• This forum is for posting news stories or links from rumor sites. When you start a thread, please include a link to the site you're referencing.

    THIS IS NOT A FORUM TO ASK "WHAT IF?" TYPE QUESTIONS.

    THIS IS NOT A FORUM FOR ASKING QUESTIONS ABOUT HOW TO USE YOUR MAC OR SOFTWARE.

    This is a NEWS and RUMORS forum as the name implies. If your thread is neither of those things, then please find the appropriate forum to ask your question.

    If you don't have a link to a news story, do not post the thread here.

    If you don't follow these rules, then your post may be deleted.

Cybercriminals create first known Mac-based Botnet

cwa107


Retired Staff
Joined
Dec 20, 2006
Messages
27,042
Reaction score
812
Points
113
Location
Lake Mary, Florida
Your Mac's Specs
14" MacBook Pro M1 Pro, 16GB RAM, 1TB SSD
Let this be a warning to those of you using pirated software...

A piece of malicious software unwittingly shared over a peer-to-peer network in January was the key tool in what security researchers are saying was the first known attempt to create a botnet of Mac computers.

Researchers at Symantec say the Trojan, called OSX.Iservice, hid itself in pirated versions of the Apple application iWork '09 and the Mac version of Adobe Photoshop CS4 that were shared on a popular peer-to-peer bittorrent network.

Once downloaded, the applications themselves worked normally, but the Trojan opens a "back door" on the compromised computer that allows it to begin contacting other hosts in its peer-to-peer network for commands.

More here.
 
Joined
Apr 2, 2007
Messages
797
Reaction score
13
Points
18
Location
Merriam, KS
Your Mac's Specs
15" MBP Core Duo 2.0GHz 1.5GB, 20" iMac C2D 2.4GHz 4GB, PowerPC G4 500MHz 512MB
Joined
Jan 16, 2008
Messages
314
Reaction score
0
Points
16
Well, when I get my Mac I'll get iWork 09 preinstalled so it's cheaper. The only stuff I download now are just movies and music, no more programs/executables. I guess Mac trojans are on the rise now that more people are buying them than before.
 
OP
cwa107

cwa107


Retired Staff
Joined
Dec 20, 2006
Messages
27,042
Reaction score
812
Points
113
Location
Lake Mary, Florida
Your Mac's Specs
14" MacBook Pro M1 Pro, 16GB RAM, 1TB SSD
Well, when I get my Mac I'll get iWork 09 preinstalled so it's cheaper. The only stuff I download now are just movies and music, no more programs/executables. I guess Mac trojans are on the rise now that more people are buying them than before.

You are perpetuating the security through obscurity myth, which has been debunked a thousand times.
 

vansmith

Senior Member
Joined
Oct 19, 2008
Messages
19,924
Reaction score
559
Points
113
Location
Queensland
Your Mac's Specs
Mini (2014, 2018, 2020), MBA (2020), iPad Pro (2018), iPhone 13 Pro Max, Watch (S6)
The only stuff I download now are just movies and music, no more programs/executables.
Aside from still probably being illegal in your jurisdiction, that logic is horribly flawed.

Downloading just music/movies doesn't exonerate you from legal recourse nor does it assure you that you are safe from trojans/viruses. I also see a sense of unwarranted paranoia. Just because something happens to one small group doesn't mean it will happen to you. I am by no means encouraging you to download programs illegally/condoning piracy but you seem to take a fatalist attitude towards this.

On a bit of an aside, did anyone see the Daily Show Tuesday with the pirate story? I forget the exact wording but Stewart said something along the lines of "now pirates have to go back to their old name, thieves".
 
Joined
Apr 9, 2009
Messages
2,073
Reaction score
68
Points
48
Location
Ithaca NY
Your Mac's Specs
13 inch alMacBook 2GHz C2D 4G DDR3, 1.25GHz G4 eMac
Oh god that was classic. :) I watched it on hulu last night. Now I'm going to watch yesterday's episode. No comedy central anymore since I moved to Ithaca, fiancee has only basic cable now. That'll change soon.
 

vxd


Joined
Jun 19, 2007
Messages
119
Reaction score
3
Points
18
I find it hilarious that by just hearing or reading the words Mac, PC or Windows we all become kids in the playground comparing who has the best toys.

