Don’t update your MacOS until this major security flaw is fixed!

security

We at Komando.com always advise you to keep your gadgets up to date with the latest software updates for security purposes. However, if you’re a Mac owner, you may want to hold off updating to the latest version of High Sierra 10.13.1 until this huge security flaw is fixed.

According to a torrent of Twitter posts, a bug in High Sierra allows anyone to gain administrator access to the Users & Groups settings by simply typing “root” as the username and no password. Oopsie.

9to5 Mac reports that the vulnerability was discovered by developer Lemi Orhan Ergin and he publicly contacted Apple Support to report the flaw.

The implications of this bug can be disastrous since an authorized user can exploit the flaw and can change user privileges, reset passwords and view personal files without having administrator privileges.

Faith Based Events

How to protect your Mac

Since the flaw is now public and it allows anyone to modify user accounts, we’re expecting a prompt software fix from Apple.

In the meantime, to protect your Mac against unauthorized access, we recommend disabling Guest Access and changing the Root password on your MacOS High Sierra 10.3.1 machine.

[vc_btn title=”Continue reading” style=”outline” color=”black” link=”url:https%3A%2F%2Fwww.komando.com%2Fhappening-now%2F431316%2Fdont-update-your-macos-until-this-major-security-flaw-is-fixed%3Futm_medium%3Dnl%26utm_source%3Dalerts%26utm_content%3D2017-11-29-article-title|title:Continue%20reading|target:%20_blank|”][vc_message message_box_style=”outline” message_box_color=”black”]Kim Komando, excerpt posted on SouthFloridaReporter.com, Nov. 29, 2017[/vc_message]

Disclaimer

The information contained in South Florida Reporter is for general information purposes only.
The South Florida Reporter assumes no responsibility for errors or omissions in the contents of the Service.
In no event shall the South Florida Reporter be liable for any special, direct, indirect, consequential, or incidental damages or any damages whatsoever, whether in an action of contract, negligence or other tort, arising out of or in connection with the use of the Service or the contents of the Service. The Company reserves the right to make additions, deletions, or modifications to the contents of the Service at any time without prior notice.
The Company does not warrant that the Service is free of viruses or other harmful components