Posted by: David Harley | October 13, 2011

Blogs and Patches

[Apparently this is our 200th post on this blog. Sadly, there are no prizes.]

So, the Infosecurity Magazine blog I mentioned previously is now up: Virus Bulletin and the Mac, then and now.

Plenty of more recent action around the Apple orchard, though, mostly around updating and patching:

And Aaron Sigel has flagged a vulnerability in Safari that could be used to allow arbitrary code execution (not applicable to Windows): he reports that

“This allows you to send any “file:” url to LaunchServices, which will run binaries, launch applications, or open content in the default application, all from a web page.”

 Hat tip to Alice Decker of Trend Micro for bringing the vtty posts to my attention.

Small Blue-Green World/AVIEN/Mac Virus


