By Erika Morphy MacNewsWorld Part of the ECT News Network
02/21/06 2:48 PM PT
Apple has been making inroads into corporate markets, which could put some company networks at risk if the creation of Mac malware does escalate. "Most businesses do not standardize on Macs, but many networks today contain at least one Mac system, even if the network is predominantly Windows- or Linux-based," Jon Kuhn, director of product management at SonicWALL, noted.
eMarketer Whitepaper: Optimizing the E-Commerce Experience
From the Web to the Contact Center, are you prepared to proactively engage and keep your savvy customers? Read how e-commerce leaders are optimizing their sites with ratings, reviews, live help, Web analytics, mobile and more.
The announcement of a newly discovered vulnerability in the Safari browser and the appearance of a second worm aimed at the Mac operating system are tarnishing Apple's (Nasdaq: AAPL) reputation for providing a safe haven from the malware constantly circulating on the Internet.
Security firm Secunia has discovered a vulnerability in Mac OS X caused by an error in the processing of file association meta data (stored in the "----MACOSX" folder) in ZIP archives, according to a note posted by the security firm. It can be exploited to trick users into executing a malicious shell script renamed to a safe file extension stored in a ZIP archive.
It also can be exploited automatically via the Safari browser when a user visits a malicious Web site, the company said.
Also this week, the antivirus company Symantec (Nasdaq: SYMC) identified the second worm to target the Mac environment. Called OSX.Inqtana.A, it spreads via Bluetooth wireless connections. It follows last week's discovery of the first worm specifically tailored for a Mac, Leap-A, which spreads through an application sent via iChat.
None of these problems present a serious worry -- at least immediately -- to Apple users.
Apple's Response
The longer-term implications, though, do raise concerns. There is no doubt that malware attacks on Macs will increase, Robert Siciliano CEO of IDTheftSecurity.com told MacNewsWorld.
Macs are not the only vulnerable systems, either. Firefox and cellular phones may also become targets. "Identity thieves will go wherever there is the path of least resistance," Siciliano said.
Apple's initial response when the first worm struck last week was somewhat disappointing, Graham Cluley, security consultant for Sophos, told MacNewsWorld. "OS is a well designed system, and Apple did give users some good advice on how to protect their computers -- but at the same time, they seem to be in denial about how serious the problem could get. Also they were claiming it was a Trojan, not a self propagating worm."
In a way, it is reminiscent of what happened in 1995 when the first Microsoft (Nasdaq: MSFT) Word virus appeared. "Microsoft refused to call it a virus," Cluley remembered. "They called it a 'prank macro' instead."
Corporations at Risk
The Mac user base is growing larger, which makes it that much more attractive to virus writers, Scott Carpenter, director of the Secure Elements Security Labs, explained.
"The old paradigm of a hacker creating a worm for notoriety and peer respect has morphed into a new paradigm of "hacking for profit," he told MacNewsWorld. "If there is money in it, it will be hacked."
That explains in part why the recent Mac OS X vulnerability was not a surprise to the security industry, Carpenter added. "Mac OS X has started to gain a larger market share of the desktop market, and this made Mac OS X a larger target."
The Weakest Link
Apple has been making inroads into corporate markets, which could put some company networks at risk if the creation of Mac malware does escalate. "Most businesses do not standardize on Macs, but many networks today contain at least one Mac system, even if the network is predominantly Windows- or Linux-based," Jon Kuhn, director of product management at SonicWALL, noted.
"Corporate networks are only as good as their weakest link, so it's timely for Mac users to take another look at their network security," he told MacNewsWorld.
The rise in Mac threats and the "OSX/Leap.A" virus are important illustrations of why security needs to be a greater focus for Mac users, he continued. "The OSX/Leap.A virus may be classified as low-risk but, because it can release confidential information, is spread via a typical e-mail and can propagate itself through instant messenger applications, is inherently threatening to unprotected networks."
First Mac OS X Worm Shows Up February 17, 2006
The Leap-A worm itself is not a major threat, says Sophos senior technology consultant Graham Cluley. In fact, it may prove to be a welcome development if it prods more people to install and update their security software. "Mac users cannot keep thinking that they are invulnerable to these threats," he warns.
Related Stories
Security Firms Warn of Looming Sober Worm Threat December 09, 2005
Overall, Sober worms are seen as the leading Web-based security threat during 2005. Security firm Sophos Inc. identified the Sober-Z variant as the most prevalent complaint during November.
StillSecure CTO Outlines Biggest Network Security Vulnerabilities November 08, 2005
TechNewsWorld recently caught up with StillSecure CTO Mitchell Ashley to discuss security trends of note, why some points of the network are especially vulnerable, and how companies can protect their networks from the enemy.
Appreciating Updates, Anticipating ApTel Line October 24, 2005
We are anticipating that many of Apple's laptop products will simply no longer have an optical drive of any kind but instead will have a multiple format flash reader slot and an iPod docking port. When docked, future iPods will have access to some notebook functions and be usable as a secondary display.
PowerPC to X86: Will Apple Survive the Move? June 13, 2005
Were Apple to reverse it would be an embarrassment of biblical proportions to Intel and put massive pressure on the company to offset IBM's strategy. With both AMD and VIA also motivated to steal some of this business, holding onto Apple may become more difficult, and expensive, for Intel than getting them was.
2005: The Year of Internal Security April 19, 2005
Internal security attacks can happen either maliciously or inadvertently. But regardless of what prompts an internal security breach, one thing is for certain: The impact of internal security issues causes negative results on an organization from both a technical and business perspective.
Related News Alerts
More by Erika Morphy
Ballmer Gives Shareholders - and Dell - Cause for Optimism November 20, 2009
Microsoft CEO Steve Ballmer was all smiles at the company's shareholders meeting, as he touted the early success of Windows 7. Ballmer's cheer may have been contagious; after posting a massive earnings decline for the third quarter, Dell needed some good news to latch onto, and the prospect of broad enterprise adoption of Windows 7 could spur PC sales.
AA.com Sucks the Fun Out of Trip-Planning November 20, 2009
Using AA.com to book a flight was a painful experience. Densely packed, disorganized information was displayed in an unattractive format. On the plus side, it did seem as though the deals American Airlines advertised were real and not mere bait-and-switch lures. For anyone who wants a travel-planning Web site to inject a little pleasure into the experience, though, I say look elsewhere.
Salesforce.com Pumps Up Volume of Workplace Chatter November 19, 2009
Salesforce.com has developed a collaboration platform that puts social networking to work. Salesforce Chatter facilitates employee collaboration on projects through Facebook-like profiles, status updates, feeds and groups. The question remains whether employees will be as open to social networking in the workplace as they are in their personal lives.