Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade

Liste des GroupesRevenir à csm system 
Sujet : Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade
De : REMOVETHISbadgolferman (at) *nospam* gmail.com (badgolferman)
Groupes : misc.phone.mobile.iphone comp.sys.mac.system uk.telecom.mobile
Date : 03. Jul 2024, 18:46:03
Autres entêtes
Message-ID : <v63v8b$4tnp$1@solani.org>
References : 1 2 3 4
User-Agent : NewsTap/5.5 (iPhone/iPod Touch)
Alan Browne <bitbucket@blackhole.com> wrote:
On 2024-07-03 02:09, Bill Powell wrote:
 
Millions of iOS apps were exposed to security breach found in CocoaPods
https://9to5mac.com/2024/07/02/ios-apps-security-breach-cocoapods/
 
Critical CocoaPods Flaws Exposed Many iOS, macOS Apps to Supply Chain
Attacks
https://www.securityweek.com/critical-cocoapods-flaws-exposed-many-ios-macos-apps-to-supply-chain-attacks/
 
'Perfect 10' Apple Supply Chain Bug - Millions of Apps at Risk of CocoaPods
RCE
https://securityboulevard.com/2024/07/cocoapods-apple-vulns-richixbw/
 
CocoaPods flaws left iOS, macOS apps open to supply-chain attack
https://www.csoonline.com/article/2512935/cocoapods-flaws-left-ios-macos-apps-open-to-supply-chain-attack.html
 
I scanned those quickly and don't see any mention that the vulnerability
was actually exploited.  Hope it wasn't.
 
Good thing CocoaPods have fixed the issue.
 
It is another indication that dependencies or services managed by a
third party can be a huge risk for developers and clients.  Convenient,
easy and cheap to have these things 3rd party managed - but their issues
become everyone's issues.
 

I’ve always heard open source software is better because people can
actually find vulnerabilities or back doors in them to report.


Date Sujet#  Auteur
3 Jul 24 * Almost every iOS & macOS app has had huge vulnerabilities for over a decade25Peter
3 Jul 24 +* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade19Jörg Lorenz
3 Jul 24 i+* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade12Bill Powell
3 Jul 24 ii+- Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade1Jörg Lorenz
3 Jul 24 ii+- Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade1Larry Wolff
3 Jul 24 ii`* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade9badgolferman
3 Jul 24 ii +* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade4Chris
3 Jul 24 ii i`* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade3Jolly Roger
3 Jul 24 ii i `* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade2Andy Burns
3 Jul 24 ii i  `- Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade1Jolly Roger
3 Jul 24 ii `* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade4Jolly Roger
4 Jul 24 ii  `* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade3Andrew
4 Jul 24 ii   `* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade2Jolly Roger
8 Jul 24 ii    `- Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade1Andrew
3 Jul 24 i`* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade6Bob Eager
3 Jul 24 i +* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade2Oliver
3 Jul 24 i i`- Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade1Jörg Lorenz
3 Jul 24 i +- Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade1Jörg Lorenz
3 Jul 24 i `* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade2Your Name
4 Jul 24 i  `- Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade1Jolly Roger
3 Jul 24 `* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade5Chris
3 Jul 24  `* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade4Jolly Roger
3 Jul 24   `* Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade3david
3 Jul 24    +- Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade1Jolly Roger
3 Jul 24    `- Re: Almost every iOS & macOS app has had huge vulnerabilities for over a decade1Chris

Haut de la page

Les messages affichés proviennent d'usenet.

NewsPortal