Submit a Story!
Pwn2Own 2009: Safari/MacBook falls in seconds
Pwn2Own 2009: Safari/MacBook falls in seconds
[ UPDATE: IE 8 and Safari also falls ] VANCOUVER, BC — Charlie Miller has done it again. For the second consecutive year, the security researcher hacked into a fully patched MacBook computer by exploiting a security vulnerability in Apple’s Safari browser. “It took a couple ...
Chrome only browser left standing after day one of Pwn2Own
Chrome only browser left standing after day one of Pwn2Own
arstechnica.com — Browser vendors often make strong claims about their responsiveness to vulnerability reports and their ability to preemptively... prevent exploits. Security is becoming one of the most significant fronts in the new round of browser wars, but ... (more) Chrome only browser left standing after day one of Pwn2Own
Pwn2Own trifecta: Hacker exploits IE8, Firefox, Safari
Pwn2Own trifecta: Hacker exploits IE8, Firefox, Safari
blogs.zdnet.com — VANCOUVER, BC — It took a while longer but Microsoft’s Internet Explorer 8 did not survive the... hacker onslaught at this year’s CanSecWest Pwn2Own contest. [ ALSO SEE: Pwn2Own 2009: Safari/MacBook falls in seconds ] A security ... (more) Pwn2Own trifecta: Hacker exploits IE8, Firefox, Safari
DVLabs | Pwn2Own 2009 Day 1 - Safari, Internet Explorer, and Firefox Taken Down by Four Zero-Day Exploits
DVLabs | Pwn2Own 2009 Day 1 - Safari, Internet Explorer, and Firefox Taken Down by Four Zero-Day ...
dvlabs.tippingpoint.com — The 3rd annual Pwn2Own contest kicked off today at CanSecWest around 3:00pm PST. For the first time,... we had so many people register for the contest that we had to draw names from a hat- literally! In typical techie format, Aaron wanted to take a ... (more) DVLabs | Pwn2Own 2009 Day 1 - Safari, Internet Explorer, ...
Comments
Blog Reactions

Pwn2Own 2009: Mac falls in seconds
Technology: Technology blog | guardian.co.uk — ... in about two minutes. This year, as he'd warned beforehand, he pwned a fully patched MacBook in a few seconds, by exploiting a security vulnerability in Apple's Safari browser, as Ryan Naraine reports at ZD Net. ...

Mac security researcher wins Pwn2Own contest
AppleInsider — ... compare similar code on each side (with Mac OS X inheriting the vulnerability counts in optional open source server programs, Java, and other components that are not considered on the Windows side), the real problem is active exploits. Mac OS X continues to have no real viruses, while Windows users continue to be plagued by viruses, adware, and other security problems. At the same time however, the tech media is promoting the CanSecWest event as a "security shootout," with at least one report noting that browsers on the Windows box were "still standing" after Miller ...

Safari hacked in seconds; IE8 & Firefox fall soon after
SlashGear — ... Security researcher Charlie Miller has shown how he can hack into a MacBook notebook in a matter of seconds, via a Safari exploit that currently remains unaddressed.  The demonstration was part of Pwn2Own 2009, a competition in which hackers attempt to break various platforms in the fastest time possible, taking away both a prize fund (in Miller’s case $10,000) and the machine they hacked. ...

Internet Explorer 8 Hack Countdown! (too late)
The Next Web — ... how a hacker named Nils ‘performed a clean drive-by download attack against the world’s most widely used browser to take full control of a Sony Vaio machine running Windows 7′ at the CanSecWest Pwn2Own content. the same hacker also managed to hack into Safari and Firefox. ...

Explorer 8 Hack Countdown! (too late)
The Next Web — ... how a hacker named Nils ‘performed a clean drive-by download attack against the world’s most widely used browser to take full control of a Sony Vaio machine running Windows 7′ at the CanSecWest Pwn2Own content. the same hacker also managed to hack into Safari and Firefox. ...

MacBook Hacked in Seconds in Pwn2Own Contest
The Mac Observer — ... into a MacBook last year. According to ZDNet , Mr. Miller was able to breach the Mac's security with a remote attack that only required the MacBook user to click a specific link in the Safari Web browser. "It took couple of seconds," Mr. Miller said. Mr. Miller's exploit last year took advantage of a security flaw in the Safari Web browser, too. Another hacker going by the name "Nils" also executed a successful ...

Safari hacked in a flash at Pwn2Own 2009, Firefox and IE8 follow
Download Squad — ... Security pro Charlie Miller came in to Pwn2Own 2009 with a plan, and things unfolded exactly the way he wanted them to. Within seconds of the competition's start, he had already gained control over the fully-patched MacBook running Apple's Safari web browser. ...

5Words for March 19th, 2009
Technologizer — ... Like news? You’ll LOVE this! Gizmodo tests WiMax, likes it. Cisco flips for the Flip. Hacker compromises Mac in seconds. New features in Silverlight 3. Sirius founder: Sirius is doomed. New iPhone clues in beta? Steve Ballmer’s still courting Yahoo. Random rumor: OLED Macs, iPhones. Dell’s Adamo notebook on sale. iPhone tethering seems to work. Sprint roadmap: Pre, other phones. Mobile Firefox ...

