Top
image credit

Apple macOS vulnerability paves the way for system compromise with a single click

August 13, 2018

Via: ZDNet
Category:

A security researcher uncovered a zero-day in Apple software by tweaking a few lines of code. Speaking at Defcon in Las Vegas last week, Patrick Wardle, Chief Research Officer of Digita Security, described his research into “synthetic” interactions with a user interface (UI) that can lead to severe macOS system security issues.

Synthetic events are when attackers can virtually “click” objects in order to load code without user consent. If a threat actor is able to “click” a security prompt and load a kernel extension, this could lead to the full compromise of an operating system.

Read More on ZDNet