Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Skype bug gives attackers access to Mac OS X machines
The Register ^ | 6th May 2011 19:40 GMT | By Dan Goodin in San Francisco

Posted on 05/06/2011 4:33:50 PM PDT by Swordmaker

click here to read article


Navigation: use the links below to view more comments.
first previous 1-2021-37 last
To: Swordmaker
Hi Swordmaker,

Well, the vermin are beginning to crawl out of the woodwork at last. As they say, it is not at all the beginning of the end, but it is the end of the beginning. Macs are now officially a target species. Hurrah! (It is a milestone of sorts, eh?)

From TFA:

> Maddern didn't say what interaction is required on the part of the victim, and he didn't immediately respond to an email seeking clarification.
I'll be interested to learn if it circumvents the usual Mother-may-I prompts for administrative access password.

Now, let's see.... I use Skype all day, every day, on both Mac OS-X and Windows 7, and occasionally on my iPod Touch. I cannot function at work without Skype these days, because a few hundred people contact me on skype every week, and won't or can't use other means (email, phone).

And naturally, I'm up-to-date on Skype releases, so I'm using Version 5 everywhere.

Drat. Damned vermin.

So what gets sent, really? I read this:

> ...sending a specially manipulated attachment in an instant message...
Do they mean dropping a file into the chat? I do that occasionally; people do that occasionally to me. But I never chat, much less accept files from, unknown people. I suppose someone could manage to masquerade as a user I know...

Yeeeechhhh!

Well, Skype will patch the bug, and Apple will close the hole, and all will be well until the next one...

21 posted on 05/06/2011 10:24:30 PM PDT by dayglored (Listen, strange women lying in ponds distributing swords is no basis for a system of government!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Swordmaker

Thanks for that explanation; I’ll do that.

Not sure that will stop this particular vulnerability, tho.

But can you confirm that the bug is only for the latest version of Skype? I’m pretty sure I never upgraded; I’ll check that if it would make a difference . . .

I logged off my Mac and powered it down for the weekend; will make the check and the changes you suggest if they will presumably be adequate.

Otherwise I could be tempted to use my netbook for a week if that will tide me over ‘til the update is released. Having dear ones abroad, taking Skype off isn’t a good option at all.


22 posted on 05/06/2011 10:38:13 PM PDT by conservatism_IS_compassion (DRAFT PALIN)
[ Post Reply | Private Reply | To 11 | View Replies]

To: Swordmaker; 6SJ7
>> Unless I'm missing something, shell access (SSH) would have to have been previously enabled on the target Mac.

> Most likely true... and unless you have activated ROOT not too dangerous.

I wouldn't be so sure.

"Shell access" means you have access to the "shell", the level of the operating system where commands are spawned. It is NOT limited to SSh access, which is a specialized way of getting a remote shell on another machine. While it's true that SSh access on machine A is turned off by default (thus machine B cannot SSh into A), that doesn't have any effect on access within machine A to the shell layer of the OS.

The way I read this, they're saying that the malware gains the ability to execute programs on the infected machine.

23 posted on 05/06/2011 10:40:46 PM PDT by dayglored (Listen, strange women lying in ponds distributing swords is no basis for a system of government!)
[ Post Reply | Private Reply | To 17 | View Replies]

To: conservatism_IS_compassion
But can you confirm that the bug is only for the latest version of Skype? I’m pretty sure I never upgraded; I’ll check that if it would make a difference . . .

No, I can't because I have seen nothing beyond this posting. I am not even sure it's legit. I can't quite see how it's being accomplished, much less how it can affect a Mac and not other Skype clients. It may be FUD for all I know at this point.

24 posted on 05/07/2011 1:38:30 AM PDT by Swordmaker (This tag line is a Microsoft product "insult" free zone.)
[ Post Reply | Private Reply | To 22 | View Replies]

To: Swordmaker

>> It remotely gives shell access.

Impressive access for a chat client. What else can it do?


25 posted on 05/07/2011 1:42:27 AM PDT by Gene Eric (*** Jesus ***)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Swordmaker; SunkenCiv; Ernest_at_the_Beach; ShadowAce; dayglored
So I decided to test another mac and sent the payload to my girlfriend.

Hey now.