Safari cracked in seconds, MacBook completely taken over in security contest
CrunchGear — ... contest. Safari was cracked first, within a few seconds, actually, while the other two took a little while longer to crack. And by “crack” we mean remotely exploit the browser, then use said browser to take over full control of the computer. ...

Safari successfully exploited in seconds in Pwn2Own contest
Infinite Loop — ... Putting his money where his mouth is, so to speak, security reseacher Charlie Miller exploited Safari in mere seconds to take control of a test MacBook in the Pwn2Own contest held during the CanSecWest security conference. In fact, he did so with a default configuration and all security updates applied. Microsoft's Internet Explorer 8 and Mozilla's Firefox 3 were also successfully exploited later in the afternoon. ...

There's a hole in Safari, dear Liza
The Unofficial Apple Weblog (TUAW) — ... and Safari falls... in a short time. Well, to be fair, Safari fell after 24 hours and "... a couple of seconds" give or take a few. On day two of the event the "attack surface" widens -- that is, hackers are given more ways to hijack the machine. In this case, it wound up being a hole in Safari. As the barrier was lowered, an email was sent to the judges, who clicked on it, and that link took them to a special page that exploited the vulnerability. The exploit was discovered by Dino Dai Zovi who, "wrote the exploit overnight in about 9 hours" as ...

No Such Thing As A Secure Browser
The Blade by Ron Schenone, MVP — ... successful exploit. “Nils” also scored a clean hit against Apple’s Safari (he was the second hacker to exploit Safari) and, later in the afternoon, he exploited a Firefox zero-day flaw to claim the trifecta. I seriously doubt any of us will see a secure browser or secure OS in our lifetimes. There are just way to many smart folks who can break into any software produced by man. Comments welcome. Source.

SMS could be a critical iPhone vulnerability, says white-hat hacker
Betanews — ... presentation in Singapore today, Mac security expert and Pwn2Own 2009 champ Charlie Miller discussed a vulnerability on the iPhone that allows remote code execution through SMS, which can tap into an iPhone's GPS or microphone, to divulge the phone owner's location or eavesdrop on them. Phones that have been compromised can also be used in a botnet or DDOS attack. ...

Related: charlie miller computer, charlie miller vancouver, exploiting safari
Pwn2Own 2009: Nils takes down IE8, Firefox and SafariTechnology: Technology blog | guardian.co.uk
A German computer science student has hacked the three main browsers, winning $15,000, showing that none of them is completely safe At the annual Pwn2Own at the CanSecWest security conference in Vancouver, Charlie Miller hacked Apple's Safari browser in seconds ( below ), but the others didn't ...
Pwn2Own winners add Mac exploits to security research toolInfinite Loop
Two previous winners of the Pwn2Own contest, Dino Dai Zovi and Charlie Miller , are adding the fruits of their research into Mac OS X to a security research tool known as Metasploit. Both men discussed the work at the recent CanSecWest conference held in Vancouver. Metasploit is ...
Macs are easy to hack, but not really worth the effortTechnology: Technology blog | guardian.co.uk
Charlie Miller, winner of Pwn2Own for the second year running, explains the commercial nature of the browser vulnerability business Ryan Naraine sat down with Mac hacker Charlie Miller ( below ) at CanSecWest, and has blogged their fascinating conversation in Questions for Pwn2Own hacker ...
MacBook and Safari succumb to hackersThe Apple Core
Charlie Miller came to Vancouver’s CanSecWest security conference to defend his title in the PWN 2 OWN hacking contest. Last year Miller took home the MacBook Air and a $10,000 cash prize Thursday after breaking into the machine. This year Miller’s MO was the same, bring the target ...
Mac hacked in under 10 seconds at PWN2OWNMacBytes.com
News and Press Releases: So just how secure is your Apple computer now that Mac hacker supremo Charlie Miller has broken into a MacBook in less than 10 seconds?
MacBook hacked in secondsMacLifer: The best apple mac computer hardware and software posts from around the web
For the second year in a row, Charlie Miller has won the Pwn2Own contest by hacking into a MacBook i... ---- link MacLifer: The best apple mac computer hardware and software posts from around the web The best apple mac computer hardware and software posts from around the web
Pwn2Own MacBook hacked in secondsMacNN | The Macintosh News Network
For the second year in a row, Charlie Miller has won the Pwn2Own contest by hacking into a MacBook in less time than competitors, according to ZDNet. For the recent event, he quickly compromised Apple's fully patched notebook by exploiting a security vulnerability in Safari. "It took a couple of ...
As Predicted, Safari First to Fall in Pwn2Own Hacking ContestMaximum PC all RSS Feed
It was a year ago that security researcher Charlie Miller walked away with $10,000 for hacking into a MacBook Air with Safari in just two minutes during the annual Pwn2Own competition, and earlier this month Miller predicted Safari would be the ...
Safari hole exploited in seconds at security conferenceCNET News - Security
Updated at 5:53 p.m. PDT with information on a second winner at the ongoing contest. Charlie Miller won $5,000 after demonstrating a new Safari exploit as part of the Pwn2Own hacking contest at CanSecWest. (Credit: Elinor Mills/CNET)  ...