Skip to main content
Question

Password leak in High Sierra's Disk Utility creating encrypted APFS volumes

  • October 5, 2017
  • 3 replies
  • 9 views

sdagley
Forum|alt.badge.img+25

Heads up for folks...

There's a thread on Twitter (look for @patrickwardle) about encrypted APFS volumes created via Disk Utility in High Sierra having their password stored as the password hint. It does not happen if you use diskutil to create the encrypted volume.

3 replies

bpavlov
Forum|alt.badge.img+18
  • Esteemed Contributor
  • October 5, 2017

Forum|alt.badge.img+16
  • Valued Contributor
  • October 5, 2017

Looks like this was resolved in today's "supplemental update."


Chris_Hafner
Forum|alt.badge.img+27
  • Jamf Heroes
  • October 6, 2017

... wow.