Security News

Cybersecurity news aggregator

MEDIUM Vulnerabilities SC Media

macOS Gatekeeper vulnerability allows app replacement

  • What: Vulnerability in macOS Gatekeeper allows app replacement
  • Impact: Users of macOS at risk
Read Full Article →

Application security macOS Gatekeeper vulnerability allows app replacement July 24, 2026 Share By SC Staff (Adobe Stock) As detailed in The Register, security researchers uncovered a vulnerability in Apple's macOS Gatekeeper security feature that could allow malicious actors to replace legitimate applications with harmful versions. Researchers Talal Haj Bakry and Tommy Mysk discovered a flaw in Gatekeeper's defenses that permits the main executable of a downloaded macOS application, once run, to be silently replaced by a malicious version without requiring elevated privileges. This bypass is possible for apps downloaded from the internet, but not for those from the Mac App Store. The attack requires the attacker to have a means of user-level code execution, such as a malicious app or script. The researchers demonstrated that by archiving and then replacing an app bundle, macOS does not re-prompt for authorization, even though Gatekeeper's initial validation is supposed to prevent such modifications. This could affect popular applications like Slack, Signal, and Visual Studio Code. While Apple has reportedly closed the issue, stating that overwriting the entire bundle makes it a locally built app not covered by macOS guards, the researchers argue that the core Gatekeeper validation mechanism is lax. Source: The Register SC Staff Related Application security Millions of vehicles vulnerable to Bluetooth car theft attacks SC Staff July 23, 2026 Millions of vehicles equipped with dealer-installed KARR and SWDS security systems are susceptible to Bluetooth-based attacks that could allow unauthorized access or prevent vehicles from starting. Application security AI is overwhelming patch management. Here’s how teams adapt Steve Zurier July 23, 2026 AI is overwhelming patch teams, forcing a shift to smarter, automated remediation. Identity The organizations that got breached had strong identity programs Grady Summers July 23, 2026 Machine identities were the gap. AI agents are widening it. Related Events Cybercast Bridging the Gap from CISO-Developed Tools to Black Hat Hype: What AI Security Leaders Should Watch Next On-Demand Event Cybercast Protecting Application User Data for Better Privacy, Governance, and Compliance On-Demand Event Cybercast The Next Evolution of Application Security: AI- Accelerated DevSecOps On-Demand Event Get daily email updates SC Media's daily must-read of the most current and pressing daily news Business Email By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy . Subscribe Related Terms Banner Browser Cache Cramming Common Gateway Interface (CGI) Client Cookie DLL Injection Dynamic Link Library You can skip this ad in 5 seconds

Share this article