Apple's advice for the root no-password hole in macOS High Sierra: Enable root, set it a password, wait for a fixhttps://www.theregister.co.uk/2017/11/28/root_access_bypass_macos_high_sierra/ …
-
-
So a minimum requirement for remote exploitation is either LAN access, or a target daft enough to have port 5900 open to the Internet, right? Terrible and absurdly insecure... but unlikely to lead to botnets, unless I'm missing something.
-
Thank goodness :)
End of conversation
New conversation -
-
-
Thank goodness. I'm glad I misread that! So is permitrootlogon disabled by default on OSX?
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.