Apple offers the developer preview version of the Mac OS X 10.7 or Lion to security experts. In return the company is asking the bug researchers for feedbacks. The Lion preview is said to be sent to several Mac security researchers last Thursday.
Along with the preview version of the Lion there is a non-disclosure agreement that prevents any of the security experts to publicize any bugs they find. Apple is looking for feedbacks from the researchers and provided them an email address where they can send in the bugs of the new Mac OS X version.
This is the first time that Apple reached out to researchers before the official release of the OS. Charlie Miller, an analyst based in Baltimore, stated that the Mac OS X is an easier target than Linux or Windows. In the last three Pwn2Own contests, most vulnerabilities where found in Safari and Mac OS X. In this year’s Pwn2Own, Miller is set to look for vulnerabilities in Apple’s iPhone and Safari.
Some security experts stated that the Lion OS might include several improvements from the previous OS versions, such as full ASLR but there wouldn’t be any innovative features. ASLR is address space layout randomization. It is an anti-exploit technology that is able to randomly assign data to memory. Microsoft utilized it since its Vista OS and Apple used it partially for its Snow Leopard.
Apple hasn’t announced the official launch date and the retail price of the Mac OS X Lion and has gone on record to say that it will be available this summer.

0 comments