EIP-2026-104606

PRE-CVE

Quinn - 'the Eskimo' and Peter N. Lewis Internet Configuration 1.0/2.0 Weak Password Encryption

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-104606. PoCs published by Dawid adix Adamski.

AI-analyzed exploit summary This AppleScript exploit decrypts weakly encrypted passwords stored in the Internet Preferences file by MacOS's Internet Config utility. It uses a known weak encryption algorithm and XOR-based decryption to reveal plaintext passwords.

Description

Quinn - 'the Eskimo' and Peter N. Lewis Internet Configuration 1.0/2.0 Weak Password Encryption

Exploits (1)

exploitdb WORKING POC VERIFIED
by Dawid adix Adamski · textlocalosx
https://www.exploit-db.com/exploits/19434

This AppleScript exploit decrypts weakly encrypted passwords stored in the Internet Preferences file by MacOS's Internet Config utility. It uses a known weak encryption algorithm and XOR-based decryption to reveal plaintext passwords.

Classification
Working Poc 95%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: Internet Config (MacOS, version unspecified, likely pre-2000)
No auth needed
Prerequisites: Access to the Internet Preferences file in the Preferences folder · A resource editor like ResEdit to extract the encrypted password
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026