
A friend who recently switched to a Mac asked me what kind of virus software to get, since Macs are being attacked and hacked so easily these days.
Talk about misinformation. Yes, a Mac was attacked and compromised in a matter of minutes. It’s not the end of the world.
Despite the media headlines, most Mac users don’t have any more security issues to worry about today than they did before the MacBook Air was attacked and compromised.
The PWN2OWN contest recently held in Canada gave hackers a chance to win $10,000 if they could hack a notebook. In this case, a MacBook Air, a Sony Vaio running Windows Vista notebook, and a Linux flavored notebook by Fujitsu.
The MacBook Air was the first to bite the dust and was hacked on the second day of the contest. You’re a Mac owner, right? Should you be worried? Not so fast. Hacker Charlie Miller compromised the MacBook Air by directing the user to visit a web site which contained code he used to exploit a vulnerability, probably in Safari, and take control of the Mac.
The rules were simple. Hackers could only use software already installed on the notebooks. The objective was to break into the notebook and read a specific file. The first day of the contest was more difficult. Hackers were allowed to attack the notebooks only over a network. None succeeded.
The second day was easier as the hackers were allowed to have the notebooks visit a web site or open an email message. Charlie Miller was first in line.
He directed the MacBook Air to visit a site with his exploit code. It worked. He took control of the Mac in two minutes and won the prize (money and the MBA).
Does this mean that the average Mac user has a major security problem to worry about? No. Miller knew of a specific vulnerability and had an exploit waiting to take advantage of it when he directed the Mac to visit his site.
All mainstream operating systems, Mac OS X, Windows, Linux, have vulnerabilities which may, under certain circumstances, be exploited in various ways, even across a remote network. Some vulnerabilities are nearly impossible to exploit, others are easier, but usually only under the right circumstances.
Finding a vulnerability in an operating system is difficult enough. Creating an exploit to take advantage of the vulnerability is yet another challenge. Getting the exploit in “the wild” to affect the Mac masses is yet a third challenge.
So far, there are few, if any, exploits in the wild attacking Macs.
It’s important to note that the MacBook Air that was successfully compromised was stock, out of the box. No applications or utilities were added. The OS X firewall was not turned on. While Miller was able to control the Mac remotely, he did not gain root access, though he could have changed, damaged, or deleted valuable user files.
The problem with this hacking contest is the resulting headlines, which are often misleading, since many users, Mac or Windows, won’t read or fully appreciate the details.
What users remember is that the Mac was hacked and not much more. Embarrassment? Yes. Worry? No.
If you visit Charlie Miller’s exploit laden web site with a stock Mac running OS X Leopard and the latest version of Safari, and your Mac’s firewall is off, and Charlie is waiting for you to visit his site, he could compromise your Mac.
Otherwise, Mac user’s security worries are few. There are a few vulnerabilities in a Mac running OS X, just as there are similar vulnerabilities in Windows and Linux. Few of the known vulnerabilities result in exploits, and far fewer result in a public danger to Macs, Windows PCs, or Linux PCs. For now.
That said, my Mac runs OpenDoor’s popular DoorStop firewall, and Little Snitch (kind of a reverse firewall which traps and tracks outgoing connections from your Mac).
I’m not terribly worried about the Mac’s vulnerabilities or potential exploits. But, better safe than sorry. What about you? What do you do to protect your Mac from outside intrusion?
Click Here to see reader comments on this article in the Mac360 Forums.
By Ron McElfresh | My first Mac was the 128k model (from 1984, so I'm old). I live and work in Honolulu, Hawaii. Read my daily commentary on McSolo, check for certified Mac software updates on NoodleMac, and follow me on Twitter.
• Email This Article
• Follow Mac360 on Twitter
• Posted in the Forum Topics Section
• How To Make Craig’s List Look Good On A Mac
• Mac Buyer Poll: What Will Be Your Next New Mac.
• The New MacBook: Mac OS X, iPhone OS X, Or Both?
Off Topic Note: Help support Mac360. Order your copy of Mac OS X Snow Leopard from Mac360 through Amazon. Snow Leopard is $29 for the Single User Upgrade, and only $49 for the 5 User Family Pack Upgrade. For mini reviews of Mac software, check Ron’s NoodleMac site. Kate MacKenzie is back after a year of using Windows, and Ron has daily Mac musings on McSolo.
Mac360 posts daily Mac updates on Twitter, too. If you Twitter, give Alexis, Bambi, or Ron a tweet and follow Mac360 on Twitter to get daily Mac tips and tricks.
Copyright © 2004 - 2009 Ron McElfresh, Honolulu, HI USA. All Rights Reserved.
Mac360 is published by Ron McElfresh, Honolulu, HI and powered by ExpressionEngine at Pair Networks.
Mac360 pages are best viewed in Safari 4.x or Firefox 3.x browsers. Microsoft Internet Explorer is not supported.
This Mac360 page was created in 0.5273 seconds.