Kid 1: "My Transformer is more expensive, so it's better"
Kid 2: "NO!, Your Transformer are for babies, it doesn't do anything but shine. My Transformer is a lot better because it cost half the price of your one, it's bigger and you can replace and upgrade the parts
Kid 3: "Yeah so, at least my one doesn't break when I play with it."

Oh yeah I'm referring to the comments from that site
 
OP
cwa107

cwa107


Retired Staff
Joined
Dec 20, 2006
Messages
27,042
Reaction score
812
Points
113
Location
Lake Mary, Florida
Your Mac's Specs
14" MacBook Pro M1 Pro, 16GB RAM, 1TB SSD
I find it hilarious that by just hearing or reading the words Mac, PC or Windows we all become kids in the playground comparing who has the best toys.

Kid 1: "My Transformer is more expensive, so it's better"
Kid 2: "NO!, Your Transformer are for babies, it doesn't do anything but shine. My Transformer is a lot better because it cost half the price of your one, it's bigger and you can replace and upgrade the parts
Kid 3: "Yeah so, at least my one doesn't break when I play with it."

Oh yeah I'm referring to the comments from that site

Especially in this day and age when almost EVERY Mac user has a Windows machine (or at least runs one in virtualization or dual-boots).

It was different back in the days when you had to decide on one computer, one platform. But now that computers have become so ubiquitous and relatively cheap, I'm not sure why we feel compelled to evangelize for one system over another.
 
Joined
Jan 27, 2007
Messages
5,658
Reaction score
159
Points
63
Location
*Brisvegas*
Your Mac's Specs
17 inch 2 GHz C2D imac (5,1) with 3GB DDR2 RAM, X1600 (128MB memory) GPU - OSX 10.6.3
Not so ubiquitous and relatively cheap for some. But I agree they are within reach of many people these days.
 
Joined
Oct 24, 2008
Messages
30
Reaction score
2
Points
8
You are perpetuating the security through obscurity myth, which has been debunked a thousand times.

Has it? Not trying to start a flame war, but when I read stuff like this from Pwn2Own hacker Charlie Miller, I'm sure what to believe.

"Why Safari?

It’s really simple. Safari on the Mac is easier to exploit. The things that Windows do to make it harder (for an exploit to work), Macs don’t do. Hacking into Macs is so much easier. You don’t have to jump through hoops and deal with all the anti-exploit mitigations you’d find in Windows.

It’s more about the operating system than the (target) program. Firefox on Mac is pretty easy too. The underlying OS doesn’t have anti-exploit stuff built into it."
 
Joined
Nov 18, 2006
Messages
4,934
Reaction score
207
Points
63
Location
Anytown, USA
Your Mac's Specs
27" iMac 2.7GHz Core i5, iPhone 6, iPad Air 2, 4th gen Apple TV
Old news.

There's no need to be a jerk. I know this botnet was being downloaded in January, but it doesn't seem to be posted on this site anywhere? Maybe he's just trying to spread awareness and help out his fellow Mac users.
 
OP
cwa107

cwa107


Retired Staff
Joined
Dec 20, 2006
Messages
27,042
Reaction score
812
Points
113
Location
Lake Mary, Florida
Your Mac's Specs
14" MacBook Pro M1 Pro, 16GB RAM, 1TB SSD
Has it? Not trying to start a flame war, but when I read stuff like this from Pwn2Own hacker Charlie Miller, I'm sure what to believe.

"Why Safari?

It’s really simple. Safari on the Mac is easier to exploit. The things that Windows do to make it harder (for an exploit to work), Macs don’t do. Hacking into Macs is so much easier. You don’t have to jump through hoops and deal with all the anti-exploit mitigations you’d find in Windows.

It’s more about the operating system than the (target) program. Firefox on Mac is pretty easy too. The underlying OS doesn’t have anti-exploit stuff built into it."

