Security News

Macs, iPhones, iPads to get encrypted DNS – how'd you like them Apples?
2020-06-27 00:55

Encrypted DNS, as its name suggests, encrypts those queries to shield them from snoops and meddlers. A year later, a research paper presented at a Usenix conference underscored the need for better security when it reported that about 8.5 per cent of DNS queries were intercepted by service providers.

VMware and Office for Mac need patching, Microsoft can scan your firmware, and Anonymous takes credit for Atlanta police hacks
2020-06-22 12:45

Those running VMWare guest machines on Mac will want to update their software to get a security fix for VMware Tools. Earlier this month, Microsoft dropped its usual boatload of Patch Tuesday updates, sans a set for Office for Mac.

Bundlore adware brings a new nest of risks to Mac users
2020-06-18 18:52

Even Apple itself came to the anti-virus party back in 2009 when it introduced a rudimentary malware blocking tool called XProtect right into into OS X. Whether you called it malware or not, there have long been "Software actors" out there ready to go after Mac users in the same way that they've been going after Windows users for years. SophosLabs has just published a fascinating new report about an adware threat known as Bundlore that has Mac users very clearly in its sights.

Shlayer Mac Malware Returns with Extra Sneakiness
2020-06-17 17:44

A fresh variant of the Shlayer Mac OSX malware with advanced stealth capabilities has been spotted in the wild, actively using poisoned Google search results in order to find its victims. "Unlike typical Windows PCs, there is no obvious right-side button on Apple mice and trackpads. Therefore, novice Mac users may not know how to do the Mac equivalent of a right-click, and therefore may not understand how to run the malware installer script."

You, Apple Mac fan. Put down the homemade oat-milk latte, you need to patch a load of security bugs, too
2020-05-28 15:45

Apple has alerted users about a bunch of security fixes for its software on supported versions of macOS that you ought to install as soon as you can. The SSLab trio also found CVE-2020-9801 in Safari that can be exploited by malware already running on a Mac to force the browser to open another application.

You, Apple Mac fan. Put down the homemade oat-milk latte, you need to patch a load of security bugs, too
2020-05-28 15:45

Apple has alerted users about a bunch of security fixes for its software on supported versions of macOS that you ought to install as soon as you can. The SSLab trio also found CVE-2020-9801 in Safari that can be exploited by malware already running on a Mac to force the browser to open another application.

North Korean Hackers Release Mac Variant of Dacls RAT
2020-05-07 14:46

North Korea-linked hacking group Lazarus has been leveraging a Mac variant of the Dacls Remote Access Trojan, Malwarebytes reports. Last year, security researchers identified at least two macOS-targeting malware families used by Lazarus in attacks, and a new one appears to have been added to their arsenal: a Mac variant of the Linux-based Dacls RAT. Initially identified by security researchers with Qihoo 360 NetLab in December 2019, the Dacls backdoor targeted both Windows and Linux systems.

Flaw hunter bags $75,000 off Apple after duping Safari into spying through iPhone, Mac cameras without permission
2020-04-07 17:58

Independent security researcher Ryan Pickren has revealed how a malicious website could hack Apple's Safari browser on iOS and macOS to spy on the user through the computer's camera without prompting for permission. Apple fixed the issues with Safari 13.1, crediting Pickren for three bug reports in the patch release notes.

VMware Fixes Privilege Escalation Vulnerability in Fusion for Mac
2020-03-18 15:02

VMware announced on Tuesday that it has patched a serious privilege escalation vulnerability that can be exploited on Mac systems where Fusion, Remote Console or Horizon Client are installed. The vulnerability, tracked as CVE-2020-3950 and classified as high severity, is related to the improper use of setuid binaries, and it impacts Fusion 11.x, VMRC 11.x and prior, and Horizon Client 5.x and prior.

5 free security apps to keep your Mac safe
2020-02-20 16:27

Avast Security for Mac is a solid choice and has been for a long time. Sophos Home Free for macOS. Sophos offers a great option for small businesses wanting to keep their networks clean: It can filter web content on up to three macOS or Windows devices for free.