YugaTech | Philippines, Technology News & Reviews

Philippines, Technology News & Reviews



MacBook Air cracked in 2 minutes at PWN to OWN Contest

The “Pwn to Own” Hacking Contest held last week was a security battle amongst 3 major operating systems - MacOS X Leopard, Windows Vista, and Ubuntu Linux. The 3-day hacking contest gives away $20,000 in cash and prizes to the first contestant to hack any of the 3 systems.

The goal is to hack a laptop via the operating system. First one to hack any of the laptops gets to bring it home:

  • VAIO VGN-TZ37CN running Ubuntu 7.10
  • Fujitsu U810 running Vista Ultimate SP1
  • MacBook Air running OSX 10.5.2

The main purpose of this contest is to responsibly unearth new vulnerabilities within these systems so that the affected vendor(s) can address them.

To claim a laptop as your own, you will need to read the contents of a designated file on each system through exploitation of a 0day code execution vulnerability (ie: no directory traversal style bugs). Each laptop will only have a direct wired connection (exposed through a crossover cable) and only one person may attack each system at a time so that each team’s exploit remains private.

On the first day of the competition, all 3 laptops were unscathed. On the second day, the very first rig to be hack was surprisingly the MacBook Air (pwned in 2 minutes) via an undisclosed Safari browser vulnerability. That On the last day, the Windows Vista machine was also cracked. At the end of the 3 day competition, only the Ubuntu box remained untouched.

All newly discovered vulnerabilities were reported to Apple and Microsoft respectively. More details about the competition on the Tipping Point blog.

permalink

Enter your email address:

Related Entries:


14 Responses to “MacBook Air cracked in 2 minutes at PWN to OWN Contest”


  1. Gravatar Icon Jomark Osabel replied on Apr 2nd, 2008 at 3:21 pm (1)

    No wonder why it is called macbook air.

  2. Gravatar Icon spidamang replied on Apr 2nd, 2008 at 3:58 pm (2)

    and as usual, the web is in a furor from all these OS fanboys defending their favorite OS. ;)

  3. Gravatar Icon Steady replied on Apr 2nd, 2008 at 7:19 pm (3)

    Wow, it’s kinda surprising to see a free OS being the most secure one.:)

  4. Gravatar Icon BrianB replied on Apr 2nd, 2008 at 9:18 pm (4)

    OS X is the easiest to hack, everyone knows that. Linux is every IT technician’s nightmare. Lose your password and you’re dead.

  5. Gravatar Icon Dark Knight replied on Apr 2nd, 2008 at 9:21 pm (5)

    Hi Abe. Vista was compromised on the third day (not the 2nd like you reported) upon installation of an Adobe product. :)

  6. Gravatar Icon Jeffrey replied on Apr 2nd, 2008 at 10:00 pm (6)

    Surprisingly, the fanboys did not troop this site to defend their beloved Apple/Mac unlike when Abe talked about the prices of Apple a few months ago.

  7. Gravatar Icon Jehzeel Laurente replied on Apr 3rd, 2008 at 3:43 am (7)

    whoa.. the free OS is super duper secured :P

  8. Gravatar Icon pinoy websurfer replied on Apr 3rd, 2008 at 7:38 am (8)

    or maybe the hackers are fanboys of ubuntu so they didn’t try hard to crack the OS. :P

  9. Gravatar Icon Anton replied on Apr 3rd, 2008 at 7:55 am (9)

    @ jeffry

    nothing to defend.. safari is really a buggy browser most people i know use firefox

  10. Gravatar Icon spidamang replied on Apr 3rd, 2008 at 8:39 am (10)

    Or they really wanted to own the Mac. ;)

  11. Gravatar Icon koolitz replied on Apr 3rd, 2008 at 9:39 am (11)

    i guess…safari sucks..not the OS

  12. Gravatar Icon moshfetron333 replied on Apr 3rd, 2008 at 11:24 am (12)

    the advantage of OSS is that the code was reviewed by many programmers and detected instantly unlike those corporate softs owned codes was reviewed by little and limited. and the worst sinister thing that may happen to apple/microsoft is that when one of their programmer puts a loophole within their codes and left unnoticed by other programmers. ‘conspiracy may happen’

  13. Gravatar Icon BusinessGeeks replied on Apr 3rd, 2008 at 12:20 pm (13)

    It seems like the Ubuntu was ignored by the contest participants…

    Linux ignored, not immune, says hacker contest sponsor

  14. Gravatar Icon marian replied on May 7th, 2008 at 2:47 pm (14)

    wow, GO UBUNTU!

Leave a Reply




Technology & Computers - Top Blogs Philippines hit counter