Stefan Esser
Stefan Esser
The KEXT in the "release" section should be signed, if not then this is a bug. Disabling kext signing cannot be a recommended step, although kext signing does not really...
I guess the question Marqin has if we added a magic autoloader that will load whatever extension is installed in /Library/Extensions/SUIDGuardNG.kext
There is this misinformation spread that SUIDGuard is just a fix for DYLD_PRINT_TO_FILE. SUIDGuard is a mitigation that stops a class of vulnerabilities (and soon more). If you uninstall SUIDGuard...
Do you see any message from SUIDGuard in your /var/log/system.log when you try to use phantomjs ?
The advertisement for SUIDGuard states that at the moment we only handle SUID/SGID _root_ so this is not a surprise. Of course there might be SUID/SUGID binaries for other users...
Please notice that there is "https://www.suidguard.com/" and that you should download from there. There is no need for a tar file. Just download the DMG Installer and install it. Over...
When you say it still has the vulnerability what do you mean? Did you run the example script or one of the one-liner exploits attached to many media articles? If...
What Application are you trying to restart? Maybe that Application is in violation with the "missing __PAGEZERO" segment policy. Did the /var/log/system.log have any output from SUIDGuard?
Oh I see. You are using 10.9.x - then it is no wonder that SUIDGuard does not work or crash. The installer that we ship does only work on 10.10...