Threat Level: green Handler on Duty: Xavier Mertens

SANS ISC: Apple Certificate Trust Policy Update - SANS Internet Storm Center SANS ISC InfoSec Forums


Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
Apple Certificate Trust Policy Update

Apple released a patch to update their certificate trust policy affecting Mac OS X Server 10.6, Mac OS X 10.6, Lion Server, OS X Lion. Using fraudulent certificates operated by DigiNotar, an attacker with enough network privileges could intercept user credentials or sensitive information. Apple recommends applying security update 2011-005, additional information available here and downloaded here.

[1] http://support.apple.com/kb/HT4920

[2] http://www.apple.com/support/downloads/

[3] http://support.apple.com/kb/HT4415

-----------

Guy Bruneau IPSS Inc. gbruneau at isc dot sans dot edu

Community SANS SEC 503 coming to Ottawa Sep 2011

Guy

418 Posts
ISC Handler
Still waiting for Apple fix iOS, and Google to fix Android
Anonymous
Posts
I haven't noticed a Safari update yet (for PC) either
Anonymous
Posts

Sign Up for Free or Log In to start participating in the conversation!