Apple races to fix password security flaw
Login glitch means anyone can access computers running MacOS High Sierra - but you can protect yourself
Apple is scrambling to fix a newly discovered security flaw that enables people to access Mac computers without a password.
The bug in MacOS High Sierra, the most recent version of the company’s computer operating software, was discovered by Turkish software developer Lemi Ergin, BBC News reports.
Ergin revealed on his Twitter page that anyone can log in to a Mac computer by entering the word “root” as the username, leaving the password field blank and then hitting the enter key a few times.
The Week
Escape your echo chamber. Get the facts behind the news, plus analysis from multiple perspectives.
Sign up for The Week's Free Newsletters
From our morning news briefing to a weekly Good News Newsletter, get the best of The Week delivered directly to your inbox.
From our morning news briefing to a weekly Good News Newsletter, get the best of The Week delivered directly to your inbox.
Ergin, whose tweet has been shared “hundreds of thousands of times”, has been criticised for publicly disclosing the security flaw, reports The Daily Telegraph.
Developers typically notify the company in private and allow a fix to be issued before making the fault public, says the newspaper.
According to Mac Rumors, the MacOS High Sierra “trick” allows users to bypass the administrator security systems and “see everything on the computer”.
An Apple spokesperson told the website that the company was “working on a software update to address this issue”.
A free daily email with the biggest news stories of the day – and the best features from TheWeek.com
“In the meantime, setting a root password prevents unauthorised access to your Mac,” the spokesperson said. Click here for instructions on how to carry out the quick fix.
Apple computers running older operating systems, such as El Capitan and Yosemite, are not believed to be affected by the security flaw.
-
Phish food for thought: Ben & Jerry’s political turmoilIn the Spotlight After a landmark demerger by Unilever, spinning off their ice cream brands, a war of words over activism threatens to ‘overshadow’ the deal
-
Magazine solutions - December 12, 2025Puzzles and Quizzes Issue - December 12, 2025
-
ECHR: is Europe about to break with convention?Today's Big Question European leaders to look at updating the 75-year-old treaty to help tackle the continent’s migrant wave
-
Is Apple’s Tim Cook about to retire?Today's Big Question A departure could come early next year
-
iPhone Air: Thinness comes at a high priceFeature Apple’s new iPhone is its thinnest yet but is it worth the higher price and weaker battery life?
-
Is Apple breaking up with Google?Today's Big Question Google is the default search engine in the Safari browser. The emergence of artificial intelligence could change that.
-
Why won't Apple make iPhones in America?Today's Big Question Trump offers a reprieve on tariffs, for now
-
Not there yet: The frustrations of the pocket AIFeature Apple rushes to roll out its ‘Apple Intelligence’ features but fails to deliver on promises
-
Space-age living: The race for robot servantsFeature Meta and Apple compete to bring humanoid robots to market
-
Apple pledges $500B in US spending over 4 yearsSpeed Read This is a win for Trump, who has pushed to move manufacturing back to the US
-
DOJ seeks breakup of Google, ChromeSpeed Read The Justice Department aims to force Google to sell off Chrome and make other changes to rectify its illegal search monopoly