entirely custom Apple code and design - with no real emphasis on security. Apple simply doesn't have the same experience writing secure software that Microsoft does. Ridicule Microsoft all you want, but they / we have learned a whole lot from what Windows has been through over the last decade.

You might want to be a little careful with those claims.

Someone had to surf to the page....

Of course. Macs aren't usually servers where they'll be running lots of things listening for connections, so someone would have to do something for it to get hacked. Most desktop hacks work that way, it's not every day a worm comes out that will infect your PC just by having it sitting there.

market share has nothing to do with vunerabilities,, the holes are there regardless of how many use a system

Not said by the people who know,imagine all this vulnerabilities in Mac OSX with this tiny market share,then imagine if Mac OSX has 93% of market share (DANG!),now imagine that windows (Vista and XP) has lesser vulnerabilites with 750 million computers than OSX with 50 million pc at the most,and im being optimistic.

Can you see the breach?

Hope so,otherwise i'm so sorry :)

He used Safari vulnerability that means Vista/XP and other Windows versions are vulnerable in the same way. As I remember there are three computers this year, Windows, Linux and Mac. And I think that each of them will be hacked. Most of security researches are working on ways to hack all three with the same method. First day no one tried, because only attack from internet was allowed and today (second day) is allowed to use preloaded software and I think later they will install more 3rd party software and that will definitely make all of them vulnerable.

If a Man made, Man can brake.

Wow man! $10 000 in 2 min! What a smart a**!

If there is anything cool worth doing in this world, it would be hacking! :p

... how about getting some greens while doing it!

Hacking for good is actually a good thing, but straight up hacking, I would have to reject to.

I'm not surprised really, no system is secure forever. You can only be vigilant to ensure nothing gets on to your computer, that's all.

Scirwode

... how about getting some greens while doing it!

Hacking for good is actually a good thing, but straight up hacking, I would have to reject to.

Hacking is always good. The guy in this article was actually "cracking". People always mistake cracking for hacking.

Crackers always demolish what hackers build, i.e. walls, security etc.

It was social engineering however so the cracking contest doesn't really count - this is no different than me putting up an iFrame vulnerability that exists in IE6/IE7 even today.

Anyone using MSN yesterday should be very aware how easy it's to blow up your IE because I kept getting messages from people asking me to click a certain link that opened an iframe and affects all IE6 and IE7 (Also Vista, because most of the people on the list who sent me the message were Vista users).

What now Mac? goes to show mac can be hacked just like windows there for then being an overpriced piece of metal.

Well, ANY OS can be cracked [not hacked really], it just depends on whether you want to....

And don't give me sh*t about how invincible Linux is :p

the overpriced part has been proven wrong so many times its not funny.

^ Thats clearly why i said its an overpriced piece of metal! :laugh:
Edited by Hell-In-A-Handbasket
the overpriced part has been proven wrong so many times its not funny.

"overpriced" is relative to what you think something is worth. As evident of Apple's PC market share, they are overpriced.

and of all the Windows machines i work on in a daily basis vs the mac's that i work on, your Mac's can be hacked like windows is also wrong, this " Hack " required a person to be walked through the entire process as though the hacker was at the actual computer. if given physical access to the computer by means of " hand-holding " or touch, any system will go down.

There was no "hand holding." The man told the victim, "Go to this site." That's it.

the only diffrence is that you turn on a Windows PC and its vunerable ( i have witnessed this by putting a non-firewalled/viri/adware windows system on the net, and not touched it, couple days later, its pretty much worthless( aka like a HoneyPot )

Bull.

Face it. Macs are made from the same parts as Windows PCs. The only difference is shiny plastic and a unified experience. They aren't more secure, they aren't better built. In fact, they're probably shiny because they're covered in lead paint. That would explain the bizarre behavior of Mac fanatics: too much smooching the computer.

Edited by GreyWolfSC

there was more involved then going to a site

and your reply to the windows PC, is actually true, it was done in my Security Class before i graduated, just like i also used the MMC to remotely connect to a machine across the classroom and edited their registry(entrys in MMC go to registry) to lock their startmenu, edit permissions. and at a LAN party as a practical joke, inserted a couple porn vid's to a friends startup. if i have physical access to it but its locked, i can BART it, remove the PW, load the registry into BART Edit that, and do whatever else to the system

there is no Bull***, its fact as iv done it, my job requires me to break into a system @ customers request, or recover files/information if they can no longer access their computer

"overpriced" is relative to what you think something is worth. As evident of Apple's PC market share, they are overpriced.

There was no "hand holding." The man told the victim, "Go to this site." That's it.

