Search Perform an advanced search query SOFTPEDIA
 
SOFTPEDIA
Updated one minute ago
HomeSubmit a program for being reviewedAdvertise on our websiteGet help on surfing our websitesSend us your feedbackGet information about our XML/RSS backend and how to use itBrowse the news archiveVisit our discussion forumVizitati forumul in limba romana



KLIP
  1. HOME
  2. SCIENCE
  3. TECHNOLOGY
  4. WEBMASTER
  5. SECURITY
  6. MICROSOFT
  7. LINUX
  8. APPLE
  9. GAMES
  10. TELECOMS
  11. REVIEWS
  12. LIFE & STYLE
  13. EDITORIALS
  14. INTERVIEWS
  15. RSS
Welcome!
Hello, Guest

Login if you have a Softpedia.com account.

Otherwise, register for one.

SECURITY

Microsoft Finds Irony in Mac OS X Getting Hacked Before Vista SP1

- Courtesy of Jeff Jones, Strategy Director in the Microsoft Security Technology Unit

By: Marius Oiaga, Technology News Editor

Microsoft was not without a reaction to the past week's events at CanSecWest Vancouver 2008. The conference's PWN2OWN 2008 hacking challenge sponsored by TippingPoint involved three machines and just as many operating systems, VAIO VGN-TZ37CN running Ubuntu 7.10, Fujitsu U810 running
Vista Ultimate SP1 and MacBook Air running OSX 10.5.2. In the first day of the contest, when hackers were permitted only network attacks all the platforms held their own. But starting with day two, Mac OS X Leopard fell within two minutes.

On day three, Vista SP1 was hacked after a few hours, while Ubuntu managed to get through intact. Jeff Jones, Strategy Director in the Microsoft Security Technology Unit, commented on the fact that Leopard, a product that is heavily advertised as being more secure than Windows Vista, was the first to fall. Apparently, flawless marketing campaigns do not equal secure offerings. Apple has learned this the hard way.

"Okay, having said that, given how obnoxious and misleading I find those Mac OS X ads and how they've spent millions of dollars publicly criticizing Windows Vista security improvements, I find it ironic and apropos that Mac OS X was the first machine to be owned in the PWN 2 OWN contest at CanSecWest. Charlie Miller appears to have set up a web site containing malicious code and used a 'browse to own' vulnerability to win the contest," Jones stated.

Charlie Miller, with Independent Security Evaluators (ISE), is the hacker that claimed a $10,000 prize and a MacBook Air, and revealed to ComputerWorld that he and his team chose to own Leopard because it was less of a challenge than Vista SP1 or Ubuntu. Miller exploited a zero-day vulnerability in Safari 3.1.

"It was the easiest one of the three. We wanted to spend as little time as possible coming up with an exploit, so we picked Mac OS X. We sat down about three weeks ago and decided we wanted to throw our hats into the ring. It took us a couple of days to find something, then the rest of the week to work up an exploit and test it. It took us maybe a week altogether," Miller stated.

On the third day of CanSecWest 2008, Vista SP1 Ultimate was also hacked, but not through a hole in the operating system's components. A zero-day vulnerability in Adobe's Flash was exploited in order to compromise Vista.

MORE RELATED ARTICLES: Mac OS X Hacked - Vista SP1 Hacked – Ubuntu Linux Survives Unscathed If You Think Mac OS X Is More Secure than Windows, Think Again Apple Puts an End to Illegal Safari Installations on Windows PCs Microsoft Prepares a Jackass Response to Apple Mozilla Welcomes Competition but Says Apple Uses Malware Distribution Practices Between XP SP2 and Vista SP1, Apple Brought a World of Pain on Microsoft Windows Vista Ultimate RED Comes to Europe Vista Ultimate SP1 vs. OS X Leopard 10.5.2 vs. Ubuntu 7.10
 
Comments | Link here | Subscribe
Print | Send to friend
Today's News | Yesterday's News

Search:


31st March 2008, 17:26 GMT | Copyright (c) 2008 Softpedia | Contact:
Read by 1,433 user(s) | Rating: | 6 vote(s) so far | Cast your vote:
Microsoft Finds Irony in Mac OS X Getting Hacked Before Vista SP1 - USER OPINIONS

Comment #1 by Brian on 2008-04-01, 07:59 GMT reply to this comment 
This is just a publicity stunt. In the real world, Mac OS X rules. People are moving in droves to OS X. Come on Apple, start selling to everyone! Just sell it for the outrageous retaili price that MSFT charges for WIndoze ($200+) for non-Mac PCs and it would not hurt your hardware sales at all.

In the real world, no OS is perfect, but Mac OS X 'OWNS' all the others--just use paralells desktop to run them ALL, it's astounding.


go to top


SHARE YOUR OPINION ABOUT Microsoft Finds Irony in Mac OS X Getting Hacked Before Vista SP1

Since you are not logged on, your comments will have to be approved before being displayed.
Click here to login, or register.
Your Name:
Your Email:
Type in the result:
Your Opinion:
 


DO YOU WANT TO CONTACT US?  

If you have some comments or you want to send us some information you can send us an email directly to .
You can use the form below for the same purpose.
Your full name: (at least 3 characters)
Your email address: (at least 5 characters)
Message subject: (at least 5 characters)
Message text:
(at least 10 characters)
Type in the result:
 
 



© 2001 - 2008 Softpedia. All rights reserved.
Softpedia™ and Softpedia™ logo are registered trademarks of SoftNews NET SRL.
Copyright Information | Privacy Policy | Terms of Use | Contact Softpedia | Update your software | Archive