Apple Safari Still Easiest to Hack

For the third year in a row, security researcher Charlie Miller successfully compromised a fully patched MacBook Pro machine with a Safari vulnerability and exploit.  Despite Apple’s best efforts at making it difficult to exploit the Mac OS X, Miller’s exploits show that Safari is still easy pickings because it lacks the mitigations found in Microsoft Windows.  For example, Safari does not implement ASLR properly and does not have a sandbox to limit the damage from a hacker attack.    

For the third year in a row, security researcher Charlie Miller successfully compromised a fully patched MacBook Pro machine with a Safari vulnerability and exploit.  Despite Apple’s best efforts at making it difficult to exploit the Mac OS X, Miller’s exploits show that Safari is still easy pickings because it lacks the mitigations found in Microsoft Windows.  For example, Safari does not implement ASLR properly and does not have a sandbox to limit the damage from a hacker attack.    

Suggested articles

2020 Cybersecurity Trends to Watch

Mobile becomes a prime phishing attack vector, hackers will increasingly employ machine learning in attacks and cloud will increasingly be seen as fertile ground for compromise.

Top Mobile Security Stories of 2019

Cybercrime increasingly went mobile in 2019, with everything from Apple iPhone jailbreaks and rogue Android apps to 5G and mobile-first phishing dominating the news coverage. Here are Threatpost’s Top 10 mobile security stories of 2019.