Well this isn't good. A bug in Apple macOS High Sierra can Maid Pension: Erotic Services From MZ Girls (2025)let anyone gain admin access to a Mac. To make matters worse, once that access has been gained, an attacker can later log back into the locked device anytime.
Published to Twitter on Tuesday by software engineer Lemi Orhan Ergin, the vulnerability is alarmingly straightforward. The flaw allows someone to create a kind of phantom profile, one that can log into the Mac with admin access, but it won't show up on a real admin account.
Once the phantom account is created, a user simply needs to enter "root" as a username and, without entering a password, hit enter to unlock. Importantly, the hacker first has to have access to a unlocked computer to be able to pull this off. But still, it's bad.
Mashable confirmed this security flaw exists on macOS High Sierra 10.13.0.
This Tweet is currently unavailable. It might be loading or has been removed.
This Tweet is currently unavailable. It might be loading or has been removed.
Anyone looking to exploit the flaw would in most cases first need physical access to the machine while an admin is logged in. They would only need access for a few seconds, though, and then could return anytime to log in as an admin.
However, should a vulnerable machine also happen to have screen sharing turned on, it is reportedly remotely vulnerable as well.
This Tweet is currently unavailable. It might be loading or has been removed.
This Tweet is currently unavailable. It might be loading or has been removed.
"We are working on a software update to address this issue," explained Apple when reached for comment. "In the meantime, setting a root password prevents unauthorized access to your Mac."
Instructions to do so can be found on an Apple support page.
This story has been updated with information about remote exploitation, as well as a statement from Apple.
Topics Apple Cybersecurity
Elon Musk says he'll fight Mark Zuckerberg 'any place, any time, any rules'NYT Strands hints, answers for July 26The water pistol emoji is now a gun emoji on Elon Musk's XTile trackers on sale: Save up to 33% ahead of summer travelThe Great Summer Sale at Best Buy: Get up to $600 off select iPad Pro modelsOlympics Opening Ceremony 2024: Who will perform?Microsoft says EU rules made CrowdStrike outage possibleWordle today: The answer and hints for July 24Microsoft says EU rules made CrowdStrike outage possibleMicrosoft Surface Laptop Go 3 deal: It's only $600 at Best Buy, AmazonSDCC: Robert Downey Jr. returns to Marvel as Doctor Doom in 'Avengers Doomsday'Best earbuds deal: Snag the JBL Tune 230NC TWS wireless earbuds at $48Reddit no longer showing in search results – unless it's Google search[Update: Dion has arrived] Paris Olympics opening ceremony: Where is Celine Dion?Paris 2024 is bringing AI to the Olympic starting lineNYT's The Mini crossword answers for July 26Wordle today: The answer and hints for July 28iOS 18 Apple Music: New tool for creating your own AISenate Defiance Act passes unanimously, outlining civil path for deepfake victimsSonos apologizes for app rollout Frederick Seidel’s “Widening Income Inequality” by Hailey Gates The Immortality Chronicles, Part 2 by Adam Leith Gollner 'Quordle' today: See each 'Quordle' answer and hints for July 12 Ye Olde Grease Lightning, and Other News by Sadie Stein Emmy nominations 2023: How and when to watch In Which Jane Austen Tells Your Fortune, and Other News by Sadie Stein That historic Thanos Childish Things 'Miracle Workers: End Times' review: Wanna see Daniel Radcliffe go Mad Max? Wordle today: Here's the answer and hints for July 9 Don’t Snip My Brakes in Long Beach by Dave Tompkins The Snack by Molly Hannon Ground Down by Michael Croley Ah, Underpants! by Sadie Stein Gathering the Poems Together: A Conversation with Gregory Orr by Alex Dueben The Immortality Chronicles, Part 3 by Adam Leith Gollner Nowhere to Go But Everywhere by Sadie Stein Mr. Paradise by Jonathan Segura 'Quicksand': Let's talk about that truly wild ending New Salinger, and Other News by Sadie Stein
2.4324s , 10109.7421875 kb
Copyright © 2025 Powered by 【Maid Pension: Erotic Services From MZ Girls (2025)】,Unobstructed Information Network