Apple Blacklists Own Ethernet Driver: http://mjtsai.com/blog/2016/02/28/apple-blacklists-own-ethernet-driver/ … #mjtsaiblog
@mjtsai Dockmod seems have shipped a valid signed kext that allowed root to bypass SIP and inject code into processes (like the Dock).
-
-
@mjtsai That seems to have resulted in getting their signing cert revoked, and a blacklist entry added for their existing kext. -
@landonfuller@mjtsai Good call IMO. Injecting userland code into Apple-owned processes from kernelspace is a rather horrid security fail. - View other replies
-
-
-
@landonfuller@mjtsai Slightly disagree. IMO bad code in kernelspace should be strongly discouraged regardless of issues with SIP etc. -
- View other replies
-
@landonfuller@ameaijou Was it because of the code or because they were not honest when applying for the cert? -
@mjtsai@landonfuller My guess would be the latter, if indeed that happened. Other possibility is someone approved the request when they - Show more
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.
Michael Tsai
Landon Fuller
Gwynne Raskind