DISQUS

Matasano Chargen: Apple Wireless Security Update

  • obijuan · 3 years ago
    It should be very interesting to see what (if any) SecureWorks revelations are in light of this patch release. What's been fascinating to me has been watching the security masses draw the line between the "don't touch my apple" crowd and um, everyone else.
  • Rico · 3 years ago
    I think they have to have an exploit for them to actually post one. What confuses me is that they have a bit of an axe to grind with Apple and their users, at any point they can show that Apple has lied. It seems like they can really rub Apple's nose in it right now. They aren't doing that, why not? Secureworks is a funded company, they have lawyers too.

    For the record, I don't really like Apple or their products but it looks to me like they smelled smoke and did their own audit and did the right things.
  • mjf · 3 years ago
    Has anyone asked David Maynor to explain this, now that Apple has acknowledged it and patched it?
  • Brian Krebs Watch · 3 years ago
    well, what is negative on both sides is

    1) Apple releasing this through PR channels, rather than having someone from a security background speaking.

    2) SecureWorks only leaking to a few, unreliable and inacurrate journalists (krebs and ou) rather than issuing a more formal statement. The SecureWorks merger may have something to do with the silence.
  • Daniel · 3 years ago
    THANK F**K ITS OVER!

    Seriously this has to go down as a lesson to all here, including Apple/Maynor/Secureworks and the rest of the apple fan club.

    mjf: Maynor has been MIA since BH, we'd love to hear from him tho, just to say hi :)
  • Kenneth F. Belva · 3 years ago
    It seems to me this was a case where full disclosure or accreditation by a trusted third party was necessary for the public good:

    http://www.bloginfosec.com/?p=26
  • _ryan · 3 years ago
    fwiw, maynor and cache are promising to tell "the complete story" at toorcon next weekend.
    http://www.toorcon.org/2006/conference.html?id=5

    _ryan
  • LonerVamp · 3 years ago
    Kenneth, that's the best idea I've read in this entire whole incident.
  • Chris_B · 3 years ago
    Its a mistake to look at this as pro/anti Apple tho thats of course the easiest and most sensationalist way to see it.

    Even with a patch release I still stand by my previous two comments:
    1 we (security practitioners of any stripe) as an industry need to stop acting like children.
    2 SecureWorks were all hat no cattle.
  • Mac Mini · 2 years ago
    Thank goodness for the patch release! Yay. :D
  • sohbet · 4 months ago