New vulnerability discovered in macOS High Sierra: Synthetic Click

Developer Patrick Wardle announced at a security conference about a new e major vulnerability found in macOS High Sierra operating system, named by himself as: Synthetic Click. Let us remember that this is one of the most important Apple OS in terms of number of users who have it installed and therefore it is a serious problem.

This is a system failure that would allow with a simple fake click (for example, the keystroke in the typical windows that appear when we are victims of malware) directly access the most important functions of the system, really a serious problem.

Apple would have already resolved the vulnerability in macOS Mojave

We cannot say that it is something that reassures us and it is that although it is true that Apple would already have resolved the vulnerability in the first version of the macOS Mojave system, the millions of users who have macOS High Sierra installed on our Mac are totally vulnerable. It is possible that in a last version of the OS before launching macOS Mojave the problem will be solved or even once Mojave is launched, but this is not confirmed and therefore it is a problem that Apple should handle as quickly as possible.

Wardle's own words, are quite clear with this vulnerability and it is not explained that simply misspelling two lines of code breaks security of an OS as "secure" as macOS High Sierra. Obviously, for this problem to affect our machine we have to execute a file that contains the malware, and although it is true that today it is difficult for it to affect us, it could happen and therefore a solution to the problem has to be found. We will remain attentive and above all we will wait for Apple to get to work and solve the failure in macOS High Sierra as soon as possible, even if we have macOS Mojave just around the corner ...


Leave a Comment

Your email address will not be published. Required fields are marked with *

*

*

  1. Responsible for the data: Miguel Ángel Gatón
  2. Purpose of the data: Control SPAM, comment management.
  3. Legitimation: Your consent
  4. Communication of the data: The data will not be communicated to third parties except by legal obligation.
  5. Data storage: Database hosted by Occentus Networks (EU)
  6. Rights: At any time you can limit, recover and delete your information.