Linked by Thom Holwerda on Fri 20th Mar 2009 13:51 UTC, submitted by google_ninja
Privacy, Security, Encryption Fresh from winning the PWN2OWN contest yesterday, Charlie Miller has been interviewed by ZDNet. He talks about how Mac OS X is a very simple operating system to exploit due to the lack of any form of anti-exploit features. He also explains that the underlying operating system is much more important in creating a successful exploit than the bowser, why Chrome is so hard to hack, and many other things.
Permalink for comment 354129
To read all comments associated with this story, please click here.
RE[2]: Comment by sadyc
by lurch_mojoff on Fri 20th Mar 2009 15:13 UTC in reply to "RE: Comment by sadyc"
lurch_mojoff
Member since:
2007-05-12

Since the exploit in this case is for Safari Apple are in fact releasing the code, so if were a question of reciprocity the guy has no excuse.

But availability, or "openness" if you will, of the source is not an issue here. This guy supposedly is a white hat (a.k.a. "security researcher") and as such is supposedly trying to find exploitable holes so they can be fixed before people get harmed. Sitting on an exploit for a year so you can get a free laptop and 15 min of fame is certainly black hat and is even nearly criminal.

He is free to not research Apple's software and get a paying gig for someone else or apply for a job at Apple.

Reply Parent Score: 1