FileMaker, dylib hijacking

Understanding the Risks and Mitigations of dylib Hijacking in macOS FileMaker Pro CVE-2023-42920 Source: https://fm-security.com/posts/dylib/ CVE macOS FileMaker Pro CVE-2023-42920 Menu Introduction The dylib hijacking vulnerability for macOS is well known and studied. But from a FileMaker developer’s point of view, I have not seen any analysis of this problem. I will begin a little bit from afar. Embedding into someone else’s

Deciphering the FileMaker Server keystore

Unlocking the Secrets of the FileMaker Server Keystore: A Cryptographic Exploration Source: https://davidhamann.de/2023/05/29/deciphering-the-filemaker-keystore/ Introduction  On This Page While checking out how the FileMaker Pro to Server upload feature worked, I noticed that credentials were encrypted using a RSA public key before being sent to the server. I looked into FileMaker Server’s installation directory and found that

Protecting FileMaker Server From Ransomware Attacks

Heidi Porter, Chris Moyer, EngageU 2022 Table of Contents Introduction: Background and Importance To top Heidi Porter and Chris Moyer, seasoned experts in FileMaker security, presented on the topic of ransomware protection at EngageU 2022. Both Porter and Moyer have extensive experience in the FileMaker ecosystem and are dedicated to educating users on best practices

Fix error 853 when encrypting FileMaker databases

Troubleshooting FileMaker Database Encryption Issues Source: https://davidhamann.de/2018/08/19/fix-error-853-when-encrypting-filemaker-databases/ Have you ever gotten the following error after trying to encrypt your FileMaker databases? Error 853 refers to One or more containers failed to transfer in the error code listing and herein usually lies the problem. When you encrypt your database, make sure to place the existing external container data into the