Archive for the 'Apple' Category

Using Safari to Add Digital Radio to the Dashboard

Thursday, July 3rd, 2008

While Firefox is my browser of choice, Safari does have one feature that makes it a great choice on a Mac - the ability to add webclips to the Dashboard.

I posted recently about RTE’s new digital radio stations that are now available on-line. Using Safari it’s now possible to load the radio station in your [...]

First Trojan Based on ARDAgent Root Exploit

Monday, June 23rd, 2008

Secure Mac are reporting that they have found a trojan designed to take advantage of the ARDAgent root exploit that I posted about previously.

The Trojan dubbed “AppleScript.THT” allows the remote attacker full access to the system, steals usernames and passwords, hides by turning off system logging, opening firewall ports and can also be used to [...]

Temporary Fix for ARDAgent Root Privilege Escalation

Friday, June 20th, 2008

If you’re worried about the security problem with Apples Remote Desktop Sharing that I posted about yesterday, but still want to use the service, then here’s a quick solution:

Open Terminal and type, all on one line, the following command:

sudo chmod u-s /System/Library/CoreServices/RemoteManagement/ArdAgent.app/Contents/MacOS/ARDAgent

Now if you use,

osascript -e ‘tell app “ARDAgent” to do shell script “whoami”‘

you should [...]

Mac OS X - Gain Root Privileges Through AppleScript

Thursday, June 19th, 2008

A serious security hole has been found in Mac OS X - both Leopard and Tiger are affected. The exploit allows someone with physical access to a Mac to run programs as the Root user.

The exploit uses the Apple Remote Desktop, (ARDAgent), application to execute a shell script. When the shell script is executed it [...]

Stress

Sunday, March 16th, 2008

It’s been a tiring couple of weeks. First there was moving house, then there was my MacBook problems, and then RAG week came along. It’s just been one stressful event after another.

I’m still not fully unpacked, but for various reasons out of my control, it looks like I’ll have to move again in the next [...]