Summary
Researchers claim to have found a weakness in Apple's Gatekeeper tool, allowing malicious apps to bypass verification if a legitimate app was previously run and then replaced. Apple has dismissed the issue, stating that locally rebuilt bundles fall outside Gatekeeper's scope and the risk is primarily due to social engineering.