Don't Let This Attack Freeze Your Mac or iPhone
Just over a month after researchers demonstrated that hackers can hijack mouse clicks on a Mac, a new report indicates that specially crafted web pages can freeze or crash Macs and iPhones.
Security researcher Sabri Haddouche has created HTML and CSS code that, when hosted by a web page, attacks visitors' devices.
"The attack uses a weakness in the -webkit-backdrop-filter CSS property," Haddouche told BleepingComputer. "By using nested divs with that property, we can quickly consume all graphic resources and crash or freeze the OS."
In other words, while the code is just 15 lines long, it contains a massive amount of <div> tags, which consume all of your device's graphic resources, causing it to freeze or restart.
Haddouche went on to note that the attack affects all browsers on iOS, as well as Safari and Mail in macOS.
"All browsers on iOS are affected because the underlying rendering engine is WebKit," Haddouche explained.
Visiting the webpage on a Mac will cause Mail and Safari to freeze for a second, and the computer running them to slow down. (Once you've closed the Safari tab running the code, the computer returns to normal).
It caused a device running iOS 12 to reboot completely, but caused an iOS 11.4.1 device to only respring (boot the user to the lock screen). According to Twitter user Robert Petersen, the web page causes an Apple Watch running watchOS 5 to freeze and reboot as well.
Many Mac users still assume Macs aren't vulnerable to malware and adware, but the truth is that the past two years have seen more Mac vulnerabilities than ever before.
Just a few weeks ago, North Korean state-sponsored hackers used Mac malware to successfully hack a cryptocurrency exchange platform. And back in January, a researcher discovered a piece of macOS malware that reroutes your traffic to malicious websites, and could also be used to steal passwords, take screenshots, download files, run software and more.
Unfortunately, there isn't much you can do to prevent these attacks. We'll just have to wait for Apple to release a patch. In the meantime, take extra care not to click on links that you're not familiar with.
- Senior SOC Analyst
- Up to £55,000 Basic
Senior SOC Analyst is needed to join an established cyber security business. The individual must be able to commute to Surrey / Hampshire area. The Senior SOC Analyst must have current experience working within a cyber security environment with the following experience; Acting as the point of escalations for the team and external clients to help eliminate & prevent security incidents. SIEM monitoring, design & implementation. Developing & Strengthening current client services As the business continues to evolve the board are looking to attract the right candidate to help them to continue to expand their capabilities and offerings. Unfortunately this opportunity is unable to provide sponsorship. Reference Number: CH7421
- Junior Sales Consultant
- Up to £35,000 Base + Double Uncapped OTE
A Junior Sales Consultant is needed for a UK focussed managed service provider in London who have grown by over 25% this year. The Junior Sales Consultant will be responsible for identifying and closing new business opportunities with the Small Medium Enterprise (SME) market. The ideal Junior Sales Consultant will possess; Current experience selling cloud solutions (Azure, AWS etc.) within the SME market. Track record reaching and beating targets. Appetite to learn and make money. Unfortunately our client is unable to sponsor for this role. Reference Number: PG7423
- Technical Support Lead
- Up to £50,000 Basic
A Technical Support Lead is needed to join a organically growing UK focussed managed service provider company in London The Technical Support Lead will be responsible for all things technical support (internal teams & external clients) e.g. 3rd level support, deployments and also growing the current team. The ideal Technical Support Lead will possess; Current experience within a 3rd line support role with a focus on Microsoft technologies (Hyper V, Server, Azure etc.) Certifications such as Microsoft Certified Professional (MCP), Microsoft Certified Solutions Associate (MCSA) or Microsoft Certified Solutions Expert (MCSE) certifications. This would be a great chance for someone in a 3rd Line Support role to take the next step and be given the opportunity to lead and grow a team and join a company who have grown by over 25% this year. Unfortunately our client is unable to sponsor for this role. Reference Number: PG7422
- Cloud Channel Manager
- Up to £75,000 Base dependant on experience + Double OTE
A Cloud Channel Manager is needed for a Leading Cloud Service Provider in London due to increased customer demand. The Cloud Channel Manager will be primarily responsible for rebuilding & protecting current accounts and also new logo sales into the channel e.g. Value Added Resellers (VAR) / Managed Service Providers (MSP), SI etc. Requirements Current experience selling Cloud technology such as AWS / Azure into the channel Over achieved on sales targets. Long tenure (3/4 years+) in current and previous positions. Reference Number: PG7419