{"id":123800,"date":"2015-04-13T10:26:57","date_gmt":"2015-04-13T08:26:57","guid":{"rendered":"http:\/\/mybroadband.co.za\/news\/?p=123800"},"modified":"2015-04-13T10:29:06","modified_gmt":"2015-04-13T08:29:06","slug":"darwin-nuke-remote-exploit-for-mac-iphone-discovered","status":"publish","type":"post","link":"https:\/\/mybroadband.co.za\/news\/security\/123800-darwin-nuke-remote-exploit-for-mac-iphone-discovered.html","title":{"rendered":"Darwin Nuke remote exploit for Mac, iPhone discovered"},"content":{"rendered":"<p>Kaspersky Lab has discovered a vulnerability in the kernel of Darwin, an open-source component of both the OS X and iOS operating systems.<\/p>\n<p>This \u201cDarwin Nuke\u201d vulnerability leaves OS X 10.10 and iOS 8 devices exposed to remotely-activated denial of service (DoS) attacks that can damage your device and impact any corporate network to which it is connected.<\/p>\n<p>Kaspersky advised users to update devices to OS X 10.10.3 and iOS 8.3, where this vulnerability has been patched.<\/p>\n<p>Kaspersky Lab said\u00a0devices affected by the threat include those with 64-bit processors and iOS 8: iPhone 5s, iPhone 6, iPhone 6 Plus, iPad Air, iPad Air 2, iPad mini 2, and iPad mini 3.<\/p>\n<p>For the \u201cDarwin Nuke\u201d vulnerability to be exploited, an attacker would need to send an Internet Protocol packet of a specific size with invalid IP options.<\/p>\n<p>After processing the invalid network packet, the system will crash.<\/p>\n<p>Kaspersky Lab said its researchers discovered that the system will only crash if the IP packet meets the following conditions:<\/p>\n<ul>\n<li>The size of the IP header should be 60 bytes.<\/li>\n<li>The size of the IP payload should be less than or equal to 65 bytes.<\/li>\n<li>The IP options should be incorrect (invalid option size, class)<\/li>\n<\/ul>\n<p>\u201cAt first sight, it is very hard to exploit this bug, as the conditions attackers need to meet are not trivial ones. However, persistent cybercriminals can do so, breaking down devices or even affecting the activity of corporate networks,\u201d said Anton Ivanov, senior malware analyst at Kaspersky Lab.<\/p>\n<p>\u201cRouters and firewalls would usually drop incorrect packets with invalid option sizes, but we discovered several combinations of incorrect IP options that are able to pass through the Internet routers,\u201d Ivanov added.<\/p>\n<h3 id=\"related\">More information security news<\/h3>\n<p><a href=\"http:\/\/mybroadband.co.za\/news\/business\/123288-sweep-your-office-for-bugs-there-are-spies-about.html\"><strong>Sweep your office for bugs, there are spies about<\/strong><\/a><\/p>\n<p><a href=\"http:\/\/mybroadband.co.za\/news\/security\/122858-british-airways-passenger-accounts-hacked.html\"><strong>British Airways passenger accounts hacked<\/strong><\/a><\/p>\n<p><a href=\"http:\/\/mybroadband.co.za\/news\/security\/122576-south-african-hacking-challenge.html\"><strong>South African hacking challenge<\/strong><\/a><\/p>\n<p><strong><a href=\"http:\/\/mybroadband.co.za\/news\/security\/119672-adware-or-malware-what-is-lenovo-pushing.html\">Adware or Malware \u2013 what is Lenovo pushing?<\/a><\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Kaspersky Lab has uncovered a vulnerability in the Darwin kernel which affects newer OS X and iOS devices.<\/p>\n","protected":false},"author":23,"featured_media":123802,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[27],"tags":[36,29738,29734,25293,22011,27178,22003,27180,17580,15373,26728,799,29736,25287],"class_list":["post-123800","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","tag-active","tag-darwin-kernel","tag-darwin-nuke","tag-ios-8","tag-ipad-air","tag-ipad-air-2","tag-ipad-mini-2","tag-ipad-mini-3","tag-iphone-5s","tag-iphone-6","tag-iphone-6-plus","tag-kaspersky-lab","tag-os-x-10-10","tag-os-x-yosemite"],"_links":{"self":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/123800"}],"collection":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/users\/23"}],"replies":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/comments?post=123800"}],"version-history":[{"count":1,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/123800\/revisions"}],"predecessor-version":[{"id":123804,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/123800\/revisions\/123804"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media\/123802"}],"wp:attachment":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media?parent=123800"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/categories?post=123800"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/tags?post=123800"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}