<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; measuring-security</title>
	<atom:link href="http://www.darknet.org.uk/tag/measuring-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Measuring up the Security Risks for Mac &#8211; Are Apple Prepared?</title>
		<link>http://www.darknet.org.uk/2006/03/measuring-up-the-security-risks-for-mac-are-apple-prepared/</link>
		<comments>http://www.darknet.org.uk/2006/03/measuring-up-the-security-risks-for-mac-are-apple-prepared/#comments</comments>
		<pubDate>Fri, 17 Mar 2006 04:23:54 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Apple]]></category>
		<category><![CDATA[Linux Hacking]]></category>
		<category><![CDATA[apple]]></category>
		<category><![CDATA[apple-security]]></category>
		<category><![CDATA[linux-vs-mac]]></category>
		<category><![CDATA[mac-hacking]]></category>
		<category><![CDATA[mac-security]]></category>
		<category><![CDATA[measuring-security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/2006/03/measuring-up-the-security-risks-for-mac-are-apple-prepared/</guid>
		<description><![CDATA[The fact is Windows is getting ripped apart with viruses, spamware, spyware, zombie clients, trojans worms and whatever else you can think of. Mac and Linux aren&#8217;t (at the moment), there are already Bluetooth viruses, so why not Linux and Mac.. Some may say it&#8217;s because they are inherently more secure, the architecture and user [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>The fact is Windows is getting ripped apart with viruses, spamware, spyware, zombie clients, trojans worms and whatever else you can think of.</p>
<p>Mac and Linux aren&#8217;t (at the moment), there are already Bluetooth viruses, so why not Linux and Mac..</p>
<p>Some may say it&#8217;s because they are inherently more secure, the architecture and user privelege seperationg means it&#8217;s hard for any kind of malware to infect the system&#8230;plus they don&#8217;t come with crap like Internet Exploder that&#8217;s tied into the operating system.</p>
<p>There have been a couple of worms for Linux, mostly praying on Apache, and then the OpenSSL bug that allowed you to get access (combined with the kernel flaw in 2.4 you could easily get root access).</p>
<p>eWeek asks, <a href="http://www.eweek.com/article2/0,1759,1928716,00.asp?kc=EWRSS03129TX1K0000614">What will Apple do when the malware comes</a>? Which inevitably it will..</p>
<blockquote><p>The release in the last few days of malware for the Mac and Linux underscore some old issues about how it is possible to have malware on those platforms. I have some new thoughts though. I&#8217;ve begun to wonder what Apple would do if a real problem developed.</p>
<p>To be very clear, a real problem has not yet developed, and Inqtana.A and Leap.A are not a real problem, except to the extent that they may be bellwethers. They are more interesting for what they suggest than what they actually do.</p></blockquote>
<p>As with Windows, a lot of it is a consumer issue, and down to education.</p>
<p>With Mac, the user does run as a non-priveleged user by default, but when installing any software they can just pop in the Admin password and it&#8217;ll install.</p>
<p>It&#8217;s all about social engineering, making the user believe they want it, it&#8217;s something &#8216;cool&#8217; or useful.</p>
<blockquote><p>When good social engineering attacks are developed for the Mac, the same thing will happen. It&#8217;s not hard to imagine Web sites and e-mails offering programs for the Mac that do more than they claim to do.</p>
<p>Just in terms of adware, there may be some benefit to being able to deliver known Mac users to advertisers, but for the most part the &#8220;value&#8221; of infecting the user is the same: to spread itself, and perhaps to create a Mac botnet. </p></blockquote>
<p></p>
<p>Few have tried to write Malware for OSX yet, but I guess it will happen, the question is are Apple prepared?</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Measuring+up+the+Security+Risks+for+Mac+%E2%80%93+Are+Apple+Prepared%3F+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D57+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2006/03/measuring-up-the-security-risks-for-mac-are-apple-prepared/&amp;t=Measuring+up+the+Security+Risks+for+Mac+%E2%80%93+Are+Apple+Prepared%3F" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2006/03/measuring-up-the-security-risks-for-mac-are-apple-prepared/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2006/03/measuring-up-the-security-risks-for-mac-are-apple-prepared/&amp;title=Measuring+up+the+Security+Risks+for+Mac+%E2%80%93+Are+Apple+Prepared%3F" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2006/03/measuring-up-the-security-risks-for-mac-are-apple-prepared/&amp;title=Measuring+up+the+Security+Risks+for+Mac+%E2%80%93+Are+Apple+Prepared%3F" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2006/03/measuring-up-the-security-risks-for-mac-are-apple-prepared/&amp;title=Measuring+up+the+Security+Risks+for+Mac+%E2%80%93+Are+Apple+Prepared%3F" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2006/03/measuring-up-the-security-risks-for-mac-are-apple-prepared/&amp;title=Measuring+up+the+Security+Risks+for+Mac+%E2%80%93+Are+Apple+Prepared%3F" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2006%2F03%2Fmeasuring-up-the-security-risks-for-mac-are-apple-prepared%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2006/03/measuring-up-the-security-risks-for-mac-are-apple-prepared/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
	</channel>
</rss>