The Security through Obscurity Myth asserts that there are less security issues with Macs because they have such an insignificant marketshare.

I think this article argues that Macs are inherently insecure because Apple hasn't taken the time to integrate any anti-exploit mitigation (and if it were true, I'd tend to think we'd be awash in web-based exploits).
 
OP
cwa107

cwa107


Retired Staff
Joined
Dec 20, 2006
Messages
27,042
Reaction score
812
Points
113
Location
Lake Mary, Florida
Your Mac's Specs
14" MacBook Pro M1 Pro, 16GB RAM, 1TB SSD
Maybe we aren't b/c of marketshare.

Apple has been touting the security of Mac OS X since it was introduced, and Mac fans have been rubbing it in the face of Windows users for even longer. Don't you think that if it were really that simple, at least a few people would be tempted to claim the prize of writing the first Mac virus?
 

dtravis7


Retired Staff
Joined
Jan 4, 2005
Messages
30,133
Reaction score
703
Points
113
Location
Modesto, Ca.
Your Mac's Specs
MacMini M-1 MacOS Monterey, iMac 2010 27"Quad I7 , MBPLate2011, iPad Pro10.5", iPhoneSE
Apple has been touting the security of Mac OS X since it was introduced, and Mac fans have been rubbing it in the face of Windows users for even longer. Don't you think that if it were really that simple, at least a few people would be tempted to claim the prize of writing the first Mac virus?


That I completely agree with. If it was that easy there are many hackers that would do it just to shut up the Mac users once and for all. It's been tried many times trust me. Once I was on a forum late at night and a hacker tried to trick me into downloading an OSX exploit. I did just to see what would happen. It really did not work even after I entered the System Password. And what he tried was patched 3 years ago now by Apple.

The Video Codec one from some video sites does work though but you do have to enter the password and install the Codec. I did it on my old G4 tower and was able to remove it in 30 seconds without the aid of any removal tool. No damage done, just DNS redirects till I took it out.

On a Windows system I would never have even installed it in the first place and it might have taken hours to get rid of completely.

If OSX was that easy to hack, trust me, there would be Malware all over the place for it. Am I saying it can never happen? No, not at all. NO system is 100% safe, but if you use your head and don't download every Codec and piece of Pirated software out there, you will probably be fine. :D
 
Joined
Apr 26, 2008
Messages
2,963
Reaction score
120
Points
63
Location
Belgium
Your Mac's Specs
iPad Pro 12.9 latest iOS
The challenge will be to know / detect if your computer ( Any OS ) has been compromised.
In todays cybercrime environment, a lot of effort is put in to make malicious code nearly invisible and keep low profile.

Every day experience tells me that there are some clever people out there writing malicious stuff and new concepts are being tried all the time.

Most important thing is to try and change people's behavior. It has been said many times before .... be vigilant.

" If we want things to stay as they are, things will have to change. "

Cheers
McBie
 
Joined
Oct 22, 2007
Messages
8,967
Reaction score
287
Points
83
Location
London
Your Mac's Specs
Mac Mini Core i7 2012 | White 2009 MacBook 2 Ghz | 733 Mhz G4 Quicksilver
IF the security through obscurity myth were at all true, then the mac should get between 5 to 10% of the infections out there since it is still a market worth exploiting

Other minority web platforms have malware, including Linux, Symbian, Palm OS and Windows Mobile

I am not saying that OS X is immune to viruses, but if the job of spreading malware on the platform was easy, then we should have the same amount of malware as other minority OSes
 
Joined
Jun 4, 2008
Messages
38
Reaction score
0
Points
6
Location
Wisconsin
Your Mac's Specs
MacBook Pro 15.4" 2.16 GHz Intel Core 2 Duo
I think this does bring up the question of whether this will make any Mac user purchase security software when prior to this threat they might not have.
 

Shop Amazon


Shop for your Apple, Mac, iPhone and other computer products on Amazon.
We are a participant in the Amazon Services LLC Associates Program, an affiliate program designed to provide a means for us to earn fees by linking to Amazon and affiliated sites.
Top