Olympus-OM
[Top] [All Lists]

Re: [OM] Nasty iOS and OS X security bug

Subject: Re: [OM] Nasty iOS and OS X security bug
From: SwissPace <ian@xxxxxxxxxxxxxxxx>
Date: Wed, 26 Feb 2014 12:39:28 +0100
I believe OSX has now been patched 10.9.2 is available and I recommend 
updating asap.

On a secondary note I inadvertenly left a door open and some "kid" from 
spain managed to access one of our linux servers - they are not immune 
and I recommend running clamav and rkhunter if you are running linux as 
a desktop. It seems nothing is immune. as for me after 2 weeks of 
forensics it seems no harm was done and its all cleaned up but it 
shocked me how easy it was to gain access and I have been busy beefing 
up defences.



On 24/02/2014 14:44, Chuck Norcutt wrote:
> This is a nasty one that has apparently been there for a long time on
> both systems.  The iOS bug has been patched so be sure to get the update
> but the OS X fix is yet to come.  Since the bug affects Safari the
> suggestion is to use Chrome or Firefox until OS X is fixed.
>
> <http://krebsonsecurity.com/2014/02/ios-update-quashes-dangerous-ssl-bug/>
>
> For a deeper dive see:
> <http://www.zdnet.com/apple-and-the-ssltls-bug-open-questions-7000026628/>
>
> If you're a programmer check this
> <https://www.imperialviolet.org/2014/02/22/applebug.html>
> It's amazing that this was not caught in code inspection during development.
>
> Chuck Norcutt

-- 
_________________________________________________________________
Options: http://lists.thomasclausen.net/mailman/listinfo/olympus
Archives: http://lists.thomasclausen.net/mailman/private/olympus/
Themed Olympus Photo Exhibition: http://www.tope.nl/

<Prev in Thread] Current Thread [Next in Thread>
Sponsored by Tako
Impressum | Datenschutz