Microsoft found a vulnerability called “Powerdir” in macOS. This vulnerability was addressed in macOS 12.1 Monterey.

According to Microsoft, the “Powerdir” security flaw could allow a fake TCC database to be planted. TCC is a long running macOS function that lets users configure the privacy settings of their apps, and with the fake database, a malicious person could hijack an app installed on a Mac or install their own malicious app, accessing the microphone and camera to obtain sensitive info. 

MacRumors

Apple Support: About the security content of macOS Monterey 12.1

Reference: Microsoft Discovered New ‘Powerdir’ macOS Vulnerability, Fixed in 12.1 Update

Recommendations

Developer:

Check the vulnerability description.

QA engineer:

Check the vulnerability description.

PM/DM:

Business as usual.

Leave a comment