OS X :: Bug In IOKit Provides Hacker Root Access
Jul 2, 2010Finally some mac news. Only not positive newsI don't feel well to translate it today.Source (Dutch):
View 1 RepliesFinally some mac news. Only not positive newsI don't feel well to translate it today.Source (Dutch):
View 1 RepliesAccess to root account?
Info:G5 iMac, Mac OS X (10.4.10), 1.9ghz, 1.5Gb, 160HDD
In my keychain access I have the following:
com.apple.kerberos.kdc and com.apple.systemdefault both show "This root certificate is not trusted"
AND
Dashboard Advisory shows "This certificate was signed by an unknown authority."
I don't know what the notices mean (beyond the obvious that something is untrusted) nor do I know what to do about it.
I am running my Macbook Pro at work through the LAN. My work has a windows 2003 server. Everything has been fine (well just about) until today, when I couldn't get onto any internet sites. It would let me access all of the local work intranet site, but it wouldn't even let me on google. It worked fine yesterday, and all the Win PCs around me were all still up and running. I tried using a different port but to no avail. Also, I am still trying to access my root drives that are on my profile space at work. e.g R:\Venusgroupswbl etc etc. I want to connect to these through my mac.
View 1 Replies View Relatedi have been trying to install filemaker server connector which needs root access. i enabled root user and logged into it for the install but the installer still asks to login as root.
is there anyway of forcing the installer? is there something else i can do to give the installer "root" access?
Logged in as root, when I try to copy my TimeMachine backup to a new disk I get:
An error occurred. The operation couldn't be completed. (OSStatus error -5000.)
[code]...
On my Mac (10.6.2), I always would do this to access root if I had to:
sudo su - or just
sudo su
Well, I had to enable the actual root account briefly and then I disabled it. Now, I can't do sudo su or sudo su -, I just get a Sorry message. If I renable root, I can do it. What's also interesting is that both sudo -i and sudo -s work just fine with root disabled. Why can I no longer do "sudo su -" with root disabled?
In Keychain Access, My "Certificates" and "Keys", three out of the four root certificates are marked as: This root certificate is not trusted (in red) com.apple.ubiquity.peer-uuid- times two and one: com.apple.ubiquity.ssl - then five groups of numbers for each. Is this something that should concern me or is it something to do with the problems I am having, Mail - some addresses I use are not sync and have a warning sign! Are these certificates needed to be trusted for mail configuration?
Info:
MacBook Pro, Mac OS X (10.7.3)
my iMac crashed quite often recently.Everytime is crash the log shows ''com.apple.iokit.IOHIDFamily(1.7.1)'' in backtrace(not sure what does that mean...Here is my hardware overview: (not sure how much I should provide)
Model Identifier: iMac10,1Processor Name: Intel Core 2 DuoProcessor Speed:3.06 GHzNumber of Processors: 1Total Number of Cores: 2L2 Cache:Â 3 MBMemory: 12 GBBus Speed:Â Â Â Â 1.07 GHzBoot ROM Version: IM101.00CC.B00SMC Version (system): 1.53f13Â
Here is the log:Â
Fri May 25 13:15:35 2012
panic(cpu 1 caller 0xffffff80002c473a): Kernel trap at 0xffffff7f80aaddaa, type 13=general protection, registers:
CR0: 0x000000008001003b, CR2: 0x000000010070a000, CR3: 0x0000000000100000, CR4: 0x0000000000000660
RAX: 0x0000000010000000, RBX: 0x010038801aefafc0, RCX: 0x0000000000000001, RDX: 0x0000000000000000
[code]....
Info:
iMac, Mac OS X (10.7.4)
I just wrote a long detailed account of what's happening, and the hacker sent me somewhere else when I tried to post it. Now I have to start all over. Here are the facts:I'm normal and don't do anything weird on my computer. I have a G4 powerbook with Tiger and Vonage (not sure if that's considered a router) and an ethernet connection. I know how to set up all my preferences, I don't want to share anything. I want to use my computer and my internet by myself. It always starts out with my network config changing to "Internal Modem." Then my location changes, then my (LOCKED) system preferences are unlocked. The "Network Time" box will be checked. My firewall keeps getting turned off. My IP Net Sentry is suddenly set up to receive packages, and there are hundreds of scripts and Python and Network time, users named "Other", etc.
