Vulnerability Management: First Unified Platform to Detect & Remediate on Mac
Kandji announces Kandji Vulnerability Management, which helps IT and security teams identify and remediate vulnerabilities through a unified workflow.
Did you see the news last week? ๐
Kandji announced Vulnerability Management to help IT and security teams identify, assess, prioritize, and remediate vulnerabilities on Mac devices - all through a unified workflow in a unified platform.
Read more about it here: buff.ly/432J9E6
20.02.2025 15:57 โ ๐ 1 ๐ 2 ๐ฌ 0 ๐ 0
#349
new iPhone: it's a 16e
This week's news summary, we look briefly at the new phone before we look some beefy malware and vulnerabilities, some nice configuration profiles and updates.
macadmins.news/issues/349
#Mac #MacAdmins #Apple
21.02.2025 14:52 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
Uncovering Apple Vulnerabilities: diskarbitrationd and storagekitd Audit Part 3
Exploring CVE-2024-27848 & CVE-2024-44210: How macOS vulnerabilities in storagekitd allowed privilege escalation, how they were exploited & Appleโs patch.
๐๐ชณMy last blog post in the storagekitd - diskarbitrationd vulnerability series, which I presented at #POC2024 and @blackhatevents.bsky.social #BHEU2024 as part of my "Apple Disk-O Party" talk, is up @kandji.bsky.social 's site:
www.kandji.io/blog/macos-a...
21.02.2025 15:20 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
First Apple๐ macOS ๐ป vulnerability of 2025 is submitted. ๐ฅณ Full access to your iCloud documents...
08.01.2025 11:18 โ ๐ 5 ๐ 0 ๐ฌ 0 ๐ 0
Maui, Hawaii (ENG) by Csaba Fitzl on Exposure
HUNGARIAN / MAGYAR
๐๏ธ๐ฅพ๐๐I wrote about my hiking and trail running adventures in Maui, Hawaii, which I did right before #OBTS
Enjoy!
trails.exposure.co/maui-hawaii-...
21.12.2024 15:13 โ ๐ 2 ๐ 0 ๐ฌ 0 ๐ 0
Uncovering Apple Vulnerabilities: diskarbitrationd and storagekitd Audit Part 2
Part 2 of the audit Kandji's Threat Research team performed on the macOS diskarbitrationd & storagekitd system daemons, uncovering several vulnerabilities.
๐๐ชณSecond part of the diskarbitrationd - storagekitd vulnerability blog series is out on @kandji.bsky.social 's blog.
These vulnerabilities were presented at @blackhatevents.bsky.social #BHEU2024 and #POC2024 conferences as part of my "Apple Disk-O Party" talk.
www.kandji.io/blog/macos-a...
12.12.2024 15:50 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0
๐ฃIโm happy to announce that Iโm planning to write a brand new โmacOS Vulnerability Researchโ training. ๐ฅณ
Considering the amount of work the writing requires it will be available late 2025 or early 2026. It will be Live class only, and likely only once or twice a year.
09.12.2024 12:00 โ ๐ 20 ๐ 5 ๐ฌ 0 ๐ 0
โ๏ธ๐๏ธThis is the day! Donโt miss it if you want to learn how to talk with launchd and how to generically detect XPC exploits. ๐ฅ๐ฅ๐ฅ #OBTS
06.12.2024 20:18 โ ๐ 8 ๐ 0 ๐ฌ 0 ๐ 0
Extremely excited to be giving a talk titled "Mac, Wheres My Bootstrap" tomorrow at #OBTS with @theevilbit.bsky.social! Join us live on YouTube or in-person at 2:40pm HST / 7:40pm EST. We'll be dropping a tool you can walk away with :)
05.12.2024 19:34 โ ๐ 9 ๐ 3 ๐ฌ 0 ๐ 1
We are doing again a community run tomorrow. We will meet at the lobby, at the โAlohaโ sign at 8AM, and run about 5k north on the beach and then back. #OBTS10k #OBTS
05.12.2024 19:08 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
Entering last day of trainings with my colleagues from @kandji.bsky.social . There is always something new to learn in this field, and itโs great to learn directly from iOS experts @naehrdine.bsky.social and Sn0wfreeze #OBTS
04.12.2024 20:22 โ ๐ 6 ๐ 0 ๐ฌ 0 ๐ 0
A dream came true. My first ever Sea To Summit climb, here on Maui. Climbed the 3055m high Haleakala volcanoโs highest summit, Red Hill, from the ocean over 30kms. #OBTS
01.12.2024 06:20 โ ๐ 13 ๐ 0 ๐ฌ 0 ๐ 0
On the Trails of Seoul by Csaba Fitzl on Exposure
Trail running story from South Korea.
๐ฅพ๐โฐ๏ธ It was long time ago I last wrote about my runs or hikes. Below is a post about the trails I explored when I was in South Korea for the POC2024 conference. Enjoy!
trails.exposure.co/on-the-trail...
25.11.2024 23:58 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0
FADE DEAD | Adventures in Reversing Malicious Run-Only AppleScripts - SentinelLabs
We show how to statically reverse run-only AppleScripts for the first time, and in the process reveal new IoCs of a long-running macOS Cryptominer campaign.
Been a while since we've seen #macOS #malware abusing osacompile rather than plain osascript, but #Amos Atomic Stealer is nothing if not adaptable. SHA1: 51ef05c84eea3dde149a5dd3ea9916a824e95afc.
