independent and unofficial
Prince fan community
Welcome! Sign up or enter username and password to remember me
Forum jump
Forums > General Discussion > Malicious Program Targets Macs
« Previous topic  Next topic »
  New topic   Printable     (Log in to 'subscribe' to this topic)
Author

Tweet     Share

Message
Thread started 04/22/09 1:57pm

CLARAB0W

avatar

Malicious Program Targets Macs

By John D. Sutter
http://www.cnn.com/2009/T...ref=rss_us

(CNN) -- Mac computers are known for their near-immunity to malicious computer programs that plague PCs.

But that may be changing somewhat, according to computer security researchers. It seems that as sleek Mac computers become more popular, they're also more sought-after targets for the authors of harmful programs.

"The bad guys generally go toward the biggest target, what will get them the biggest bang for their buck," said Kevin Haley, a director of security response at Symantec.

Until recently, the big target always was Microsoft Windows, and Apple computers were protected by "relative obscurity," he said.

But blogs are buzzing this week about what two Symantec researchers have called the first harmful computer program to strike specifically at Mac.

This Trojan horse program, dubbed the "iBotnet," has infected only a few thousand Mac machines, but it represents a step in the evolution of malicious computer software, Haley said.

The iBotnet is a sign that harmful programs are moving toward Mac, said Paul Henry, a forensics and security analyst at Lumension Security in Arizona.

"We all knew it was going to happen," he said. "It was just a matter of time, and, personally, I think we're going to see a lot more of it."

The malicious software was first reported in January. It didn't gain widespread attention until recently, when Mario Ballano Barcena and Alfredo Pesoli of Symantec, maker of the popular Norton antivirus products, detailed the software in a publication called "Virus Bulletin."

Mac users at large, however, should not be alarmed by the incident, experts said. The program infects only computers whose users downloaded pirated versions of the Mac software iWork.

The harmful software is a Trojan horse, meaning it tries to sneak into the computer with some sort of permission from the user. Computer worms travel differently. They wiggle their way into computers and replicate without the owner's approval or knowledge.

The Mac program is called a botnet because infected computers become part of a network that is controlled by the program's author.

The Mac botnet is significantly less threatening than computer worms like the much-publicized Conficker.c, said Jose Nazario, a senior security researcher with Arbor Networks. Conficker was thought to have infected up to 10 million computers, compared with thousands for the iBotnet, researchers said.

There's also some question as to whether it is the first botnet to target Mac. Others have targeted both PCs and Apple computers.

"This isn't the first botnet that's been built using Mac computers," Nazario said. "This is an interesting one in that it's a little more flexible and includes some new features. ... It's getting a lot of press mostly because it's Mac and people are talking about how Macs are immune to malware -- and, sure enough, they're not."

The potential damage that could be caused by the Mac botnet is also less severe than other attacks, said Darrell Etherington, a contributor to theAppleBlog, which is not affiliated with the computer company.

"It's a very low-level attack," he said. "Some people won't even notice the effect of it."

It is in the interest of software companies like Symantec, who spread the news, and McAfee, which has downplayed the presence of the Trojan, to raise concerns so they can promote their antivirus software packages, he said.

"Yes, it is going to become a bigger problem and, yes, people have to become more aware, but I think that what McAfee and Symantec would like is for the panic to start and for people to start rushing to antivirus software," which isn't necessary yet, Etherington said.

In a statement, Apple said it is working to prevent security problems.

"Apple takes security very seriously and has a great track record of addressing potential vulnerabilities before they can affect users," the statement says.

Only about 7.4 percent of computer users work on Macs, according to Gartner, a technology research firm.

That user base is proportionally more affluent than PC users, Etherington said, which may make Mac a bigger target. But overall, Macs are still far less vulnerable to attack than PCs, he said.

Haley said news of the Apple botnet is significant in part because it's something other authors of malicious code can build from.

"I don't think it's a tipping point; I think it's an evolutionary step. We see virus authors often use what somebody else has done," he said. "There's a model. There's something out there to follow."
[Edited 4/22/09 14:03pm]
  - E-mail - orgNote - Report post to moderator
Reply #1 posted 04/22/09 2:23pm

TMPletz

avatar

"This is an interesting one in that it's a little more flexible and includes some new features. ... It's getting a lot of press mostly because it's Mac and people are talking about how Macs are immune to malware -- and, sure enough, they're not."


THANK YOU, Mr. Nazario. Maybe this will cure some Mac users of their ignorance.

Well, I can hope. razz
  - E-mail - orgNote - Report post to moderator
Reply #2 posted 04/22/09 2:33pm

sammij

avatar

it was bound to happen shrug
thanks for the info
...the little artist that could...
[...i think i can, i think i can, i think i can...]
  - E-mail - orgNote - Report post to moderator
Reply #3 posted 04/22/09 2:36pm

mdiver

Pretty sure it was simply written to wipe the smug ass smile off Dan's face lol
  - E-mail - orgNote - Report post to moderator
Reply #4 posted 04/23/09 1:54am

Imago

It just goes to show you that in those rare instances this does happen, it's big news.

On PCs, it's just business as usual. lol
  - E-mail - orgNote - Report post to moderator
Reply #5 posted 04/23/09 6:28am

PussiDelicious

this sux... thanx for the link
  - E-mail - orgNote - Report post to moderator
Reply #6 posted 04/23/09 7:45am

Graycap23

The program infects only computers whose users downloaded pirated versions of the Mac software iWork
  - E-mail - orgNote - Report post to moderator
Reply #7 posted 04/23/09 7:50am

mdiver

Graycap23 said:

The program infects only computers whose users downloaded pirated versions of the Mac software iWork


Which, co-incidentally is EXACTLY the same way most PC users get a virus, hacked software or unauthorized downloads
  - E-mail - orgNote - Report post to moderator
Reply #8 posted 04/23/09 8:08am

Lammastide

avatar

mdiver said:

Graycap23 said:

The program infects only computers whose users downloaded pirated versions of the Mac software iWork


Which, co-incidentally is EXACTLY the same way most PC users get a virus, hacked software or unauthorized downloads

hmmm Hmm... someone might take from this, then, that the numbers suggest PC users demon are just shadier than Mac users. angel

We wouldn't want that. smile
Ὅσον ζῇς φαίνου
μηδὲν ὅλως σὺ λυποῦ
πρὸς ὀλίγον ἐστὶ τὸ ζῆν
τὸ τέλος ὁ χρόνος ἀπαιτεῖ.”
  - E-mail - orgNote - Report post to moderator
Reply #9 posted 04/23/09 8:11am

Graycap23

Lammastide said:

mdiver said:



Which, co-incidentally is EXACTLY the same way most PC users get a virus, hacked software or unauthorized downloads

hmmm Hmm... someone might take from this, then, that the numbers suggest PC users demon are just shadier than Mac users. angel

We wouldn't want that. smile

2 late.
  - E-mail - orgNote - Report post to moderator
Reply #10 posted 04/23/09 8:15am

mdiver

Lammastide said:

mdiver said:



Which, co-incidentally is EXACTLY the same way most PC users get a virus, hacked software or unauthorized downloads

hmmm Hmm... someone might take from this, then, that the numbers suggest PC users demon are just shadier than Mac users. angel

We wouldn't want that. smile


Nah, just a bigger market...more bang for your buck for the retards writing viruses
  - E-mail - orgNote - Report post to moderator
  New topic   Printable     (Log in to 'subscribe' to this topic)
« Previous topic  Next topic »
Forums > General Discussion > Malicious Program Targets Macs