• Disclaimer
  • Privacy Policy
  • Copyright Notice
  • Anti Spam Policy
  • Medical Disclaimer
  • DMCA Compliance
  • Terms and Conditions
  • Social Media Disclaimer
  • Amazon Affiliate disclaimer
  • Home
  • News
    • PRESS RELEASE
  • Shop
  • BUSINESS
    • CRYPTO
    • ECONOMY
    • FINANCE
    • MARKET
    • MONEY
  • TECH
    • APPS
    • Blockchain
    • Latest Games
    • GADGET
    • MOBILE
    • Metaverse
    • NFT
    • SCIENCE
    • Top SaaS Provider
    • Virtual Reality
    • Web 3
  • SOCIAL MEDIA
  • ENTERTAINMENT
    • ARTS & THEATER
    • GAMING
    • GAMBLING
    • MOVIE
    • MUSIC
    • SHOWS
    • SPORTS
  • LIFESTYLE
    • CELEBRITY
    • CULTURE
    • Education
    • FASHION
    • FOOD
    • HEALTH
    • HISTORY
    • Nature
    • Religion
    • Shopping
    • TRAVEL
  • REAL ESTATE
  • Blogs
  • Classifieds
No Result
View All Result
Seegala
Advertisement
  • Home
  • News
    • PRESS RELEASE
  • Shop
  • BUSINESS
    • CRYPTO
    • ECONOMY
    • FINANCE
    • MARKET
    • MONEY
  • TECH
    • APPS
    • Blockchain
    • Latest Games
    • GADGET
    • MOBILE
    • Metaverse
    • NFT
    • SCIENCE
    • Top SaaS Provider
    • Virtual Reality
    • Web 3
  • SOCIAL MEDIA
  • ENTERTAINMENT
    • ARTS & THEATER
    • GAMING
    • GAMBLING
    • MOVIE
    • MUSIC
    • SHOWS
    • SPORTS
  • LIFESTYLE
    • CELEBRITY
    • CULTURE
    • Education
    • FASHION
    • FOOD
    • HEALTH
    • HISTORY
    • Nature
    • Religion
    • Shopping
    • TRAVEL
  • REAL ESTATE
  • Blogs
  • Classifieds
No Result
View All Result
Seegala
No Result
View All Result
Home TECH

Zoom’s latest update on Mac includes a fix for a dangerous security flaw

by Seegala
August 15, 2022
in TECH
0
Zoom’s latest update on Mac includes a fix for a dangerous security flaw
0
SHARES
4
VIEWS
Share on FacebookShare on Twitter


Zoom has issued a patch for a bug on macOS that could allow a hacker to take control of a user’s operating system (via MacRumors). In an update on its security bulletin, Zoom acknowledges the issue (CVE-2022-28756) and says a fix is included in version 5.11.5 of the app on Mac, which you can (and should) download now.

Patrick Wardle, a security researcher and founder of the Objective-See Foundation, a nonprofit that creates open-source macOS security tools, first uncovered the flaw and presented it at the Def Con hacking conference last week. My colleague, Corin Faife, attended the event and reported on Wardle’s findings.

As Corin explains, the exploit targets the Zoom installer, which requires special user permissions to run. By leveraging this tool, Wardle found that hackers could essentially “trick” Zoom into installing a malicious program by putting Zoom’s cryptographic signature on the package. From here, attackers can then gain further access to a user’s system, letting them modify, delete, or add files on the device.

Reversing the patch, we see the Zoom installer now invokes lchown to update the permissions of the update .pkg, thus preventing malicious subversions pic.twitter.com/00xjqKQsXs

— patrick wardle (@patrickwardle) August 14, 2022

“Mahalos to Zoom for the (incredibly) quick fix!” Wardle said in response to Zoom’s update. “Reversing the patch, we see the Zoom installer now invokes lchown to update the permissions of the update .pkg, thus preventing malicious subversion.”

You can install the 5.11.5 update on Zoom by first opening the app on your Mac and hitting zoom.us (this might be different depending on what country you’re in) from the menu bar at the top of your screen. Then, select Check for updates, and if one’s available, Zoom will display a window with the latest app version, along with details about what’s changing. From here, select Update to begin the download.





Source link

ShareTweetPin

Related Posts

The revamped MoviePass goes nationwide
TECH

The revamped MoviePass goes nationwide

May 25, 2023
Alan Wake 2 won’t be available on disc
TECH

Alan Wake 2 won’t be available on disc

May 25, 2023
Opera launches new integrated AI sidebar powered by OpenAI’s ChatGPT
TECH

Opera launches new integrated AI sidebar powered by OpenAI’s ChatGPT

May 24, 2023
PlayStation is betting big on new franchises and live service games
TECH

PlayStation is betting big on new franchises and live service games

May 24, 2023
Hear how Sensi.AI is building AI for remote patient monitoring
TECH

Hear how Sensi.AI is building AI for remote patient monitoring

May 23, 2023
A trip to Dyson’s dirt-filled, germ-obsessed world
TECH

A trip to Dyson’s dirt-filled, germ-obsessed world

May 23, 2023
Next Post
JPMorgan Says the Stock Rally Has Legs. Morgan Stanley Disagrees

JPMorgan Says the Stock Rally Has Legs. Morgan Stanley Disagrees

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

  • 299 Followers

Recommended

XRP News 2022 #shorts

XRP News 2022 #shorts

October 1, 2022
CRYPTO NEWS TODAY | CRYPTOCURRENCY | NFT NEWS | BLOCKCHAIN NEWS | METAVERSE NEWS | CRYPTO NEW HUB

CRYPTO NEWS TODAY | CRYPTOCURRENCY | NFT NEWS | BLOCKCHAIN NEWS | METAVERSE NEWS | CRYPTO NEW HUB

October 6, 2022
New Orleans teens’ Pythagorean proof gains compelling evidence – The Guardian US

Glancy Prongay & Murray LLP, a Leading Securities Fraud Law Firm … – Business Wire

April 12, 2023
Keith White, HPE | HPE Discover 2022

Keith White, HPE | HPE Discover 2022

October 28, 2022
Quik․com Releases Update for Its NFT Domains

Quik․com Releases Update for Its NFT Domains

October 11, 2022
HPE GreenLake Day for storage

HPE GreenLake Day for storage

April 11, 2023
  • Disclaimer
  • Privacy Policy
  • Copyright Notice
  • Anti Spam Policy
  • Medical Disclaimer
  • DMCA Compliance
  • Terms and Conditions
  • Social Media Disclaimer
  • Amazon Affiliate disclaimer

.
© 2022 Seegala.com All right reserved.

No Result
View All Result
  • Home
  • News
    • PRESS RELEASE
  • Shop
  • BUSINESS
    • CRYPTO
    • ECONOMY
    • FINANCE
    • MARKET
    • MONEY
  • TECH
    • APPS
    • Blockchain
    • Latest Games
    • GADGET
    • MOBILE
    • Metaverse
    • NFT
    • SCIENCE
    • Top SaaS Provider
    • Virtual Reality
    • Web 3
  • SOCIAL MEDIA
  • ENTERTAINMENT
    • ARTS & THEATER
    • GAMING
    • GAMBLING
    • MOVIE
    • MUSIC
    • SHOWS
    • SPORTS
  • LIFESTYLE
    • CELEBRITY
    • CULTURE
    • Education
    • FASHION
    • FOOD
    • HEALTH
    • HISTORY
    • Nature
    • Religion
    • Shopping
    • TRAVEL
  • REAL ESTATE
  • Blogs
  • Classifieds

© 2023 JNews - Premium WordPress news & magazine theme by Jegtheme.