Apple Removes Controversial Firewall Bypass in macOS Big Sur Update
Apple addresses major security concerns by removing a hidden exemption list in the macOS Big Sur 11.2 beta that allowed native apps to bypass user firewalls.
Apple releases the macOS Big Sur 11.2 public beta to address significant security vulnerabilities discovered late last year. The update removes a controversial internal file known as "ContentFilterExclusionList," which previously allowed built-in Apple applications like the App Store, Music, and FaceTime to bypass third-party firewall filters without user consent.
This hidden exemption list poses a severe security risk because hackers potentially exploit it to craft malware that ignores network security tools. Furthermore, the bypass feature strips Mac users of their ability to monitor, block, or inspect the data that official operating system apps send and receive over the internet.
Developers originally uncover this issue during the Big Sur launch day when a server outage caused native apps to fail, revealing that Apple forces full network access for its own software. By eliminating the exclusion list in this latest beta, Apple restores essential firewall protections and gives users back control over their system's network traffic.