SecurityIt is recommended that you revisit this page because there will be frequent updates and additions as new security related resources at Apple pop-up.
General Security
Mac OS Security and Cryptography (ADC)
Technical Q&As – Security (ADC)
Product Security Response Support Information
PGP: Protecting Security Information
Security Updates
Mailing Lists
Product Security Notifications and Announcements
Apple’s Implementation of the Common Data Security Architecture
Software
Mac OS (General)
Keychain Manager (ADC)
Mac OS: “Unable to establish a secure connection” or “security certificate” Messages in Web Browsers (TIL 106211) [2001 March 23]
Securely Erasing, Accessing and Dismounting a Macintosh Partition (ADC FL11) [1999 January 11]
Accessing the …
July 2, 2001 •
5 min read
SecurityMicrosoft Product for the Macintosh?
Ya I know It comes with os 8.x. If you have ever used a PC, or so they say, “Its Microsoft, its breaks, i tried to uninstall it, it broke” Well I tried to remove Microsoft Personal Web Server from my Macintosh and ran into a little problem i forgot to turn off 1 extension. WaMMo! My computer froze on startup. Probably the point where the extension realized all the other components were not there. I wonder if they plan on fixing it so it does …
June 6, 2001 •
2 min read
SecurityInterested in computer security and hacking? This book is written from the system administrators stand point. Hundreds of pages on security issues, how to secure your system, how the hackers get it. Out of those pages there is a nice chapter on our favorite operating system Macintosh . Find a place for this book on your bookshelf as it makes a great companion to anyone interested in computer security. Even if your not interested in security now, you might run into the need for this book soon. Plus read up …
June 6, 2001 •
2 min read
SecurityNetopia has released Timbuktu Preview for Mac OS X. There is a 29.95 charge for this software. Timbuktu is remote administration software which runs on Windows and Macintosh platforms. We received a E-Mail from Ed noting of a security hole with this product that lets a user @ the console have access without even having to log in to Mac OS X. The problem was reported to Netopia and because this is only a preview version we will look for a fix in the next release.
Scenario
At the login screen of …
June 4, 2001 •
2 min read
SecurityResources, Development and TILs on Security Issues
Here you will find reports and issues on software and the Mac OS. These are Apple.com and its’ discussion boards papers and documents. Use the feedback form below or send us a email with the title and the URL you would like us to add.
Mac OS X-Introduction to Security
A”…..As a web developer, information is your lifeblood, the tool and the substance of your trade. Keeping your information secure requires that your systems be protected from those looking to alter pages, steal data, or simply …
June 2, 2001 •
1 min read
SecurityInformation
PGPfone (Pretty Good Privacy Phone) is a software package that turns your desktop or notebook computer into a secure telephone. It uses speech compression and strong cryptography protocols to give you the ability to have a real-time secure telephone conversation via a modem-to-modem connection. It also works across the Internet!
Views
Suggest use with faster computers, this is for both PC and Mac so you can talk to whoever you want to. This does use your standard phone lines, so anyone with a computer and a modem could utilize it. Download Version:
You …
June 2, 2001 •
1 min read
SecurityInformation
AOL has been around for a long time. AIM is their version of ICQ; it has nice advertisements on it. You can keep in touch with other AOL users, and you don’t have to be on AOL. You don’t need to be a member of AOL to use AIM. It’s free; it just has an advertisement on it like AOL does.
Views
AOL’s AIM has had a few bugs, including easy decryption of password files. An application has been made to show how easy they are to decrypt. Scenario: A new version …
June 2, 2001 •
2 min read
SecurityInformation
Lockout is a excellent desktop security application with many valuable features. This program will keep intruders out of your computer system when you are away. Multiple user management in this program is excellent. This program also makes it possible where a user can leave a message on your computer if you are away.
Views
This program is new. Unlike AfterDark (aka the Ram Hog) this program will lock your screen where you are away. A handy utility to have at the office, home, or school if you dont want people to mess …
June 2, 2001 •
2 min read
SecurityInformation
Snip-it from Phil Zimmermann’s Why do you need PGP: ‘It’s personal. It’s private. And it’s no one’s business but yours. You may be planning a political campaign, discussing your taxes, or having an illicit affair. Or you may be doing something that you feel shouldn’t be illegal, but is. Whatever it is, you don’t want your private electronic mail (E-mail) or confidential documents read by anyone else. There’s nothing wrong with asserting your privacy. Privacy is as apple-pie as the Constitution. ‘
Views
PGP in my opinion is the best cryptography program …
June 2, 2001 •
1 min read
SecurityInformation
AOL has been around for a long time. I’m not going to talk about how good AOL is, because I do not like the service they provide. It’s a heavily governed provider where you get TOS’d for saying “Fuck you” to someone. Instead, I am going to talk about the Myths and Hacks of AOL.
Views
AOL was a good place to find pirated software. I never pirated software, I just helped make the hells and tools =).
Download Version
You want to download AOL software? Go to their site if you really want …
June 2, 2001 •
2 min read
SecurityInformation
My Secret is a little data encryption program to easily encrypt and decrypt text messages. It supports 448 bit Blowfish encryption and external encryption schemes.
