MacBook hacked in contest at security event

Tags: Shane Macaulay + Dino Dai Zovi + MacBook + Hack + CanSecWest

lupus
lupus posted on Apr 21st 2007 8:39PM; via news.com.com/2100-7349_3-61781...
MacBook hacked in contest at security event

Shane Macaulay, a software engineer, was able to hack into a MacBook through a zero-day security hole in Apple's Safari browser. The computer was one of two offered as a prize in the "PWN to Own" hack-a-Mac contest at the CanSecWest conference.

The successful attack on the second and final day of the contest required a conference organizer to surf to a malicious Web site using Safari on the MacBook--a type of attack familiar to Windows users. CanSecWest organizers relaxed the rules Friday after nobody at the event had breached either of the Macs on the previous day. Macaulay teamed with Dino Dai Zovi, a security researcher until recently with Matasano Security.

"The vulnerability and the exploit are mine," Dai Zovi said in a telephone interview from New York. "Shane is my man on the ground."

Apple spokeswoman Lynn Fox declined to comment on the MacBook hack specifically, but provided Apple's standard security comment: "Apple takes security very seriously and has a great track record of addressing potential vulnerabilities before they can affect users."

   4 votes | Bookmark

Comments

Guest

knlr says:

at least
Posted: 04/12/08 10:30

Add your comment here

Enter the text you see on the right 



Popular Tags

Ad   Apple   Apple TV   Get a Mac   Intel   iPhone   iPod   iTunes   iTV   Leopard   Mac   Macbook   Mac Pro   Microsoft   OSX   Recall   SEC   Steve Jobs   Video   WWDC  

Popular Members


Related Posts

Other Gates you might be interested in:

More Gates