Leopard fails firewall tests
By Simon Aughton,
The firewall in Leopard, the new operating system (OS) from Apple, has failed a series of security tests, according to Heise Security.
The company's researchers found the redesigned firewall interface - now part of the Security rather than Sharing system preferences - was unable to prevent incoming traffic in any of their tests. The firewall was tested in its default setting, where all incoming traffic is automatically managed by the system; in its most secure, blocking everything; and in its customisable configuration.
In all instances, the researchers reported that they could establish network connections to non-authorised services. And if they could, so can malware.
"It is conceivable that Apple intends that every process started by the user should be entered into the list of exceptions automatically," the researchers said. "This would, however, also apply to a trojan, covertly setting up a backdoor on the system. Only Apple can explain what precisely is going on here."
Heise's Jürgen Schmidt claimed that Apple was showing a casual attitude to security, similar to that of Microsoft four years ago. Like Windows XP, Leopard does not activate the firewall by default. But even when it was activated, it proved ineffective at stopping rampant malware, since system services representing potential access points for malware were accessible via the internet interface by default.
Schmidt noted that as things stand, the problems with Leopard's firewall do not expose Mac users to anything like that level of risk, but added that does not mean they cannot be ignored.
"The Mac OS X Leopard firewall failed every test," he said. "It is not activated by default and, even when activated, it does not behave as expected. Network connections to non-authorised services can still be established and even under the most restrictive setting, 'Block all incoming connections', it allows access to system services from the internet. Although the problems and peculiarities described here are not security vulnerabilities in the sense that they can be exploited to break into a Mac, Apple would be well advised to sort them out pronto."
Apple has been asked to respond to Heise's report.
You may also like...
Sponsored Links
advertisement
You may also like...
Latest Security Analysis & Insight
What is your password worth?
Would you be tempted to sell off company passwords for a fee? If not, seems like you're in the minority, acccording to research.
- Macs under attack?
- Intel: security inside
- Are you spending too much on IT security?
- Does the government want to snoop on your data?
- Eurocrats versus the cyber criminals
- The truth about spam
- Google and privacy: What’s the problem?
- Q&A: Symantec’s CISO on the source code hack
- RSA: Back from the breach?
Latest Security Reviews
Check Point 2210 Appliance review
Rating: ![]()
advertisement
Most popular
- Apple iPad 3 vs iPad 2 head-to-head review
- Hutchison denies it will pull plug on Three UK
- EMC World 2012: Tucci declares Documentum is here to stay
- ICO: Fines for cookie law breakers
- EMC World 2012: EMC talks up cloud, security and big data
- Dell PowerEdge R820 review
- Sony Vaio T13 Ultrabook review: First look
- BlackBerry 7 OS certified to carry 'Restricted' UK government information
- Facebook floatation marred by Nasdaq glitch
- CIO: Career is over?
Latest News Videos in Security
IT PRO Podcast: Are UK data protection laws flawed?
We bring in two experts to talk about the problems with UK data protection law and the way it is managed.
Register for IT PRO
You'll get exclusive member benefits including free whitepapers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.





