Threat Advisory

Microsoft finds macOS bug that lets malware bypass security checks

Threat: Vulnerability
Criticality: High
[subscribe_to_unlock_form]

Summary:

Apple has released a patch for a critical vulnerability, that was reported by windows and tracked as CVE-2022-42821 (Achilles). CVE-2022-42821 allows attackers to bypass application execution restrictions imposed by Apple’s Gatekeeper security mechanism. Gatekeeper is a security feature of Apple's macOS and iOS operating systems. It requires downloaded software to be digitally signed by Apple before it can be installed. It significantly reduces the chance that any malware gets installed on Apple devices. MacOS 13 (Ventura), macOS 12.6.2 (Monterey), and macOS 1.7.2 (Big Sur) are affected by this vulnerability.[/subscribe_to_unlock_form]

Summary:

Apple has released a patch for a critical vulnerability, that was reported by windows and tracked as CVE-2022-42821 (Achilles). CVE-2022-42821 allows attackers to bypass application execution restrictions imposed by Apple’s Gatekeeper security mechanism. Gatekeeper is a security feature of Apple's macOS and iOS operating systems. It requires downloaded software to be digitally signed by Apple before it can be installed. It significantly reduces the chance that any malware gets installed on Apple devices. MacOS 13 (Ventura), macOS 12.6.2 (Monterey), and macOS 1.7.2 (Big Sur) are affected by this vulnerability.[emaillocker id="1283"]

Recommendations:

We strongly recommend patching the vulnerability by updating to the latest versions.

References:

The following reports contain further technical details:

https://support.apple.com/en-us/HT201222

[/emaillocker]
crossmenu