Closed kornelski closed 2 years ago
find /Applications -name Sparkle.framework | awk -F'/' '{print $3}' | awk -F'.' '{print $1}'
AirParrot 2 AppCleaner Bartender 2 CodeKit DaisyDisk DockMod FinderPath GridMount Image2Icon LiteIcon Platypus Reflector 2 Übersicht XLD
AccountEdge Pro AirServer Bartender BetterTouchTool Billings Boxer Cakebrew Capo coconutBattery Coda 2 ColorMunki Display Cornerstone CrossOver Disk Drill djay duet Go2Shell GPG Keychain HandBrake HoudahSpot Intensify Pro MacDown MAMP Money Monodraw Notational Velocity Paw PhoneView Sketch TexShop UnRarX
DiskMaker X Fluid Mailplane 3 uTorrent
0 Adium.app 1 Cyberduck.app 2 Dash.app 3 Doit.im.app 4 Evernote.app 5 HipChat.app 6 iTerm.app 7 Karabiner.app 8 Merlin.app 9 Mixed In Key 6.app 10 Screenhero.app 11 Seil.app 12 SizeUp.app 13 Sublime Text 2.app 14 TeamViewer.app 15 VLC.app
Ones not mentioned already:
More apps:
Bitcasa iChm Keka Last.fm Paperless RescueTime
More:
Marked 2 nvALT TeX Live Utility
Um, so an application using Sparkle is an Issue? Why?
I understand that some applications that use Sparkle use it insecurely, but not all do. Tunnelblick, for example, uses https: for all Sparkle traffic.
@jkbullard No, you're right. Also, this thread is not related to the recent vulnerability
Not yet mentioned:
Not mentioned as of this writing:
CD Spin Doctor (from Toast Titanium 10 app collection) DynDNSUpdater Coconut ID Geekbench Impactor IPNetMonitor X iStumbler KisMAC Malwarebytes Anti-Malware Malwarebytes Anti-Malware Service.xpc NetSpot OpenDNS Updater 3.0 PwnageTool Quicken 2007
is anyone building a list of apps that use HTTP vs HTTPS, related to the MITM vulnerability?
Adium.app BibDesk.app Chicken.app CoRD.app Dragon Dictate.app GitX.app Gizmo5.app GraphicConverter.app HandBrake.app iExplorer.app Monolingual.app PwnageTool-3.1.5.app PwnageTool-4.2.app RecBoot.app rooSwitch.app SIP Communicator.app Song Surgeon 4.app StuffIt 12 TeXShop.app Timeline 3D.app Transmission.app Viscosity.app ~
Divvy MDRP (Mac DVDRipper Pro) Simon Things VoodooPad
HandBrakeBatch Lyve MacPilot MyHarmony PaintCode 2 TurboTax 2012-2015, at least Versions VideoMonkey
aText Daylite Data Rescue 4 Shiori Trickster Wine Bottler
Bento 3 Billings Camtasia 2 Coda 2 ColorMunki Smile DaisyDisk Data Rescue 3 Flux FontAgent Pro 6 Geekbench 3 HandBrake iExplorer ImageOptim Miro Monolingual PowerPhotos Scrivener StuffIt Expander Timing VLS Wondershare Data Recovery
MSG Viewer for Outlook (http://msgviewerforoutlook.com)
Air Video Server HD Unison xACT Audio Hijack Escort Detector Tools Lingon X
Adium Disco Fission OpenEmu SourceTree XLD
Informant Calendar/Tasks (http://fanaticsoftware.com)
EditReady (http://www.divergentmedia.com/editready)
Things Versions VSee
Here's my list of apps using HTTP (using @haikusw's command): Adze Lite Antidote 8 AppCleaner Bartender Beamer Carbon Copy Cloner 2 Chocolat CleanMyMac 2 CloudyTabs CrossOver Dash Deploymate Disk Drill duet Geekbench gfxCardStatus HoudahGeo 2 HoudahGeo InsomniaX iTeleport Connect Live Interior 3D Pro Mactracker Malwarebytes Anti-Malware Money MoveToAppleMusic Paintbrush Plug Quinn Rdio Reflector Sequel Pro Shapes Sharepod Snagit Soulver SourceTree Sublime Text TG Pro Transmission Transmit Utilities/XQuartz uTorrent VLC Setup Carbon Copy Cloner Festify Hopper Disassembler v3 Kext Wizard Last.fm LiteIcon QuickRadar Sketch Toolbox BetterTouchTool CocosBuilder iVPN Trailer xScope
And here's my complete list of apps (for the original purposes of this thread): Air Video Server HD AirServer Antidote 8 AppCleaner Archiver Bartender Beamer BetterTouchTool Capo Chatology Chocolat CleanMyMac 2 CloudyTabs CocoaPods CocosBuilder Coda 2 CodeKit CodeRunner Crashlytics CrossOver Dash Dashlane Deploymate Disk Drill DiskAid DropletManager Dropzone-2 duet Festify Flux Geekbench 3 gfxCardStatus GitUp Goofy goofy-master HandBrake Harvest HipChat Hirundo Hopper Disassembler v3 HoudahGeo InsomniaX iTeleport Connect iTerm iVPN JollysFastVNC Kaleidoscope Kext Wizard Knock Last.fm LiteIcon Live Interior 3D Pro maciej's Playlist Importer Mactracker Mailbox Malwarebytes Anti-Malware Money MouseRecorder MoveToAppleMusic MPlayerX Notifyr OpenEmu Paintbrush PaintCode Paw Plug QuickRadar Quinn Rdio Reeder Reflector RescueTime Reveal Sequel Pro Shapes Sharepod Sketch Sketch Toolbox Snagit Soulver SourceTree Splashtop TeamViewer TG Pro Tower Trailer Transmission Transmit TripMode XQuartz uTorrent Versions VLC Waltr Winclone xScope
Two others, not already mentioned: Beats Updater YNAB 4
TechTool FileThis Fetch Devonagent
My List
duet.app PopClip.app SourceTree.app Sublime Text 2.app TeamViewer.app iStumbler.app
Bartender 2 BitTorrent Colloquy Dash Drive Fabric Fake Fluid Fluid Flux Gitter GitUp iTerm Karabiner Knock Malwarebytes Anti-Malware MAMP OpenSCAD Repetier-Host Mac Seil SelfControl Utilities VLC
Edit: this issue has nothing to do with security. Applications are listed here just because they use Sparkle and we think they're cool.
Sparkle website lists some Mac apps that use the framework, but this list has been compiled a while ago.
Edit: thanks for your suggestions! We've got a long list!
Here's my list: