<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; mac exploit</title>
	<atom:link href="http://www.darknet.org.uk/tag/mac-exploit/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Charlie Miller Does It Again At PWN2OWN</title>
		<link>http://www.darknet.org.uk/2009/03/charlie-miller-does-it-again-at-pwn2own/</link>
		<comments>http://www.darknet.org.uk/2009/03/charlie-miller-does-it-again-at-pwn2own/#comments</comments>
		<pubDate>Tue, 24 Mar 2009 08:07:57 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Apple]]></category>
		<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[charlie miller]]></category>
		<category><![CDATA[hacking macs]]></category>
		<category><![CDATA[hacking safari]]></category>
		<category><![CDATA[hacking-competition]]></category>
		<category><![CDATA[hacking-contest]]></category>
		<category><![CDATA[mac exploit]]></category>
		<category><![CDATA[mac-security]]></category>
		<category><![CDATA[pwn2own]]></category>
		<category><![CDATA[safari-exploit]]></category>
		<category><![CDATA[tipping point]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1632</guid>
		<description><![CDATA[You right remember in March last year we posted about Charlie Miller at the PWN2OWN contest owning the MacBook Air in under 2 minutes. Guess what? He&#8217;s done it again! This time though he&#8217;s even faster clocking in at under 10 seconds. No one else stood a chance. He walked off with the prize again, [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>You right remember in March last year we posted about <a href="http://www.darknet.org.uk/2008/03/mac-owned-on-2nd-day-of-pwn2own-hack-contest/">Charlie Miller at the PWN2OWN contest owning the MacBook Air in under 2 minutes</a>.</p>
<p>Guess what? He&#8217;s done it again! This time though he&#8217;s even faster clocking in at under 10 seconds. No one else stood a chance. He walked off with the prize again, $5000 and the MacBook that he hacked.</p>
<p>Of course he wrote the exploit before hand, but still impressive!</p>
<blockquote><p>Charlie Miller, a security researcher who hacked a Macintosh in two minutes last year at CanSecWest&#8217;s PWN2OWN contest, improved his time today by breaking into another Macintosh in under 10 seconds.</p>
<p>Miller, an analyst at Independent Security Evaluators in Baltimore, walked off with a $5,000 cash prize and the MacBook he hacked.</p>
<p>&#8220;I can&#8217;t talk about the details of the vulnerability, but it was a Mac, fully patched, with Safari, fully patched,&#8221; said Miller on Wednesday, not long after he had won the prize. &#8220;It probably took five or 10 seconds.&#8221; He confirmed that he had researched and written the exploit before he arrived at the challenge.</p></blockquote>
<p>It guess it might be a Safari exploit, but I guess if you keep your ears open you&#8217;ll hear about it soon enough.</p>
<p>I wonder if he&#8217;ll be able to pull the same trick again next year, with his record so far I&#8217;d say it wouldn&#8217;t be a large stretch of imagination.</p>
<blockquote><p>The PWN2OWN rules stated that the researcher could provide a URL that hosted his exploit, replicating the common hacker tactic of enticing users to malicious sites where they are infected with malware. &#8220;I gave them the link, they clicked on it, and that was it,&#8221; said Miller. &#8220;I did a few things to show that I had full control of the Mac.&#8221;</p>
<p>Two weeks ago, Miller predicted that Safari running on the Macintosh would be the first to fall.</p>
<p>PWN2OWN&#8217;s sponsor, 3Com Corp.&#8217;s TippingPoint unit, paid Miller $5,000 for the rights to the vulnerability he exploited and the exploit code he used. As it has at past challenges, it reported the vulnerability to on-site Apple representatives. &#8220;Apple has it, and they&#8217;re working on it,&#8221; added Miller.</p></blockquote>
<p>Interestingly another researcher later broke into a Sony laptop that was running Windows 7 by exploiting a vulnerability in Internet Explorer 8. So Safari and IE8 both fell! </p>
<p>What with all the claims from Microsoft that IE8 is so secure&#8230;I guess that pissed on their bonfire didn&#8217;t it?</p>
<p>This year&#8217;s PWN2OWN also has a section for mobile operating systems, the prize is larger too at $10,000. If you want to join you can have a crack at Windows Mobile, Google&#8217;s Android, Symbian, and the operating systems used by the iPhone and BlackBerry.</p>
<p></p>
<p>Source: <a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&#038;articleId=9129978">Computer World</a> (<em>Thanks Navin</em>)</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Charlie+Miller+Does+It+Again+At+PWN2OWN+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D1632+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/03/charlie-miller-does-it-again-at-pwn2own/&amp;t=Charlie+Miller+Does+It+Again+At+PWN2OWN" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2009/03/charlie-miller-does-it-again-at-pwn2own/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/03/charlie-miller-does-it-again-at-pwn2own/&amp;title=Charlie+Miller+Does+It+Again+At+PWN2OWN" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/03/charlie-miller-does-it-again-at-pwn2own/&amp;title=Charlie+Miller+Does+It+Again+At+PWN2OWN" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2009/03/charlie-miller-does-it-again-at-pwn2own/&amp;title=Charlie+Miller+Does+It+Again+At+PWN2OWN" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/03/charlie-miller-does-it-again-at-pwn2own/&amp;title=Charlie+Miller+Does+It+Again+At+PWN2OWN" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2009%2F03%2Fcharlie-miller-does-it-again-at-pwn2own%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/03/charlie-miller-does-it-again-at-pwn2own/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
	</channel>
</rss>

