Big Mac attack? A wake-up call for OS X users
Black Enterprise, Sept, 2004 by Rebecca Rohan
Macintosh users have had some bragging rights over their Windows counterparts for various reasons, not the least of which is "malware"--viruses, worms, and Trojan horses--that is a frequent pain to Windows users. But on March 20, 2004, a "proof of concept" Trojan horse named MP3Concept (file name MP3Virus.Gen) was discovered, paving the way for more serious malware.
The malware is theoretically benign, but is intended to show a particular vulnerability in an operating system or programmed to alert developers and the user community so that they can tighten security. The MP3Concept Trojan embeds MP3 data into an application. Once the application is executed, the Trojan executes and displays the message, "Yep, this is an application. So what is your iTunes playing right now?" After displaying the message, the program launches iTunes and plays the mp3 file.
That first, and harmless, Trojan executes only if the user opens it as an attachment. If the user downloads the file through iTunes, nothing out of the ordinary happens. MP3Concept Trojan does not replicate itself and is therefore not a virus. But someone decided to create a malicious Trojan that went beyond proof of concept. Still not a virus, AS.MW2004.Trojan was discovered May 12, 2004, and its long name, Microsoft Word 2004 OS X Web Install, tells the story: Mac OS X users believe they're getting an installer for a Beta of MS Word 2004. Instead, when executed, a script attempts to delete the user's root directory, which on an OS X system can mean the folder that contains other folders. But for the Mac, if the user is not logged on as "root," nothing happens. Take that as a safety tip.
Symantec's Norton AntiVirus 9.0 for the Mac ($69.95) has a virus definition update for the Trojan, but McAfee has no consumer antivirus product for the Macintosh, Both companies have enterprise products for the Mac.
"This is a new threat targeting the Mac OS X line; there have been a few threats for OS 9," says Nancy Mohler, senior product manager for Symantec. According to Mohler and other experts, there are reports of the malicious Trojan circulating on peer-to-peer file-sharing networks, but no one has submitted a copy of it.
The number of reported attacks is also low, but it's better to practice safety before the big one hits. "You can't take safety for granted, regardless of the operating system platform," says Mohler. "We do see attempts at identity theft." Mohler also warns Mac users that they can spread PC viruses if they have OS 9.
Neel Mehta, a research engineer with Internet Security Systems' X-Force, says, "As more people begin to use Mac OS, we'll see more malware targeting it, If the kind of worms targeting Windows and Linux are written to target Mac, it would have more significance than this piece of malware."
MAC VIRUSES
See both Trojan profiles with illustrations at:
Proof of Concept: http://securityresponse.symantec.com/avcenter/venc/data/mp3concept.html
Malware: http://securityresponse.symantec.com/avcenter/venc
- 5 Rules for Immediate Annuities
- Death in the Family: 12 Things to Do Now
- Dumbest Things You Do With Your Money
- 6 Online Networking Mistakes to Avoid
- 401(k) Mistakes to Avoid
- 5 Economic Scenarios to Keep You Up at Night
- The Real ‘Best Places to Retire’
- Best Credit Cards for You
- 12 Tough Questions to Ask Your Parents
- The Real ‘Best Colleges’
- Home Buyer Tax Credit: How to Cash In
- Why You Shouldn't Bash Cash
- 8 Phony 'Bargains' and Better Alternatives
- Danger: 3 Debit Card Scams to Avoid
- 6 Myths About Gas Mileage
- 29 Fees We Hate Most
- Quick and Easy Ways to Boost Returns
- Best Stocks to Buy Now
- Lower Your Taxes: 10 Moves to Make Now
- New Jobs: 8 Lessons from Real-Life Career Switchers
- The New Job Market: Who Wins and Who Loses?
- Health Care Reform's Public Option: Everything You Need to Know
- Volunteer Work When Unemployed: Should You Work for Free?
- Whose Recovery Is This?
- Long-Term-Care Insurance: 4 Biggest Risks to Avoid
Content provided in partnership with
Most Recent Business Articles
- CORRECTION FROM SOURCE/Media Advisory: Fallen Canadian Soldiers and Journalist Return Home
- Fox Networks Group and Bright House Networks Strike Comprehensive Deal to Distribute Fox Broadcast Stations, National Cable and Regional Sports Networks
- Fox Networks Group and Time Warner Cable Strike Comprehensive Deal to Distribute Fox Broadcast Stations, National Cable and Regional Sports Networks
- Houston Radio D.J. Kevin Kline Completes 500-Mile, 13-Day Ultramarathon Across Texas for Kids with Cancer
- Seaspan Corporation Provides Information on the CSCL Hamburg
Most Recent Business Publications
Most Popular Business Articles
- 7 tips for effective listening: productive listening does not occur naturally. It requires hard work and practice - Back To Basics - effective listening is a crucial skill for internal auditors
- FAS 109: a primer for non-accountants - Financial Accounting Standards Board's "Statement 109: Accounting for Income Taxes"
- LIFO vs. FIFO: a return to the basics
- Using object-oriented analysis and design over traditional structured analysis and design
- Design a commission plan that drives sales - Sales Commissions



