Lemi Orhan Erhin disclosed a huge vulnerability in macOS High Sierra yesterday, allowing anyone to log onto a Mac with root access.
Dear @AppleSupport, we noticed a *HUGE* security issue at MacOS High Sierra. Anyone can login as "root" with empty password after clicking on login button several times. Are you aware of it @Apple?
— Lemi Orhan Ergin (@lemiorhan) November 28, 2017
Please follow the instructions here to enable the root account and set its password to something complicated1, which you should safely save in 1Password (or whatever password manager you’re using).
- Please don’t use
password
or123456
. ↩
3 Comments
Leave a reply →
Mentions