iTWire - Mac malware bends browsers to suspect sites

LuKreme kremels at kreme.com
Fri Nov 2 22:18:05 PDT 2007


On 2-Nov-2007, at 19:08, R.L. Grigg wrote:
> On Nov 2, 2007, at 5:30 AM, LuKreme wrote:
>> But the fact is, this 'trojan' is merely an annoyance.  It does no  
>> damage. And it's only SLIGHTLY more annoying that flash animation  
>> banner ads, and I don't see too many people doing anything about  
>> those.
>
> Yes _this_ one happens to be a mere annoyance and does no damage,  
> but would you be singing the same tune if it _was_ damaging? The  
> mechanism involved could have installed anything at all - a virus,  
> malware, a rootkit, etc.

There are no viruses for OS X, so I don't see how it could have  
installed one.  But yes, you give an app your admin password and it  
can do ANYTHING.  That is the whole  point.

> Not that its OSX's fault per se, this "exploit" would work equally  
> on any OS. But more visibility into system level changes would  
> certainly be a good thing for OSX, perhaps something like a Time  
> Machine type of backup mechanism for the system, but on an event- 
> driven level.

I think checking the admin crontabs and startup items automatically  
via Time Machine is an excellent idea.

-- 
++?????++ Out of Cheese Error. Redo From Start.



More information about the MacOSX-talk mailing list