Skip to Content

$10,000 Mac hack bounty not yet claimed

Update: One of the two targets has been compromised.

How do you spice up a security conference in lovely Vancouver, BC with a sense of risk, reward and fun? If you're the organizers of CanSecWest, you offer a prize to anyone who can work an exploit on two MacBook Pro machines; said prize, originally just the laptops themselves, is now a cool $10,000 thanks to sponsor & security appliance vendor TippingPoint. Both machines are freshly patched with Thursday's security updates.

As of earlier today, ZDnet blogger Ryan Naraine reports that nobody has claimed the bounty, and conference organizers have moved to the scheduled phase II plan; challengers, who originally had to attack the machine remotely over the network, now may send URLs to the judges and have them opened in Safari. Happy hunting!

graphic: Sebastiaan de With

[via MacDailyNews]

Categories

Security

Update: One of the two targets has been compromised.How do you spice up a security conference in lovely Vancouver, BC with a sense of risk,...
 

Add a Comment

*0 / 3000 Character Maximum

6 Comments

Filter by:
pixelslut

@4:
"clientside exploit to bind a remotely-accessible shell on the fully-patched"

Hmm remoteley accessible shelll. id say thats pretty vulnerable assuming hes got admin level rights which i assume he does givent that was part of the parmaters of the contest.

The question i have is was this an exploit that requires Safari to open known files upon download or something that cant be circumvented by a simple preference change.

April 20 2007 at 6:58 PM Report abuse rate up rate down Reply
matt

just a malicious web page? you've got to be kidding. a crack is a crack. i'm sure you'll agree the first time you get rooted by some mere malicious web page.

April 20 2007 at 6:54 PM Report abuse rate up rate down Reply
derek

that "crack" is not a crack, just a malicious web page

April 20 2007 at 6:48 PM Report abuse rate up rate down Reply
matt

oops, make that $10,000 claimed.

http://www.matasano.com/log/806/hot-off-the-matasano-sms-queue-cansec-macbook-challenge-won/

April 20 2007 at 6:22 PM Report abuse rate up rate down Reply
Alex Hutton

Whoops! Looks cracked now:

http://www.matasano.com/log/806/hot-off-the-matasano-sms-queue-cansec-macbook-challenge-won/

April 20 2007 at 6:21 PM Report abuse rate up rate down Reply
Daniel Murphy

So take that Mr. Gates!

http://www.tuaw.com/2007/02/02/bill-gates-security-guys-break-the-mac-every-single-day/

April 20 2007 at 5:34 PM Report abuse rate up rate down Reply
Buy an ad here

Hot Apps on TUAW

Tweets

© 2012 AOL Inc. All Rights Reserved.