meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Tuesday, June 4th 2019

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 4 June 2019

⏱️ 5 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. macOS Synthetic Clicks; Intel Microcode for Old Win 10; Fake AV in Games; GandGrab

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Tuesday, June 4, 2019 edition of the Sandinand Storms and a stormcast.

0:07.4

My name is Johannes Ulrich, and I am recording from Jacksonville, Florida.

0:13.1

Today's Apple News don't just come from the Worldwide Developer Conference, but also from the

0:18.8

Objective by the Sea Conference. Patrick Ward from the Objective by the C conference.

0:22.6

Patrick Wardle used Objective by the C in order to release details regarding new vulnerability

0:29.6

in Apple's latest operating system, Mac OS Mojave.

0:36.6

This vulnerability actually allows attackers to bypass some of the restrictions being put in place

0:43.1

about a year ago when Apple did announce macOS mojave and some of these new security features.

0:52.1

Applications now have to ask for permission to get access to sensitive

0:56.9

components like the camera and the microphone. The way this is implemented is that there is a pop-up

1:04.2

dialogue and the user has to click OK. The problem that Apple had to overcome here was that there are also synthetic events, essentially

1:13.8

applications clicking on dialog boxes.

1:17.6

This is often used to automate some workflows.

1:21.9

So what Apple did is that it prevented these synthetic clicks from affecting these security dialogues.

1:30.3

However, well, nothing is really all that easy.

1:33.3

The problem that Apple ran into was that some legacy applications relied on that functionality,

1:41.3

so Apple included a white list of applications that were still able to send

1:47.0

synthetic clicks to these security dialogues.

1:51.4

What Patrick now found out is, well, if you listen to what I just said, pretty obvious

1:56.9

in that what you can do now as an attacker is you can actually take one of these

2:02.7

white listed applications and trick it into clicking on these security dialogues

2:08.0

and the result is that you're able to bypass all of these restrictions.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.