Silent Replacement of Trusted macOS App Executables
A vulnerability in macOS allows an attacker to silently replace the main executable of any application downloaded from the web without requiring elevated privileges. As a result, trusted applications can be made to execute attacker-controlled code without triggering security warnings when relaunched. Apple assessed the reported behaviour as not requiring a security fix.
Affected Platforms#
macOS Tahoe 26.0.0 – 26.5.2
macOS Golden Gate 27 beta 1, 2, 3, and 4
Earlier versions of macOS are likely a...
Read more at mysk.blog