A reminder that it's possible (didn't say easy ๐
) to reverse compiled #applescript.
s1.ai/fadedead
21.11.2024 11:26 โ ๐ 23 ๐ 11 ๐ฌ 0 ๐ 0
Reverse Engineering iOS 18 Inactivity Reboot
Wireless and firmware hacking, PhD life, Technology
How does the new iOS inactivity reboot work? What does it protect from?
I reverse engineered the kernel extension and the secure enclave processor, where this feature is implemented.
naehrdine.blogspot.com/2024/11/reve...
17.11.2024 21:42 โ ๐ 282 ๐ 107 ๐ฌ 12 ๐ 11
Paged Out! #5 is out โย enjoy! pagedout.institute
And if you like the cover, we have wallpapers!
19.11.2024 09:31 โ ๐ 36 ๐ 16 ๐ฌ 0 ๐ 2
I was featured in PagedOut Issue #5 with my macOS notification forensics article (page 25). I find the whole idea of this magazine pretty cool. Lot's of interesting stuff in there!
19.11.2024 10:20 โ ๐ 8 ๐ 1 ๐ฌ 0 ๐ 0
Reverse Engineering iOS 18 Inactivity Reboot
Wireless and firmware hacking, PhD life, Technology
Excellent stuff even though iโm not really a phone guy. Love the reversing and the detailed explanation of the process. ๐ ๐
naehrdine.blogspot.com/2024/11/reve...
17.11.2024 22:25 โ ๐ 10 ๐ 4 ๐ฌ 0 ๐ 0
@theevilbit.bsky.social 's Apple Disk-O Party
powerofcommunity.net/poc2024/Csab...
17.11.2024 16:16 โ ๐ 3 ๐ 1 ๐ฌ 1 ๐ 0
#Apple added three new rules for XCSSET - a #malware weโve not seen since 2021 - to #XProtect this week as DubRobber F, G & H in v5282. Curious, to say the least.
15.11.2024 00:02 โ ๐ 5 ๐ 1 ๐ฌ 2 ๐ 1
low detection rates on macOS Amos malware on virustotal
Bunch of new Amos/Atomic #macOS #infostealers if you pivot off ```behaviour_processes:"sh -c curl -s https[:]//api.ipify[.]org/?format=text" tag:macho```
Low detections on V(h/t x.com/malwrhuntert...) #malware #apple #cybersecurity
15.11.2024 16:01 โ ๐ 23 ๐ 7 ๐ฌ 2 ๐ 0
M4 devices - VMs pre 13.4 fail to โฆ | Apple Developer Forums
Apple M4 devices can't virtualize macOS versions prior to 13.4. Hopefully this will get fixed. More info here:
developer.apple.com/forums/threa...
14.11.2024 20:22 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
BlueNoroff Hidden Risk | Threat Actor Targets Macs with Fake Crypto News and Novel Persistence
SentinelLabs has observed a suspected DPRK threat actor targeting Crypto-related businesses with novel multi-stage malware.
Last week, we released new research about new Mac #malware with TTPs consistent with suspected DPRK #APT BlueNoroff. s1.ai/BNThief. This week, friends-of-NK say weโre shills for US gov. ๐ easternherald.com/2024/11/10/s...
Hate to break it to โem, but that ainโt how we roll. ๐
12.11.2024 14:39 โ ๐ 9 ๐ 4 ๐ฌ 0 ๐ 0
It was due to Apparency app.
12.11.2024 13:58 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0
I know a thing or two about AirPods. App developer, security researcher. ๐ณ๏ธโ๐๐งฉ
https://mastodon.social/@_inside
Pinball, pinball, pinball.
And some computer security nonsense too.
Go Cubs, yay Macintosh, fooooooour, and the Eras Tour rocked!!
Security Engineering @ Apple. Previously Mandiant.
Information Security Engineer at Google
LGBTQ+ Ally. MS Warrior. Liberal. Accessibility cheerleader (#A11y). Former @Apple 12 years. Husky rescue foster. Dog mom. Atheist
โพ๏ธPadres๐ค๐ Royals๐๐ฉต
๐Chiefsโค๏ธ๐ (1963)
Travis๐ฉทTaylor forever!
๐ซMAGA ๐ซOnlyFans hoโs
๐ซ DM
#BlueCrew
#WorldwideCircleOfCrones
Principal Security Researcher @Microsoft. Author, Blogger, Speaker, and Baseball Nerd. Always has an overwhelming backlog of books and video games to get through.
Founder @osmsec.xyz & @bsidesvizag.in
Pentester at Cobalt.io,
Former @offsectraining.bsky.social, @thinkstcanary.canary.tools
Principal macOS Security Researcher @ Huntress | ๐ Skill Development Coach | ๐ผ๏ธ๐
#Browns fan, @zolotkey.bridgy.imperialba.se for my Technical Posts.
Hacker at Orange Cyberdefense's SensePost Team
https://hello.singe.za.net/
Paged Out! is a free magazine about programming, hacking, security hacking, retro computers, modern computers, electronics, demoscene, and other similar topics. Always accepting submissions of one-page articles.
ษฟษษniฯฑnษ ษฦจษฟษvษษฟ
๐ฆ youtube.com/@jiskac
๐ naehrdine.blogspot.com
๐ฅ twitter.com/naehrdine
๐ hpi.de/classen
๐ฑ reversing.training
Security research architect for Microsoft Defender for cross-platform.
Linux, Windows, Android, MacOS, iOS, ChromeOS, baremetal.
https://jonathanbaror.com