0:00
Alright guys, so if you haven't been on Twitter or following the tech news recently
0:06
then you might not know that something very serious happened last night, I guess
0:10
Some sort of an exploit. I mean, it's not even really an exploit because it seems too simple
0:16
It's a problem, essentially, on every single Apple computer running the latest software, running HiSierra
0:24
You can get in to anybody's laptop without the password. It's incredibly simple to do, anyone could do it, you could do it
0:31
It's not just a local scenario where a person gets in front of your laptop and unlocks it without you knowing
0:37
This could also be an issue on public Wi-Fi, if you might have screen sharing turned on for example
0:42
and someone can come in and potentially access your device remotely. Now the reason for making this video isn't strictly to show people how it happens
0:50
but also to inform you so that hopefully you can make the changes necessary so you're not susceptible
0:56
but also so you can share it and let anybody in your life with a MacBook know that they need to update their system real quick
1:04
So I'm using Will's laptop, he updated his to Hi Sierra and let me show you what I'm talking about
1:09
So I'm logged in right now, but if I go to system preferences, users and groups, you'll see Will is the only admin on the system
1:17
But if I click this little lock in the corner here, get rid of Will's username and just type root all lowercase and then enter
1:25
it unlocks the whole system, I can do anything now. I can change his password, I could create new users, I have complete access
1:32
Now you might be saying well he already logged in so is that really such an issue Well let me take it a step further for you If I log out of Will account and then just pick a guest user for example
1:44
as a guest user you should have no authority whatsoever. But if I go back up here now to system preferences, users and groups
1:53
I hit the same lock icon, use the username root again, no password
1:59
it unlocks the whole deal so I can select Will's user now and reset his password completely like I said it's anything I want
2:08
All of Will's information is available to me. Everything he's got in there it's a complete unlock
2:13
I'm in. I got access to all. What are you trying to hide Will? But all joking aside this is serious stuff. This is like the highest level type of issue you could ever run into
2:22
all your passwords, anybody out there with a password on a Mac running this version of HiSierra
2:29
you have no security right now, essentially. No security. Now, the word is that Apple's aware of this, and they're issuing a software update
2:36
So the main thing here is go and look on your system right now, if you're on HiSierra
2:41
and look for a new security patch. If it's there, it will say in some kind of heading, like, important update, do this right away
2:49
Alternatively, you can change the password to the root account of your system, which seems like a good idea right now
2:56
So just add a password to that user that isn't a blank field, obviously
3:01
So there it is, a little public service announcement. Run the update if it's there, and as I said, let people know
3:08
Alright, everybody knows somebody with a MacBook, so tell them. Otherwise, they're out there like a sitting duck