Hacker Timesnew | past | comments | ask | show | jobs | submitlogin

Isn't a "little" insecure having to rely on random kext and random internet files to run your base system? Or are they always open source or something? I know very little about MacOS


A lot of them are open source. But many of the kext come from reputable people from the community.

Obviously there is always a risk.


It's not that different from running any software from the internet.


"[..] They (kexts) run at the OS's highest privilege level; ring-0."


Why would that significantly increase risk?


> It's not that different from running any software from the internet.

I don't run "any" software as root or with even more privileges, so I would classify random kexts from the web as a highly critical threat. Of course you could be victim of an exploit even without willingly granting privileges but that's not really relevant.


Obligatory xkcd: https://xkcd.com/1200/




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: