Share

Related Links

Related Stories

  • Apple could face investigation over iPhone software
    Apple could face an investigation by US competition authorities into whether the latest version of the software for the firm's iPhone unfairly locks out competitors.
  • Israel lifts Apple iPad ban
    Israel has lifted a ban on imports of Apple's iPad, which was imposed because authorities said the device's Wi-Fi system was incompatible with Israel's wireless standard.
  • Apple issues patch for Mac hack
    Apple has issued a second security patch for its OS X for the second time in less than a month. This time the company looked to plug alleged security holes in the Safari browser that were uncovered by a researcher at this year’s CanSecWest conference.
  • Security community reacts to iPad
    Apple shipped its much-anticipated iPad over the weekend, and the security community has responded quickly. Not only have antivirus companies targeted it with product, but hackers have already jailbroken the iPad device.
  • Security and malware threats to Mac and Apple products are on the rise
    An annual report from security software provider Intego acknowledges it was a busy year for security threats to Apple devices, including the Mac OS X and iPhones. And while the Mac OS may be a less frequent target of malware authors, security threats to Apple products are proliferating as these devices land in the hands of more and more users.

Top 5 Stories

News

How secure are Apple products? It’s a matter of perception

06 May 2010

David Harley of anti-virus vendor ESET recently examined black hat exploits of Apple products and Mac platforms. Despite a commonly held perception that the company’s products are inherently safer from a security perspective, according to Harley, they are hardly the “safe haven” that many believe them to be.

At last week’s Infosecurity Europe conference in London, ESET’s director of malware intelligence addressed a business theater crowd on the topic of “Apple, Security, and the Power of Perception”. What his research shows is the large gap between the perceived threats aimed at Apple products and the reality of just how many potential exploits exist.

“Macs, we have frequently been told for more than 20 years, are not subjected to viruses”, mused Harley. With such a gap between reality and perception existing around the security of one company’s products, it begs the question as to why this reputation exists at all.

As Harley pointed out, it’s really a matter of market share. A recent cybercrime survey conducted by ESET showed that Macs make up substantially less of the market than their PC brethren, which outnumber them 4.6:1 in US household use. This underscores the fact that there is more exploits to be had, and more money to be made, by taking the time to target PCs with viruses and malware.

Perhaps this is why the same ESET survey shows that 57% of Mac users do not employ anti-virus software on their machines, whereas only 8% of PC owners fail to do so. Here, we see that the power of perception at its strongest, as Mac users believe their platform to be “safe enough already”, without the need for additional security protection.

In addition, more than half of PC users in the US believe their machines to be “very” or “extremely” vulnerable to cybercrime attacks, whereas only 20% of Mac owners thought their computer was likely this vulnerable to attack. As the ESET report astutely points out, “perception is that Macs are safer than PCs...despite the reality that there is no significant difference between the two platforms”.

Still, as Harley noted, “any computer user who believes [their] system is so safe that they don’t have to care about security is prime material for exploitation by social engineering”. He believes it will take a highly publicized disaster affecting Mac users before this false sense of security is broken and users rush to employ anti-virus software on their Macs.

Harley said there are quite a few Mac-related viruses available for deployment by the black hat underground, “but their effectiveness is largely limited to pre-OS 10 platforms” he added. “It’s debatable, or at least a matter of definition, as to whether there are any OS 10 viruses. But that only matters if you think only computer viruses matter”.

Regardless, as Harley correctly observed, more Mac exploits are available now than ever before. These include, among others, rootkits, keyloggers, DNS changers, trojan download and installation, rogue security software, and adware.

“There is no unequivocal need for anti-virus on every Mac” said Harley – surely to the consternation of ESET’s marketing and sales departments – “but there are vulnerabilities”.

This article is featured in:
Malware and Hardware Security

 

Comment on this article

You must be registered and logged in to leave a comment about this article.