<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>ITunes on Insinuator.net - Bold Statements</title>
    <link>https://insinuator.net/tags/itunes/</link>
    <description>Recent content in ITunes on Insinuator.net - Bold Statements</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Mon, 28 Nov 2011 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://insinuator.net/tags/itunes/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>On the discussion about the iTunes 10.5.1 update</title>
      <link>https://insinuator.net/2011/11/on-the-discussion-about-the-itunes-10.5.1-update/</link>
      <pubDate>Mon, 28 Nov 2011 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2011/11/on-the-discussion-about-the-itunes-10.5.1-update/</guid>
      <description>&lt;p&gt;Currently there’s &lt;a href=&#34;http://krebsonsecurity.com/2011/11/apple-took-3-years-to-fix-finfisher-trojan-hole/&#34;&gt;quite some discussion&lt;/a&gt; ongoing why it took Apple so long to fix a &lt;a href=&#34;http://support.apple.com/kb/HT5030&#34;&gt;severe vulnerability in the update process&lt;/a&gt; of iTunes. A severe vulnerability which could easily be exploited by means of an automated tool called &lt;a href=&#34;http://www.infobytesec.com/down/isr-evilgrade-Readme.txt&#34;&gt;evilgrade&lt;/a&gt; which can be downloaded &lt;a href=&#34;http://www.infobytesec.com/developments.html&#34;&gt;here&lt;/a&gt; (Hi Francisco!). Just one small note here: did you know that evilgrade was first shown and released at the &lt;a href=&#34;http://www.troopers08.org/content/&#34;&gt;2008 edition&lt;/a&gt; of &lt;a href=&#34;http://www.troopers.de&#34;&gt;Troopers&lt;/a&gt;? We had a number of initial releases of tools in the last years (like &lt;a href=&#34;http://code.google.com/p/waffit/source/browse/trunk/wafw00f.py&#34;&gt;wafw00f&lt;/a&gt; at the &lt;a href=&#34;http://www.troopers09.org/content/&#34;&gt;2009 edition&lt;/a&gt; and &lt;a href=&#34;http://vasto.nibblesec.org/&#34;&gt;VASTO&lt;/a&gt; at the &lt;a href=&#34;http://www.troopers10.org/content/e3/index_eng.html&#34;&gt;2010 edition&lt;/a&gt;) and we will continue this fine tradition in 2012. I can already promise that some nice code is going to be released for the first time at Troopers12…&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
