Call Now: 805 498 0607 818 540 8576

My status

Security Problems With Apple’s Lion

AB Computer Repair Westlake Village data recovery service. Call to learn more about our small business network installation services. Secure your businesses sensitive data today! Did malware or a virus delete important files and pictures? Not to worry most data is recoverable. If your network has been infected and you no longer have access to your client’s files, do not install, or save any new files and contact our Westlake Village data recovery service. We troubleshoot many common Westlake Village computer repair problems.

 

Apple’s Lion Security Hole Could Be A Wider Issue Than Just FileVault?

Computer-Repair

As you may have seen over the weekend, someone has discovered a security hole in FileVault, which arose with the OS X Lion security update, version 10.7.3, back in February: FileVault encryption passwords are now visible in plain text outside of a computer’s encrypted area.

The hole was apparently spotted by someone back in February, although it was most publicly first pointed out by security consultant David Emery on the Cryptome blog a few days ago and the rest of theblogosphere has run with it.

Now, it appears that the problem could be bigger than previously thought: it turns out that the developer who first noticed the hole back in February has discovered that it exists outside of FileVault, too, with at least one other company’s security encryption software, Lion VM, from VMWare Fusion, showing the same behavior. Westlake Village computer repair and data recovery services.

From earlier this morning, he wrote, in answer to his own thread started in February:

I’m not sure if I can support the assumption that this is an error in filevault.

I’ve just tried logging in as an network user in an newly setup and updated Lion VM (VMware Fusion) and run into the same behavior. Filevault was never active on this system.

Can someone with the following environment please verify:

- OpenDirectory users with Network Home on AFP

- Lion (10.7.3) Clients

- Snow Leopard or Lion Server

Steps:

- Setup a new machine, or use one that never had filevault enabled

- Login as a (unprivileged!) network user with a Network Home on an AFP share

- logout, login as an admin user

- Check “Console” for log messages containing the string “_premountHomedir”

Please help to get to the bottom of this!

The security hole, as it exists in Apple’s own FileVault (and potentially other) encryption software, means that passwords for the encrypted part of a person’s computer are revealed in plain text to a user who knows where to look. As Sophos’ Naked Security blog notes:

Anyone with access to the disk can read the file containing the password and use it to log into the encrypted area of the disk, rendering the encryption pointless and permitting access to potentially sensitive documents. This could occur through theft, physical access, or a piece of malware that knows where to look.

That is yet another reminder of how, although we hear a lot about passwords needing to be   cryptic enough, ultimately if the encryption falls down on implementation, those passwords will be useless anyway. “How products store, manage and secure keys and passwords is the most common failure point in assuring data protection,” Chester Wisniewski of Sophos points out. Westlake Village computer repair and data recovery services.

The advice he gives is to upgrade to a full-disc solution, such as FileVault 2 or another, and also to change your passwords if you’re a FileVault user.

It’s not clear how many users have been affected by this security flaw, which follows on another security mishap for Apple last month, when 600,000 Macs were apparently recruited into a botnet after a security update for Java was delayed in its release.

Apple’s been working for some time on improving the security of its operating systems — partneringwith the security community to advance that aim — but as the company’s ubiquity continues to grow this will become even more urgent an issue.

We have contacted Apple for a response to this story and will update as we learn more.

Servicing Computers Since 1995



Microsoft & Cisco Certified Computer Repair & Networking Technicians
Testimonials

I am the owner of a busy accounting firm a terrible virus crashed my computer and I had not back up my quickbooks data base in over two weeks. I was not able to boot my computer into the Windows desktop. The friendly knowledgeable technician at AB Computer Repair was able to get my clients tax information off the hard drive and recover my computer.- Max Swartz
Read More..
Call Now

805.498.0607
818.540.8576
AB Computer Repairs

AB Computer Repair is Southern California's leading IT support specialist. We proudly offer service for a wide range of brands and manufacturers, including:
Dell IT support including Dell Tech support in Thousand Oaks and remote Dell phone support. Offering professional computer repair at half the price of Geek Squad means you should call us first.
Do you need Hewlett Packard tech support? Not a problem. Our HP IT support is known throughout Westlake Village as being the best in the business. Calling AB Computer Repair for Hewlett Packard phone support (HP phone support) means a professional and friendly HP tech support specialist will be on the other side of the line.
Is your computer made in Japan? We are Conejo Valley's leading Japanese laptop repair specialists. Whether it be Sony IT (tech) support, Toshiba computer repair or phone support call us first. Our Panasonic Toughbook tech support is the best in the business, be it in person or on the phone with one of our Toughbook phone support experts.
We are Mac fans as well. Don't trust just anyone for your Apple IT support needs. Our Apple tech support specialists get the job done right, and right away. Contact us for in-home or office Mac tech support and Apple phone support. The new Samsung laptops are great and should be trouble free, but if you do have any issues call AB Computer Repair for Samsung IT (tech) support. Using remote desktop our Samsung phone support team can even troubleshoot and resolve most common issues like spyware and malware. Specializing in remote support for our Los Angeles and San Francisco customers. Contact us for affordable IT support in LA and San Francisco today.
We understand the negative effect downtime can have on businesses so we aim to minimize it for our clients. Our prompt Acer IT support in Newbury Park is highly rated by our customers. When you call our Acer phone support specialists for Acer tech support it means prompt service at a fair price. Call us today to learn why savvy Thousand Oaks business owners choose us. AB Computer Repair is proud to be Thousand Oak's cabling experts. We efficiently handling cabling jobs of sizes, including CAT5 and DSL.



Our Service Area:
Thousand Oaks, Simi Valley, Agoura Hills, Calabasas, Woodland Hills, Encino, Tarzana, Malibu, Beverly Hills, Camarillo, Newbury Park, Sherman oaks, Studio City, Ventura, Moorpark, West Hills, Westwood, Westlake Village, Hollywood, Santa Monica, Pacific Palisades, Brentwood, Los Angeles
Our Services:
Computer repair, Virus removal, Malware removal, Spyware removal, Server setup, Network setup, Hard drive replacement, Data recovery, Back up data, Apple iMac repair, Pc tuneup, Software installation
Follow Us:
 Facebook Twitter 

Enquiry:
info@thousandoaksitsupport.com

Zip Codes: 91360 91320 91361 93063 91302 91307 91364 91304 93012 90210 90272 90265 91303 91356 91335 93003 91316 91403 91604 90028 90024 94513 90405 90291