[DefCon 2016] I got 99 Problems, but 
Little Snitch ain’t one!

by patrick wardle

Published August 6, 2016 in Technology

Security products should make our computers more secure, not less. Little Snitch is the de facto personal firewall for OS X that aims to secure a Mac by blocking unauthorized network traffic. Unfortunately bypassing this firewall's network monitoring mechanisms is trivial...and worse yet, the firewall's kernel core was found to contain an exploitable ring-0 heap-overflow. #fail