paint-brush
New macOS High Sierra vulnerability exposes the password of an encrypted APFS containerby@matheusmariano
3,550 reads
3,550 reads

New macOS High Sierra vulnerability exposes the password of an encrypted APFS container

by Matheus MarianoSeptember 27th, 2017
Read on Terminal Reader
Read this story w/o Javascript
tldt arrow

Too Long; Didn't Read

This week, Apple released the new macOS High Sierra with the new file system called APFS (Apple File System). It wasn’t long before I encountered issues with this update. Not a simple issue, but a potential vulnerability.

Company Mentioned

Mention Thumbnail
featured image - New macOS High Sierra vulnerability exposes the password of an encrypted APFS container
Matheus Mariano HackerNoon profile picture

This week, Apple released the new macOS High Sierra with the new file system called APFS (Apple File System). It wasn’t long before I encountered issues with this update. Not a simple issue, but a potential vulnerability.

I created a new Encrypted APFS container.

And put a password (mypassword) with a hint.

After created, I unmounted and mounted again my new container.

And voilà.

The problem affects only Macs with SSD.

I really don’t know how this went unnoticed by Apple (and anyone else). Anyway, it was already reported to Apple by me.