View 24 Replies View RelatedToday i saw unknown item in Finder Sidebar under Shared. When i clicked it, there was empty list and top of it was "Connecting... Share Screen... Connect As...". So someone tried to connect to my Mac and share screen???I have Snow Leopard and all Sharing settings are off. Firewall is on and now i turned "Block all incoming connections" to on.
View 9 Replies View RelatedI have two iMac 27's and a MacBook Pro in the household.All of them are on my network (both wired and wirless via an Apple Extreme)Now if I open "Finder" and look under "Shared" then - all of the mac's I expect to see appear there - but also a mystery machine - something called "imac-4431be"I cant connect to this Mac - and I don't know how it got there?? My house is about 400ft away from the nearest residence - so I guess I could be seeing someone else's iMac - but how did they get on my WPA protected network (and if they were clever enough to do so then I'd guess they be able to keep their machine hidden!)
View 1 Replies View RelatedI went on my computer and a browser window i had left open was now saying: "Turkish Hacker by Firtina bozo was here!" I'm assuming I've been hacked. I looked more into mac security and discovered I could enable Stealth Mode ( a bit too late i know ) but I did it anyway. Question now is... How do I know he is no longer connected? is it possible to see what files the hacker (cracker) was interested in if any? I was trying to look at the system log but don't really understand how to read it. All I know is I was away from the computer from around 4pm until around 10pm. but I see a lot of log activity between those times.
View 24 Replies View RelatedI've just had a hacker get into my Hotmail account and send a spam to everyone on my contacts list. My Mac is iMac, running on OSX Tiger.
View 15 Replies View RelatedThis is a serious problem. My iTunes ratings, and play counts keep proper messing up.its showing that some of my songs have been played like 300 times (hundreds of tracks affected) and seemingly random ratings keep being applied.I use ratings and play counts a lot so its making my perfect library... hell.Thing is even though the play counts go off the roof, there is no value in the last played clumb so its either a glitch or they havnt been played on my macbook. its started to happen ever since I started using a bluetooth mighty mouse a month back. luckily imm using time machine and restored my library from before, i thought it was sorted but its just started doing it again (ive noticed).
View 2 Replies View RelatedI am a newbye over MAc. On Java, sometimes it happens to place all my job on root (WIndows C:)Here on MAc what is the equivalent path??Maybe this a silly quetsion or maybe it is place d in thr wrong forum.
View 6 Replies View RelatedI've done this before quite a while ago - and have now forgotten how!I remember there was an app in Utilities folder that allowed me to set up a root account so I had total control of my system.
I finally took the plunge and ordered a MacPro quad 2.66. I am waiting for it, and in the meantime I might sell my Dual g5 1.8. The problem is that like this I could not transfer the files from one mac to the other. Second problem is that I run my machines as root in order not to have to deal with any security question (I know, it is a bit reckless, but knowing nothing about unix I started like that with the G5 5 years ago...), and I see that everything is in hidden files/directories that cannot be accessed easily (I thought I could enter in the new machine as root and I could access the root user data on the other disk, but it doesn't work, I tried on another machine).
Is there any clean solution that allows to move one root user from one disk, installed on the Pro, to the boot disk. Otherwise, any unclean (i.e. scripts etc)?
Well I don't have the Tiger CD anymore but I heard I can boot into single user mode and enable root? I tried this but didn't work
/sbin/fsck -y
/sbin/mount -uw /
/sbin/SystemStarter
passwd root
Is it different for tiger?
