<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Mac OS X on Insinuator.net - Bold Statements</title>
    <link>https://insinuator.net/tags/mac-os-x/</link>
    <description>Recent content in Mac OS X on Insinuator.net - Bold Statements</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Fri, 13 Nov 2020 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://insinuator.net/tags/mac-os-x/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Forklift &amp;lt;=3.3.9 and &amp;lt;=3.4 Local Privilege Escalations on macOS (CVE-2020-15349/CVE-2020-27192)</title>
      <link>https://insinuator.net/2020/11/forklift-lt3.3.9-and-lt3.4-local-privilege-escalations-on-macos-cve-2020-15349/cve-2020-27192/</link>
      <pubDate>Fri, 13 Nov 2020 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2020/11/forklift-lt3.3.9-and-lt3.4-local-privilege-escalations-on-macos-cve-2020-15349/cve-2020-27192/</guid>
      <description>&lt;p&gt;I have started to have a look at my local installed helpers on macOS. These helpers are used as an interface for applications to perform privileged operations on the system. Thus, it is quite a nice attack surface to search for Local Privilege Escalations.&lt;/p&gt;&#xA;&lt;p&gt;Forklift is an advanced dual pane file manager for macOS. It is well known under macOS power users.&lt;/p&gt;&#xA;&lt;p&gt;As part of my investigation I identified vulnerabilities in Forklift allowing local privilege escalation.&lt;/p&gt;</description>
    </item>
    <item>
      <title>macOS Mojave Hardening Guide</title>
      <link>https://insinuator.net/2019/01/macos-mojave-hardening-guide/</link>
      <pubDate>Thu, 10 Jan 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/01/macos-mojave-hardening-guide/</guid>
      <description>&lt;p&gt;Due to the new release of macOS Mojave in September we updated the El Capitan hardening guide.&lt;/p&gt;&#xA;&lt;p&gt;The hardening guide received a little revamp on some chapters which are now obsolete or had to be changed due to the new features of macOS Mojave. Further, the hardening guide got extended for the new privacy features in macOS Mojave.&lt;/p&gt;&#xA;&lt;p&gt;You can check it out &lt;a href=&#34;https://github.com/ernw/hardening/blob/master/operating_system/osx/10.14/ERNW_Hardening_OS_X_Mojave.md&#34;&gt;here&lt;/a&gt;. We hope some of you might find it helpful.&lt;br&gt;&#xA;Cheers,&lt;br&gt;&#xA;Birk&lt;/p&gt;</description>
    </item>
    <item>
      <title>IPv6 Hardening Guide for OS X</title>
      <link>https://insinuator.net/2015/02/ipv6-hardening-guide-for-os-x/</link>
      <pubDate>Wed, 04 Feb 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/02/ipv6-hardening-guide-for-os-x/</guid>
      <description>&lt;p&gt;Similar to the documents we released &lt;a href=&#34;http://www.insinuator.net/2014/12/ipv6-hardening-guide-for-linux-servers/&#34;&gt;for Linux&lt;/a&gt; and &lt;a href=&#34;http://www.insinuator.net/2014/12/ipv6-hardening-guide-for-windows-servers/&#34;&gt;Windows&lt;/a&gt; (and actually inspired by a comment to the post on the Linux guide) &lt;a href=&#34;https://twitter.com/AntoniosAtlasis&#34;&gt;Antonios&lt;/a&gt; wrote another guide, this time for Mac OS X.&lt;/p&gt;&#xA;&lt;p&gt;It can &lt;a href=&#34;https://www.ernw.de/download/ERNW_Hardening_IPv6_MacOS-X_v1_0.pdf&#34;&gt;be found here&lt;/a&gt;. We hope some of you might find it helpful.&lt;br&gt;&#xA;Have a great day&lt;/p&gt;&#xA;&lt;p&gt;Enno&lt;/p&gt;&#xA;&lt;p&gt;PS: in the past we also made a &lt;a href=&#34;https://www.ernw.de/download/hardening/ERNW_Checklist_OSX_Hardening.pdf&#34;&gt;general Mac OS X hardening document available&lt;/a&gt; and we’ve discussed an additional patch &lt;a href=&#34;http://www.insinuator.net/2013/07/basic-os-x-hardening-dma/&#34;&gt;in this post&lt;/a&gt;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Basic OS X Hardening &amp; DMA</title>
      <link>https://insinuator.net/2013/07/basic-os-x-hardening-dma/</link>
      <pubDate>Wed, 31 Jul 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/07/basic-os-x-hardening-dma/</guid>
      <description>&lt;p&gt;In the course of a recent endpoint assessment, we also had a OS X 10.8 client system as a target. While we still rely on the Firewire “capability” of unlocking systems on a regular base (using &lt;a href=&#34;http://www.breaknenter.org/projects/inception/&#34;&gt;this great tool&lt;/a&gt;), we noticed that Apple released a &lt;a href=&#34;http://support.apple.com/kb/HT5002&#34;&gt;patch&lt;/a&gt; to disable Firewire DMA access whenever the system is in a &lt;em&gt;locked&lt;/em&gt; state (e.g. with an active screensaver or no user logged in). As we test the Firewire DMA access vulnerability quite often (at least we thought so 😉 ) to prepare for demonstrations in the board room or client assessments, we were quite surprised that we must have actually missed that nice update. In order to verify the effectiveness of the patch, we ran our typical test bed and can quite happily confirm that the update successfully mitigates Firewire DMA access in locked system states.&lt;/p&gt;</description>
    </item>
    <item>
      <title>OS X Security in Corporate Networks</title>
      <link>https://insinuator.net/2011/08/os-x-security-in-corporate-networks/</link>
      <pubDate>Sat, 06 Aug 2011 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2011/08/os-x-security-in-corporate-networks/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.isecpartners.com/storage/docs/presentations/iSEC_BH2011_Mac_APT.pdf&#34;&gt;Interesting presentation&lt;/a&gt; just given at Black Hat Vegas.&lt;/p&gt;&#xA;&lt;p&gt;May be worth a read for those of you responsible for security in networks with MAC users.&lt;/p&gt;&#xA;&lt;p&gt;have a great weekend,&lt;/p&gt;&#xA;&lt;p&gt;Enno&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
