Leopard's Firewall Does Not Work As Expected
By Alice Turner
22:25, October 31st 2007
61 votes
Vote this story
Leopard's Firewall Does Not Work As Expected

Apple's new operating system, Mac OS X Leopard (10.5), which sold 2 million copies over its first weekend, is blasted for one more reason: its security level is nowhere what Apple has advertised. While the Mac maker claimed Leopard offers substantial security benefits over its successor, Tiger, tests by security experts proved that in fact there is no real improvement.

Heise Security tested Apple's last OS and found that the firewall configuration in the Mac OS X Leopard is unable to perform its task: sealing off local services to prevent access from potentially hostile networks, such as the internet or wireless networks.

Heise has found that Leopard's firewall apparently adds every process started by the user into the list of exceptions automatically. Also, several services, which did not appear listed in the firewall's exception list, were readily accessible from the network.

In fact, even when set on "Block all incoming connections," Leopard's firewall still allowed system services to be accessible from the Internet.

"At present, in order to block access to system services, users must either disconnect the network cable or fall back on the tried and tested BSD ipfw packet filter," wrote tester Jürgen Schmidt.

"The Mac OS X Leopard firewall failed every test. It is not activated by default and, even when activated, it does not behave as expected. Network connections to non-authorized services can still be established and even under the most restrictive setting, "Block all incoming connections," it allows access to system services from the internet," he concluded.

However, Mikko Hypponen, chief research officer at F-Secure, said to BBC: "Year after year, Macs continue to have these potential security problems. However, in practice they just don't seem to become real-world problems," he added. "The old wisdom still stands: if you want to avoid viruses and worms, get a Mac."

Meanwhile, the OSx86 Scene forum posted instructions to install Apple's Leopard, on a PC. The special install process unfortunately has some consequences, as features such as Wi-Fi support are disabled.

Among its advertised security improvements, Leopard records information about any program you download over the Internet and shows that info to you the first time you run it; and Apple added optional authenticity verification which verifies whether a program is unchanged since it was produced by its developer.



© 2007 - 2008 - eFluxMedia
dotclear

Other News in

Microsoft Patch Tuesday Low Key, Brings Vista Code Injection Risk Fix

Microsoft Patch Tuesday Low Key, Brings Vista Code Injection Risk Fix

Microsoft has issued its advance notification of security bulletins that Microsoft is intending to release this patch Tuesday, on July 8. It is made up of four important-rated fixes, two of which...

Microsoft Going After MSN Israel Ltd.

Microsoft Going After MSN Israel Ltd.

On Sunday, Microsoft officials announced the company’s plans to acquire the remaining 50.1% of MSN Israel Ltd. from its partner, Internet Gold Ltd. MSN Israel was founded back in 2000 as...

Internet Explorer Is Starting to Lose Ground

Internet Explorer Is Starting to Lose Ground

A new study released by Net Applications have shown that Microsoft’s Internet Explorer is starting to lose market share in favor of its two biggest competitors, Mozilla’s Firefox, and Apple’s...

Microsoft Equipt: Subscription Software More Expensive than Retail

Microsoft Equipt: Subscription Software More Expensive than Retail

Microsoft has launched the long-rumored subscription service to an all-in-one software suite, which combines Microsoft Office Home and Student 2007, Office Live Workspace, Windows Live OneCare,...

Update: Viacom-YouTube Ruling Triggers Far-Reaching Privacy Concerns

Update: Viacom-YouTube Ruling Triggers Far-Reaching Privacy Concerns

The ruling which demands Google to hand over the YouTube access logs, which are to show the actual extent of copyright infringement going on the popular site, has sparked outrage from privacy groups,...

dotclear
Latest videos in Technology
Google ordered: hand over...
Microsoft after Gates
Mobile precautions urged
What Yahoo turned down
iPhones get faster, cheaper

dotclear
Technology You are here: Technology
» Technology   » Gadgets   » Video Games   
E-mail To A Friend Print RSS Text size: Decrease font size Increase font size
dotclear
dotclear
dotclear
Most Popular in Technology
Google Homepage Adds Privacy LinkGoogle Homepage Adds Privacy Link

» read full story
dotclear

Interested In This Topic?

News Alert will keep you informed. Find out more.
dotclear
Photos Gallery
dotclear
Today's Latest News
91-Year-Old Woman Searches for Keys and Gets Stuck Under Car91-Year-Old Woman Searches for Keys and Gets Stuck Under Car

» read full story
dotclear