216.73.216.36

New macOS vulnerability, "HM Surf", could lead to unauthorized data access

· Published 18/10/2024 14:09 · Modified 21/10/2024 09:53

Export JSON

Essential information

Published
18/10/2024 14:09
Modified
21/10/2024 09:53
Tags
2024-10-18 CVE-2024-44133 adload browser security hm surf macos privacy safari tcc bypass vulnerability
Related entities
1 intrusion sets (apt), 8 techniques (mitre), 1 malware

Description

A new called '' has been discovered that could allow attackers to bypass the Transparency, Consent, and Control (TCC) technology and gain unauthorized access to protected user data. The exploit involves removing TCC protection for the browser directory and modifying configuration files to access browsed pages, camera, microphone, and location without user consent. Apple has released a fix for this () in Sequoia. Microsoft Defender for Endpoint can detect and block exploitation attempts. The affects , which has powerful TCC entitlements. Third-party browsers are not directly impacted but could be vulnerable to similar attacks. , a prevalent threat, has been observed potentially exploiting this .

External references