For secure hashing, it uses a combination of SHA1 and MD5. Included in the main distribution is a free 256-bit Rijndael plugin. All in all that means: My Secret’s encryption is fairly secure. Encrypted text is Base64 encoded by default, so you can send it over the Internet without further encoding.
The use or export of strong encryption software may be prohibited or restricted by your local …
June 2, 2001 •
1 min read
SecurityInformation
I believe the author saw WDTech’s Remote Admin Extension. This has very similar functions. This is still a great app. The creator of Remote Admin Extension (RAE) has pretty much laid off the project. He is more of a Hacker, rather this author makes shareware. This has a nice interface, supports multiple users and much more.
Views
This is a must if you need to remotely control a macintosh. You can telnet to a specified port and use those good old shell commands to make things happen. I would recommend this file. …
June 2, 2001 •
2 min read
SecurityInformation
For ages, people have used locks and safes to protect their personal and commercial information. Today, only encryption can provide privacy in the electronic world.
VSE My Privacy is a secure repository for your passwords, notes and all kind of data that should be kept secret and secure. You only need to remember a single password for all your confidential information.
Views
The program is simple to use, and created by a company that has been around for many years supporting their users. SecureMac.com only exists by users sending us feedback on how …
June 2, 2001 •
1 min read
SecurityInformation
The MacLocksmith is a useful application to save your files from indiscreet eyes. It protects your files/folders quickly by using a very strong encryption method and a password. The MacLocksmith supplies also a second, soft and fast, protection system, you may use it in situations of already hig security level.
The MacLocksmith allows you to create Cryptet. Cryptets are stand-alone auto-decrypting applications containing one encrypted or protected file. A Cryptet may decrypt the contained file or simply save it on HD. Distribution of encrypted files is no longer a problem, now. …
June 2, 2001 •
2 min read
SecurityWe all realize security is a issue for our computers, but how secure can your password and encrypted files be when your computers have been stolen?
The San Diego, California based company, SecurityWare offers a wide variety of anti theft devices for your Macintosh computers and PC’s. After careful overview of the products we felt the Cable Security kits would be most use full to the general market!
SecurityWare’s iBook/iMac kits (with or without plate) makes it possible and affordable to secure your Mac. SecureMac travels from locations and our iBooks sometimes …
June 2, 2001 •
3 min read
SecurityInformation
Weedo is the author of WDT Remote Admin Extension. He has been a great programmer for the macintosh underground. He has also released many other applications for the MacOS platform, be sure to check out his website
Views
This program was intentionally made for illegitimate purposes. It was designed so that a user could remotely control a macintosh computer. With the passage of time, the program has become more advanced. You can now preform more tasks, and it has become useful for many network administrators. A user could still install this program …
June 2, 2001 •
3 min read
SecurityInformation
Easy to use application to create fast random passwords (4 types of password and lengths from 4 to 20 characters). The utility can also create a list of passwords to be saved to a text file. All new passwords are automatically copied to the Clipboard.
GenPass has 4 types of passwords:
PIN
Good
Better
Best
PIN, creates PIN (Perosnal Identification Number) type password (i.e. 1234). This format can be used for banking type passwords.
Good, creates passwords with lower case letters (abcdefghijklmnopqrstuvwxyz) and numbers (01234567890).
Better, creates passwords with upper and lower case letters (abcdefghijklmnopqrstuvwxyz ABCDEFGHIJKLMNOPQRSTUVWXYZ) and numbers …
June 2, 2001 •
3 min read
SecurityInformation
Oyabun Tools lets you remote shutdown/restart/sleep your Mac over any TCP/IP based network, as well as close PPP connection and cancel remote control.
If your server lags or an application is stuck, just restart it from anywhere in the world. Forget about expensive and complex solutions and get Oyabun Tools. Includes source code for the send application.
Define as many users you want, and give them individual privileges as well as individual login and password.
Download
Download Oyabun Tools 2.1
More Information
More information about this product and other products by this company may be found …
June 2, 2001 •
1 min read
SecurityInformation
ForgotIt? manages all these passwords you barely can remember and have almost forgotten. Instead of writing them down on little pieces of paper. 1.3 Added support for Mac OS X, the download link for the 68k 1.3 does not exist on the authors website, so we will start assuming that the author has discontinued 68k support.
Views
SecureMac has played with the program, one of our main concerns was where is the password kept and encrypted. We asked the author for a little more explanation:
ForgotIt? uses a 560-bit Blowfish encryption algorithm produced …
June 2, 2001 •
3 min read
SecurityInformation
Notice from Developers!! Due to a decline in registrations and general interest in vScan throughout the late summer and fall of 2001 along with the overall slowdown in the computer industry, vScan was discontinued on November 5th, 2001.
We will continue offering technical to existing registered users until March 31st, 2002. Regular pattern file updates will be issued until March 31st, 2002 through vScan’s internal update system.
Mountain Ridge Dataworks will no longer be developing freeware and shareware for the Macintosh platform and will instead, be focusing on the authorized Apple sales, …
June 2, 2001 •
2 min read