Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Apple's Big Virus
Kelly Martin, 2005-04-20

After your identity has been stolen, your bank accounts compromised, 53 critical patches and 27 reboots later, when will you decide that you've had enough?

Comments Mode:
Apple's Big Virus 2005-04-21
Anonymous (2 replies)
Apple's Big Virus 2005-04-25
Anonymous
Apple's Big Virus 2005-05-02
Anonymous (1 replies)
Re: Apple's Big Virus 2005-05-25
Bradbury9
Apple's Big Virus 2005-04-21
Wanne (2 replies)
Apple's Big Virus 2005-04-21
M. T. MacPhee <macpheem@telus.net>
Apple&#39;s Big Virus 2005-04-23
Anonymous
Apple's Big Virus 2005-04-21
Brian McMahon <brian.mcmahon@cabrillo.edu> (3 replies)
Apple&#39;s Big Virus 2005-04-23
Anonymous
Apple&#39;s Big Virus 2005-04-25
Anonymous
Apple&#39;s Big Virus 2005-04-26
Anonymous (1 replies)
Re: Apple's Big Virus 2005-06-05
Anonymous
Apple's Big Virus 2005-04-21
Andrew
Apple's Big Virus 2005-04-21
Jimbo
Apple's Big Virus 2005-04-21
Anonymous (1 replies)
Apple&#39;s Big Virus 2005-04-21
M. T. MacPhee <macpheem@telus.net> (3 replies)
Apple&amp;#39;s Big Virus 2005-04-21
Anonymous (2 replies)
Sophos Enterprise A/V 2005-04-23
Anonymous
Apple&amp;amp;#39;s Big Virus 2005-04-25
M. T. MacPhee <macpheem@telus.net> (1 replies)
Apple&amp;amp;amp;#39;s Big Virus 2005-04-27
Anonymous (1 replies)
Apple&amp;amp;amp;amp;#39;s Big Virus 2005-04-29
Anonymous (1 replies)
Apple&amp;#39;s Big Virus 2005-04-21
Anonymous (2 replies)
Apple&amp;amp;#39;s Big Virus 2005-04-21
Kelly Martin (3 replies)
Renepo/Opener was an excellent example of what is possible, in particular because it revealed how a user-level process could place an executable in the user's StartupItems directory, which would then be run with root privileges upon next boot. It did cause quite a stir.

But it was never found in the wild. It also required a user be socially engineered to execute it, or else the attacker would need physical access to the machine.

OS X is far from indestructable! Jason Miller wrote a good article proving that point. That's not what this article was about, though. For example it would not be very difficult to modify the Opener.sh Bash script and help it propagate in the wild. But no one has done that yet - and hopefully, no one will.

Regards,

Kelly Martin

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/319/31485#31485
Apple&amp;amp;amp;#39;s Big Virus 2005-04-22
Anonymous
Apple&amp;amp;amp;#39;s Big Virus 2005-04-22
Anonymous (1 replies)
Apple&amp;amp;amp;amp;#39;s Big Virus 2005-04-22
Anonymous (1 replies)
AppleScript as virus/ 2005-04-22
Anonymous (1 replies)
AppleScript as virus 2005-04-24
Matthew Murphy
Apple&amp;amp;#39;s Big Virus 2005-04-25
M. T. MacPhee <macpheem@telus.net> (1 replies)
Apple&amp;amp;amp;#39;s Big Virus 2005-04-27
Anonymous
Apple and its Big Virus 2005-04-30
Anonymous
Apple's Big Virus 2005-04-21
Encrypto (1 replies)
Apple's Big Virus 2005-04-22
Anonymous
Apple's Big Virus 2005-04-21
M. T. MacPhee <macpheem@telus.net> (3 replies)
Apple&#39;s Big Virus 2005-04-21
Jason Miller
Apple&#39;s Big Virus 2005-04-21
Brad
Apple's Big Virus 2005-04-25
Biz Nerd
Apple's Big Virus 2005-04-22
Anonymous (1 replies)
The infested beast indeed! 2005-04-23
TJ (1 replies)
The infested beast indeed! 2005-04-25
Pecos Bill (1 replies)
The infested beast indeed! 2005-04-27
Anonymous (1 replies)
The infested beast indeed! 2005-05-01
Anonymous
Apple's Big Virus 2005-04-22
Anonymous (14 replies)
Apple&#39;s Big Virus 2005-04-22
Anonymous
Apple's Big Virus 2005-04-23
Anonymous
Apple&#39;s Big Virus 2005-04-24
Anonymous
Apple's Big Virus 2005-04-24
Anonymous
Apple&#39;s Big Virus 2005-04-24
Anonymous
Apple&#39;s Big Virus 2005-04-24
Anonymous
Apple&#39;s Big Virus 2005-04-24
Anonymous
Apple&#39;s Big Virus 2005-04-24
Anonymous
Apple's Big Virus 2005-04-24
Anonymous
Apple's Big Virus 2005-04-24
Anonymous
Apple&#39;s Big Virus 2005-04-24
Anonymous
Apple&#39;s Big Virus 2005-04-25
Anonymous
Apple&#39;s Big Virus 2005-04-25
Anonymous
Apple's Big Virus 2005-04-22
Anonymous (2 replies)
Apple&#39;s Big Virus 2005-04-24
Anonymous
Apple&#39;s Big Virus 2005-04-25
Anonymous
Apple's Big Virus 2005-04-22
Anonymous (1 replies)
Apple&#39;s Big Virus 2005-04-25
Anonymous
Apple's Big Virus 2005-04-23
Anonymous
Apple's Big Virus 2005-04-24
dave (1 replies)
lol 2005-04-25
bob (2 replies)
lol 2005-04-26
Anonymous
lol? Not me, I'm crying... 2005-04-30
Anonymous
Apple's Big Virus 2005-04-25
Anonymous
Apple's Big Virus 2005-04-26
Anonymous (2 replies)
Apple&#39;s Big Virus 2005-04-26
Anonymous
Apple&#39;s Big Virus 2005-04-27
Anonymous
Apple's Big Virus 2005-04-27
Anonymous
Warez and Office Mac 2005-04-29
Anonymous
Apple's Big Virus 2005-04-29
Anonymous
Apple's Big Virus 2005-04-30
Anonymous







 

Privacy Statement
Copyright 2008, SecurityFocus