Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security FullDisclosure
[Top] [All Lists]

[Full-disclosure] SANS Top 20: Mac OS X?

Subject: [Full-disclosure] SANS Top 20: Mac OS X?
Date: Wed, 23 Nov 2005 08:52:30 -0500
I see SANS has put the Mac OS X in it's "Top 20" list of vulnerabilities.
Not parts of the OS, and not misconfigurations, but ALL of the Mac OS X.  Is
that OS really a "vulnerability" of such magnitude that it deserves a "Top
20" listing?

I'm puzzled, SANS remediation is merely patch, turn on the firewall, and
configure per published guidelines.  That fits for _any_ OS.

It just doesn't make sense that the _entire_ OS is a "Top 20" yet the
remediation is so basic.

Does SANS know something we don't?  Is the mere existence of OS X in a
network so bad that it deserves to be tagged as a "Top 20"?
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
<Prev in Thread] Current Thread [Next in Thread>