Skip to main content

Malwarebytes Slams Apple for the Poor Quality Patching Process

 Malwarebytes has emerged as one of the most popular antivirus systems around the world in recent times. This is when Malwarebytes does not fulfill the requirements to be labeled as fully-fledged antivirus. Recently, the company surprised everyone by complaining against Apple, one of the biggest tech companies in the world. In a blog post written by Malwarebytes support, the company criticized the patching process of Apple saying it can have serious repercussions for the safety and security of the systems being used by the customers.

Thomas Reid, Mac and mobile director in Malwarebytes, wrote a blog post that centers on a campaign called Watering Hole being run in Hong Kong. Watering Hole is actually a security threat that was aimed at the users of Mac OS who were directing people to a pro-democracy event supported by a political organization. TAG from Google first reported about Watering Hole some time ago. Hackers made use of two vulnerabilities in the Mac OS to launch these attacks. One of these was CVE-2021-1789, a web kit flaw, and the other one was CVE-2021-30869, escalation vulnerability related to XNU privilege. Both these vulnerabilities have been pointed out specifically in the blog post published by the Malwarebytes support team.

What is worrying, according to Thomas Reid, is the fact that both these vulnerabilities have been allowed to run wild without any detection so far by the parent company Apple. They have been around since 2019 and hackers have used them inside Trojans to infect the systems of innocent victims with impunity.

Apple claims to have released patches for both these vulnerabilities. The patches were released at the same time as Mac OS Big Sur was launched in February last year. However, there has been no respite for the users of earlier editions of Mac OS namely Mojave and Catalina. Apple says that the users of Catalina and Mojave would have become safe if they had upgraded to Safari OS after the release of the patch. The fact of the matter is that Apple cannot blame the users of Catalina as their vulnerability was fixed only months later on September 23. It means that Catalina users were left in the lurch by the company for more than 7 months.


Malwarebytes support team has pointed out this big lapse in security by Apple in its blog post. Reid says that the users of Catalina and even Safari 13 were left at the mercy of the hackers for 7-8 months. Google says that the number of attempts to breach this security was around 200 in this 7 month period. According to Reid, this lapse in security only highlights the attitude of Apple that it is interested in solving the problems of the latest and the most up-to-date versions of its operating systems. It means you can rely on the company for your security only if you are using Monterey. You are in the hands of God if you are using an older system of Mac.

Malwarebytes support team needs to be applauded for pointing out the inconsistency in the patching process of Apple.More Information: Aol.com mail | Satang Pro

Comments

Popular posts from this blog

How to Login Paramount Plus?

  How to login Paramount Plus? We all are somewhere engaged with some work or another daily irrespective of the fact if we are the working person or the ones handling home chores. Coinb After having a tiring day, we expect some favorable changes that lighten up our headaches without even going out of our houses. Is this possible? Well, in the era of the internet, everything is possible with a single click only. Streaming platforms have become highly lovable not only among youngsters but have also grabbed the attention of adults. In other words, it has become a top pick among all age categories. If you have subscribed to an online OTT platform- Paramount+ and are wondering how to login Paramount Plus, then we are here to help you out. To get the answer walk through the complete read with us. A step-to-step guide for Paramount+ login Already signed up for the Paramount+? If you are already holding an account on Paramount+, and are looking for a straightforward guide to assist you

Windows 10 Users Continue to Experience Various Kinds of Bsod Errors

 The dreaded blue screen of death is a problem faced by many Windows based computer owners. The   BSOD error   came into prominence with Windows 7 with users complaining a blue screen with an error message before their system automatically shuts down. Microsoft initially ignored the problem thinking it was a temporary error caused by faulty drivers downloaded by the customers. It was much later that Microsoft accepted this difficulty experienced by its customers and introduced security updates that solved the   blue screen Windows 7  error messages. By the time Microsoft launched Windows 10 operating system, the instances of the dreaded  BSOD Windows 10  had significantly reduced. However, these instances have started to increase in recent times ever since the company introduced two updates to its Windows 10 operating system. Fans of Windows operating system hoping better luck with the dreadful blue screen of death are now finding that their issues have increased significantly rather t

Microsoft Concedes Blue Screen of Death Windows 10

 Blue screen of death, simply called BSOD, is a problem faced by a large number of Windows computer users. This shutdown of the computer accompanied by a blue screen with an error message was very common with the older Windows 7 operating system. Microsoft promised no BSOD problem for the customers when launching Windows 10 a few years down the line.  Blue screen Windows 7  indeed became much less frequent with Windows 10. Last month, Microsoft introduced a new update to Windows 10 operating system. Barely two weeks after the introduction of this version called 20H2 the company issued a warning to the users. In fact, there were not one but two warnings from Microsoft recommending users to revert to the older version of Windows 10 if they continued to experience   BSOD error   or asked to reboot after signing in. This move by the company seems to be a result of a flurry of complaints lodged by the customers about the infamous  Windows blue screen of death   error message. These custome