More than a year after claiming to have found a fashion to take over a Mac using a fault in the system ’s wireless wag , David Maynor has write details of his exploit .
Thedetailswere included in a theme put out in the September issue ofUninformed.org , an online hacking magazine . The prolonged newspaper distinguish how to run unauthorised software on a Macintosh by taking vantage of a flaw in Apple ’s AirPort wireless drivers .
Applepatchedthe germ last September without accredit Maynor for discovering the problem . Instead , Apple ’s engineers found the bug during an interior audit , the company say .
Maynor and research worker Jon Ellch first key out this type of job during an August 2006 introduction at the Black Hat security measures group discussion in Las Vegas . He was widely criticized by the Apple community for miscarry to back up his claim with technical details , and for presenting a video presentation that used a third - party radio receiver card instead of the one that ships with the Mac .
On Tuesday , Maynor tell that at the clock time of the Black Hat demonstration , he had found similar wireless microbe in a phone number of wireless cards , including Apple ’s AirPort and that he had been told to use the third - company plug-in in the telecasting because it was deemed “ the least unsavoury to people . ”
So why bring out the Mac hack now ?
Maynor said that he had been under a nondisclosure agreement , which had antecedently forbid him from publishing details of the hack . The security research worker would n’t say who his NDA was with , but that agreement is no longer in force , allowing him to talk about the exploit . “ I published it now because I can write it now , ” he said .
By going public with the info , Maynor hop to help other Apple researchers with Modern documentation on things like Wi - Fi debugging and the Mac OS X kernel core dump facility . “ There ’s a lot of interesting information in the theme that , if you ’re doing vulnerability enquiry on Apple , you ’d obtain useful . ”
Maynor will shortly publish a second paper on Uniformed.org excuse how to indite software package that will melt on a compromise system , he said .
As for his disparager , who will say that this revealing comes too lately , Maynor say he just does n’t care what they intend . “ get them tear me aside all they want but at the ending of the day the expert merit of the paper will stand on its own . ”