Skip to main content

Malwarebytes Slams Apple for the Poor Quality Patching Process

 Malwarebytes has emerged as one of the most popular antivirus systems around the world in recent times. This is when Malwarebytes does not fulfill the requirements to be labeled as fully-fledged antivirus. Recently, the company surprised everyone by complaining against Apple, one of the biggest tech companies in the world. In a blog post written by Malwarebytes support, the company criticized the patching process of Apple saying it can have serious repercussions for the safety and security of the systems being used by the customers.

Thomas Reid, Mac and mobile director in Malwarebytes, wrote a blog post that centers on a campaign called Watering Hole being run in Hong Kong. Watering Hole is actually a security threat that was aimed at the users of Mac OS who were directing people to a pro-democracy event supported by a political organization. TAG from Google first reported about Watering Hole some time ago. Hackers made use of two vulnerabilities in the Mac OS to launch these attacks. One of these was CVE-2021-1789, a web kit flaw, and the other one was CVE-2021-30869, escalation vulnerability related to XNU privilege. Both these vulnerabilities have been pointed out specifically in the blog post published by the Malwarebytes support team.

What is worrying, according to Thomas Reid, is the fact that both these vulnerabilities have been allowed to run wild without any detection so far by the parent company Apple. They have been around since 2019 and hackers have used them inside Trojans to infect the systems of innocent victims with impunity.

Apple claims to have released patches for both these vulnerabilities. The patches were released at the same time as Mac OS Big Sur was launched in February last year. However, there has been no respite for the users of earlier editions of Mac OS namely Mojave and Catalina. Apple says that the users of Catalina and Mojave would have become safe if they had upgraded to Safari OS after the release of the patch. The fact of the matter is that Apple cannot blame the users of Catalina as their vulnerability was fixed only months later on September 23. It means that Catalina users were left in the lurch by the company for more than 7 months.


Malwarebytes support team has pointed out this big lapse in security by Apple in its blog post. Reid says that the users of Catalina and even Safari 13 were left at the mercy of the hackers for 7-8 months. Google says that the number of attempts to breach this security was around 200 in this 7 month period. According to Reid, this lapse in security only highlights the attitude of Apple that it is interested in solving the problems of the latest and the most up-to-date versions of its operating systems. It means you can rely on the company for your security only if you are using Monterey. You are in the hands of God if you are using an older system of Mac.

Malwarebytes support team needs to be applauded for pointing out the inconsistency in the patching process of Apple.More Information: Aol.com mail | Satang Pro

Comments

Popular posts from this blog

At&t Best in 5g, Offering Free Smartphones to Customers

 AT&T is the number one telecommunications company of the country with footprints in not just landline and mobile telephony but also in broadband internet and digital entertainment. If you are a subscriber of this company, you must be a happy and satisfied customer. Recently, AT&T became Nation’s best 5G network after it was crowned as the most reliable 5G network of the country. A large role in this success is played by  AT&T support  that lives up to the expectations of the customers all the time. Global Wireless Solutions ran a survey in all 50 states across the country in order to find out which service provider is the best 5G network in the eyes of the consumers. In this survey, it was found that a vast majority of AT&T customers said that they were able to access 5G in most of the places. It was not the first time for AT&T to be given this award by GWS. This is the 4 th  time in a row in 4 years that the company has received this award in 4...

Google Chrome Remove Extensions Believed to Be Loaded With Spyware

 Google Chrome is undoubtedly the most popular browser used by not millions but billions of individuals around the world. It is a very fast browser packed with interesting features. One can judge its popularity by the fact that users download and install it in their devices where Chrome is not provided as a default browser. Users freely added browser extensions to their Chrome having blind faith on its security features. These millions of individuals have received a rude jolt by a recent news report about a spyware ring associated with Google Chrome.  Google Chrome support  has reacted to the development and taken down many such extensions. ‘Awake Security’ researchers have busted a ring of hackers that created extensions for Google Chrome loaded with spyware. This organized crime was going on for a very long time with the ringmasters easily distributing spyware through distribution of seemingly innocuous browser extensions. No one knows for sure how much damage has been ...

At&t Tries Hard to Prevent T-mobile From Surging Ahead in 5g

 AT&T is undoubtedly a giant in the telecom sector around the country. The company made every effort in the last few weeks to tip the scales in its favor in its fight with T-Mobile in the field of 5G services. T-Mobile was the first out of the blocks in 5G and it must have hurt the ego of the company of the stature of AT&T. The best way to thwart the growth story of T-Mobile was to prevent it from amassing mid-band spectrum.  AT&T Mail support  has decided to flex its regulatory muscle to stop T-Mobile from surging ahead of it in the 5G race. AT&T filed a petition with FCC in September 2021 saying it should not allow any single player to amass more than one-third of the total spectrum in a given marketplace. Mid band spectrum which lies in the range of 2.5-6 GHz is considered ideal for use in 5-G technology. As T-Mobile has recently taken over Sprint, it allows the company to bid for a big chunk of the mid-band spectrum on auction by the government. If o...