Silent Replacement of Trusted macOS App Executables

·Hacker News··

A vulnerability in macOS allows an attacker to silently replace the main executable of any application downloaded from the web without requiring elevated privileges. As a result, trusted applications can be made to execute attacker-controlled code without triggering security warnings when relaunched. Apple assessed the reported behaviour as not requiring a security fix.

Read full article →

Related Articles

Asahi Linux Now Officially Supports Apple M3 Macs – With Caveats
mdp2021 · Hacker News · 5h ago
Private German rocket makes history, reaches orbit from European soil
bookmtn · Hacker News · 23h ago
LLMs as a Cognitive Virus
canjobear · Hacker News · 1d ago
Actively exploited sandbox RCE in all Chromium versions
negura · Hacker News · 1d ago
Formalizing Fermat's Last Theorem
jlebar · Hacker News · 2d ago