From
CrunchGear.com
The annual “Pwn2Own” contest has just kicked off at CanSecWest, and Apple was the
first to fall. A fully-patched Snow Leopard machine running Safari was made to launch an application (Calculator) and write a file, just from visiting a specific web page. It didn’t even crash the browser!
The exploit is in Webkit, meaning it could potentially apply to iOS browsers as well, though that has yet to be demonstrated. And to be fair, most of the other browser/OS combos will get taken down over the next couple days as well.
"I have an exploit all ready to go, and now it's just sitting in my bag,” said Charlie Miller, a three-time Pwn2Own winner, shortly after Bekrar took this year's prize. “You'd think Apple would be concerned about it.”
Miller said he's had the working attack for more than nine months now. Even after Apple patched a whopping 62 Safari security bugs just hours before the contest started, Miller's exploit still worked, he said.
-------------------
Is
anyone surprised? Apple is always the first to fall. And, yes, MS also fell to the hackers but it took longer. One person that was at the contest said that Safari was cracked in "
5 seconds". Go ahead Apple fans, keeps saying that Apple is more secure.