I am trying to add a root path to my system for my android sdk. I created a .bash_profile under the ~/ and the contents are as below: export PATH={PATH}:/Users/phil/android-sdk-mac_x86-1.5_r2/tools export PATH={PATH}:/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/bin:/usr/X11/bin However, if I type "echo $PATH" I get the following: {PATH}:/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/bin:/usr/X11/bin How can I get the "export "export PATH={PATH}:/Users/phil/android-sdk-mac_x86-1.5_r2/tools" to show up as a path?
View 2 Replies View RelatedI have a MacBook running OS X 10.5.6. I just installed MySQL (version MySQL 5.1.30-ndb-6.3.20-cluster-gpl) on it and I was trying to create a new database within it. However, I am told I do not have the necessary privileges to do this. The message goes on to state to use the root user to create databases and grant the necessary privileges to the new account. When I try to connect with the root user id, I left the password blank, since I have never set the password. This did not work since either it already has a default password. I looked at a previous message regarding enabling the root login. In it they state I should go to the "Netinfo" manager in the Utilities folder. I don't know if this is on a different version of the OS since I can't find the particular app. I have experience with Linux and I know that the root user id is very sensitive and should be used very sparingly if at all.
View 1 Replies View RelatedI just bought a used Emac running 10.3.9. The previous owner does not remember the administrator password nor did I realize how important it is to have. I have the original install discs and did boot using the disc. I then went under the install menu and chose reset password. I changed the user password but have been unsuccessful at changing the admin password. The drop down menu in password reset gave me the option of Administrator (root), Application, or finally user. I have read a couple of articles cautioning not to change or work with root changes.
View 8 Replies View RelatedI am taking a class in php and trying to figure out what the equivalent of the root of the C drive in windows ("c:/") is for the Mac.
View 3 Replies View RelatedI have an iPatch patch I need to apply with root privilege to an application. iPatch patches are drag and drop, which doesn't apply the privilege, so I think I need to apply it through the terminal.
View 3 Replies View RelatedI have accidentally deleted the Private folder in the root of the HD. Now OSX will not boot. The folder is still sitting in my Trash folder and I would like from the Boot CD Terminal to copy back from the trash to the Macintosh HD/ location.
View 13 Replies View RelatedCan a Leopard root filesystem be HFSX? If that will work, how do I tweak the installer to make it happen?Also, can I make a user's FileVault be HFSX? I could never make that work in Tiger, weird things happened.
View 6 Replies View RelatedOk so opened Directory Utility, unlocked it and then selected Enable Root User and set a password, locked Directory Utility opened terminal and typed sudo root.
When I entered the password I set I just get "Sorry, try again". Have tried going back into Directory Utility and changing the password but get the same thing.
There is a folder on my mac that holds the program files for a program, I only have read access to the whole folder and the files within it, even when using the root account. I am not looking to edit an files, just rename one. How can I do this? I have looked online and found no help.
View 9 Replies View RelatedI am running 10.5.2 on a late 2006 core 2 duo iMac. 2 GHz 17" w 3 GB installed. I recently purchased Hear which is an audio enhancing program. It does run but not quite correctly. Once you set up the audio settings as you like you are suppose to be able tp quit its GUI and the settings remain as they are through reboots etc.Under my normal admin acct it doesn't quite do that. It forgets if I close it.However, when I log into root it works just fine. I also run FStream to listen to internet radio but for some reason Hear only sees FStream under the root acct. I tried turning off or uninstalling every third party app I was using to see if something was conflicting, so far I have had no luck.
I guess my question is, What would cause something to not quite work correctly under an administrator acct but fine under root? I am at a loss where to look at this point.
I'm currently working on migrating some machines from Snow Leopard to Lion, and I have a bunch of postimaging scripts that are fired on first boot. The first script automatically mounts an SMB share to copy the rest of the postimaging scripts and run them. However it would seem that it is no longer possible to mount an SMB share as root (root as in running sudo -i as an admin account to get to a root shell, or running the command prefixed with sudo) as it fails with "mount_smbfs: server rejected the connection: Authentication error". As far as I can tell, the request is not actually making it to the SMB server, as there is no log entries indicating a failure for this particular user to logon.
Info:
Mac mini, Mac OS X (10.7.3)