Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
×
Security IT Apple

Apple Criticized For Not Blocking Stolen Certs 154

CWmike writes "A security researcher is criticizing Apple for lagging with its response to the DigiNotar certificate fiasco. He is urging the company to quickly update Mac OS X to protect users. 'We're looking at some very serious issues [about trust on the Web] and it doesn't help matters when Apple is dragging its feet,' said Paul Henry, a security and forensics analyst with Lumension. Unlike Microsoft, which updated Windows on Tuesday to block all SSL certificates issued by DigiNotar, Apple has not updated Mac OS X to do the same. Meanwhile, even Mac OS X users who want to go DIY are stymied, reports Bob McMillan, because the OS can't properly revoke dodgy digital certificates."
This discussion has been archived. No new comments can be posted.

Apple Criticized For Not Blocking Stolen Certs

Comments Filter:
  • lol (Score:0, Funny)

    by Anonymous Coward on Friday September 09, 2011 @02:43AM (#37348812)

    macs cant get hacked

  • FUD (Score:3, Funny)

    by Anonymous Coward on Friday September 09, 2011 @02:51AM (#37348844)

    These certs are blocked on all Apple equipment and always have been. Anyone getting the certificate accepted is obviously holding it wrong.

  • Reality (Score:5, Funny)

    by mcrbids ( 148650 ) on Friday September 09, 2011 @02:53AM (#37348850) Journal

    Somewhere deep in Silicon Valley, a programmer is looking at a comment something like this:

    /*******
    FIXME: WTF Hack here. CRLs require authentication of being revoked, but we never bothered to check the callback of the revoke. Maybe if we bothered to have a revoke infrastructure? For now, we'll just not bother fixing this until 10.1 or 10.2.
    ******/
    return true;

  • by Anonymous Coward on Friday September 09, 2011 @03:41AM (#37349052)

    Thank you for picking a random thread to externate your thinkings abobut MS and Open Source, but this is an Apple bashing thread, you should look more carefully next time. Id*ot.

  • by Anonymous Coward on Friday September 09, 2011 @04:00AM (#37349112)

    What, no Micro$oft borg icon? And they already patched Windows?? I find that hard to believe. Come on, give the real details of the story. We all know that M$ technologies is pure crap and that anything Apple does is perfection. That's why Apple can drag its feet. As far as I'm concerned Apple doesn't have to do a single thing (it's perfection).

And it should be the law: If you use the word `paradigm' without knowing what the dictionary says it means, you go to jail. No exceptions. -- David Jones

Working...