26 posted on 05/07/2011 3:50:09 AM PDT by martin_fierro (< |:)~)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Swordmaker

Isn’t the point of Mac more or less, that one does (not) run as Administrator?

After all, running in Administrator, is pretty much Windows.


27 posted on 05/07/2011 4:10:51 AM PDT by Cringing Negativism Network ("Saul Alinsky, meet Donald Trump...")
[ Post Reply | Private Reply | To 4 | View Replies]

To: Cringing Negativism Network
After all, running in Administrator, is pretty much Windows.

There are two levels of administrator in OSX... administrator and ROOT. Root is turned off by default in OSX. That is essentially the "Superuser" level that all WindowsXP users start out using. . . and the administrator level that Windows7 users have.

28 posted on 05/07/2011 5:35:12 AM PDT by Swordmaker (This tag line is a Microsoft product "insult" free zone.)
[ Post Reply | Private Reply | To 27 | View Replies]

To: Swordmaker

Thanks, Swordmaker, for the helpful information. What would we single users with no IT do without you?


29 posted on 05/07/2011 6:07:16 AM PDT by kitkat ( I sure HOPE that it's time for a CHANGE from Obama.)
[ Post Reply | Private Reply | To 11 | View Replies]

To: martin_fierro; Swordmaker
>> So I decided to test another mac and sent the payload to my girlfriend.

> Hey now.

And they say computer geeks don't get any... HA!

We just do it by Skype, that's all....

30 posted on 05/07/2011 8:15:32 AM PDT by dayglored (Listen, strange women lying in ponds distributing swords is no basis for a system of government!)
[ Post Reply | Private Reply | To 26 | View Replies]

To: martin_fierro

Things have certainly changed since the floppy disk era.


31 posted on 05/07/2011 9:29:49 AM PDT by SunkenCiv (Thanks Cincinna for this link -- http://www.friendsofitamar.org)
[ Post Reply | Private Reply | To 26 | View Replies]

To: Swordmaker
Root is turned off by default in OSX. That is essentially the "Superuser" level that all WindowsXP users start out using. . . and the administrator level that Windows7 users have.
Confirm: You are saying that Win7 users are superusers in the same way that XP users are? I had the impression that W7 was better in that regard??

32 posted on 05/08/2011 3:28:55 AM PDT by conservatism_IS_compassion (DRAFT PALIN)
[ Post Reply | Private Reply | To 28 | View Replies]

To: conservatism_IS_compassion
Confirm: You are saying that Win7 users are superusers in the same way that XP users are? I had the impression that W7 was better in that regard??

No, they are a lot better. But their administrator level is a superuser level. They just don't have ALL their users at administrator level any more. Win7 users are standard users.

33 posted on 05/08/2011 3:58:14 AM PDT by Swordmaker (This tag line is a Microsoft product "insult" free zone.)
[ Post Reply | Private Reply | To 32 | View Replies]

To: All
Skype releases fix.
34 posted on 05/10/2011 12:49:24 PM PDT by Swordmaker (This tag line is a Microsoft product "insult" free zone.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Swordmaker

Almost everything about Skype code is stupid and unforgivable. And that was before MS bought them.


35 posted on 05/10/2011 12:51:04 PM PDT by discostu (Come on Punky, get Funky)
[ Post Reply | Private Reply | To 4 | View Replies]

To: stripes1776; Swordmaker
It's my understanding that this affects Skype 5, the latest version. The older versions are not affected.
Apparently

Skype releases patch for zero-day vulnerability in Skype 5 for Mac

your information was correct about that. Turns out I, having never updated to Skype 5, needn't have worried.

But I do worry about that sort of thing. Which makes the fact that the alarms which have a realistic basis are few and far between on the Mac a significant benefit to me.


36 posted on 05/11/2011 4:47:58 AM PDT by conservatism_IS_compassion (DRAFT PALIN)
[ Post Reply | Private Reply | To 12 | View Replies]

To: conservatism_IS_compassion
Turns out I, having never updated to Skype 5, needn't have worried.

Sometimes it pays not to update!

37 posted on 05/11/2011 11:56:42 AM PDT by stripes1776
[ Post Reply | Private Reply | To 36 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-37 last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson