Microsoft found a vulnerability called “Powerdir” in macOS. This vulnerability was addressed in macOS 12.1 Monterey.
According to Microsoft, the “Powerdir” security flaw could allow a fake TCC database to be planted. TCC is a long running macOS function that lets users configure the privacy settings of their apps, and with the fake database, a malicious person could hijack an app installed on a Mac or install their own malicious app, accessing the microphone and camera to obtain sensitive info.
MacRumors
Apple Support: About the security content of macOS Monterey 12.1
Reference: Microsoft Discovered New ‘Powerdir’ macOS Vulnerability, Fixed in 12.1 Update
Recommendations
Developer:
Check the vulnerability description.QA engineer:
Check the vulnerability description.PM/DM:
Business as usual.
You must log in to post a comment.