Bull****.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Same Internet Archive seemed to grab the new version https://web.archive.org/web/20...d/Setup_MakeMKV_v1.18.4.exe Here's the link to an additional file it periodically downloads https://web.archive.org/web/20260213092148/https://www.makemkv.com/sdf.bin I think update's keys, etc. To manually trigger this update, put the sdf.bin file in the root of where the program is installed. When you launch the program it will pick up the file and import it. Typically put it here: C:\Program Files (x86)\MakeMKV\sdf.bin
    • Windows 11 KB5094126, KB5093998 bugging out Office apps but it may not be Microsoft's fault by Sayan Sen Microsoft last week released Windows 11 KB5094126 and KB5093998 as the latest Patch Tuesday updates. Following that the company also published the accompanying dynamic updates under KB5094149, KB5095971, and KB5094156. Although the tech giant did not acknowledge any major problems, some users online reported various issues ranging from OneDrive and Dropbox access problems, BitLocker recovery lockouts, to blue screens and BSODs. You can read about them in this dedicated piece. While there is still no confirmation about those problems from Microsoft the company has admitted to another bug which we did not report on. The tech giant has confirmed it has received reports of an issue in which certain third-party applications may be unable to launch Microsoft Office apps or open Office documents after installing the Patch Tuesday. This affects both Windows 11 as well as Windows 10. The company says the problem impacts a subset of applications that rely on OLE (Object Linking and Embedding) automation to communicate with Microsoft Office programs. According to Microsoft, affected scenarios involve third-party software attempting to open Office applications or documents from within their own interface. In such cases, the Office program may fail to launch altogether, or the requested document may not open. Oddly there may not be any error message, which probably makes the issue difficult to diagnose. The bug affects several Office products, including Word, Excel, PowerPoint, Access, and other apps in the Microsoft Office suite when they are launched through the affected software. These include tax and accounting software such as CCH Engagement and Workpaper Manager, dental practice management solutions like Dentrix and Softdent, as well as the popular research and reference management tool Zotero. Microsoft adds that other applications using similar Office integration methods could also experience the same problematic behavior. To understand the issue it is important to look at OLE, the Microsoft technology involved. OLE allows different applications to work together and share data, while its Automation feature lets one program control another. Thus this enables third-party software to launch Microsoft Office apps, open documents, and perform tasks automatically without requiring users to switch between programs. Because many accounting, healthcare, research, and business applications rely on OLE automation to interact with Word, Excel, PowerPoint, and other Office apps, any disruption can break those workflows. As a result, affected software may be unable to open Office documents or launch Office applications even though the programs themselves continue to work normally. At the moment the company has not provided a permanent fix though it has confirmed that engineers are actively working on a resolution, which will be delivered through a future Windows update. As such additional details will be shared once more information becomes available. In the meantime, Microsoft recommends a simple workaround for affected users whic is to open the Office application or document directly rather than launching it through the third-party program. For enterprise customers and organizations managing larger deployments, Microsoft says an additional mitigation is available. Admins experiencing the problem on their managed devices are advised to contact Microsoft Support for business to obtain and apply the workaround.
    • It saddens me when cars are such dull colours now. Mine is bright metallic blue and I absolutely adore it for standing out in contrast to that depressing backdrop of traffic.
    • Sparkle 2.20.0 by Razvan Serea Sparkle is a free, open-source Windows optimization tool designed to make your PC faster, cleaner, and more private. With Sparkle, you can easily debloat Windows by removing unnecessary apps and services, disable Microsoft tracking to enhance privacy, and apply performance tweaks to boost speed. Its cleaner removes junk and temporary files, while every change is safe and fully reversible. Sparkle also features a modern, user-friendly interface with automatic updates, making system maintenance simple. Explore over 39 tweaks, from disabling telemetry and hibernation to optimizing network and game settings, all aimed at customizing and enhancing your Windows experience. Sparkle supports Windows 10 and 11. Sparkle 2.20.0 changelog: Debloat Tweak has animated border New homepage loading UI New Tweak Modal (Markdown Supported) Refactored GPU Detection Added Tests with vitest Added foobar2000 to apps Added Localsend to apps Updated Modal Styles Added styles for disabled inputs Added Animated Border to debloat-windows tweak Bumped dependencies Refactor System info logic for speed Tweak info modals now support Markdown Added Clear System info cache to settings Redesigned Home Page Loading UI Changed Some Icons around the app Download: Sparkle 2.20.0 | Portable | ~100.0 MB (Open Source) Links: Sparkle Website | Github | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • lol it was a typo, fixed! haha imagine an actual 4TB Gen4 NVMe for $40 in 2026
  • Recent Achievements

    • Reacting Well
      Dys Topia earned a badge
      Reacting Well
    • Conversation Starter
      NovaEdgeX earned a badge
      Conversation Starter
    • One Year In
      Console General earned a badge
      One Year In
    • Week One Done
      Twozo Technologies earned a badge
      Week One Done
    • One Month Later
      Twozo Technologies earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      517
    2. 2
      +Edouard
      184
    3. 3
      PsYcHoKiLLa
      106
    4. 4
      Steven P.
      88
    5. 5
      ATLien_0
      68
  • Tell a friend

    Love Neowin? Tell a friend!