Newsletter:

Skip Navigation LinksHome > News > Security > Mac security goes rogue

Mac security goes rogue

By Shaun Nichols
17 January 2008 03:26PM
Tags: mac | security | goes | rogue

As Apple aficionados toast the Macworld expo, security researchers are warning of a rogue application targeting OS X.

Known as MacSweeper, the program professes to be a tool to clean out and optimise performance on OS X machines.

Users are offered a free system scan which generates fake positive results and then demands payment in order to remove the so-called 'privacy violations'.

Once installed and purchased, however, it is unclear what MacSweeper actually does.

Security researchers at F-Secure and McAfee have reviewed the software and declared it to be a scam.

McAfee security research and communications manager Dave Marcus said that the group behind MacSweeper is also responsible for the infamous SpySheriff rogue PC security program.

Having perfected its craft on Windows, Marcus thinks that the group may now be setting its sights on Mac users who are less familiar with rogue tools and 'scan and scare' installation tactics.

"Social engineering can be very successful for the short term on the Mac," he said. "[Users] are not used to thinking in terms of rogue applications on their Macs."

Marcus added that the emergence of MacSweeper is "disturbing but not unexpected".

"The more businesses look at the Mac platform, the more you're going to run into this," he said.

MacSweeper is the second piece of unsavory software to use social engineering to attack Mac users in recent months. In November a DNS changing trojan for OS X was discovered on a number of fake video codec sites.

Marcus said that Mac users will need to respond to the attacks by becoming more vigilant about what they're installing and where it's coming from.

"They need to start paying attention to the kind of searches that they're doing," he said. "They have been in a privileged place until now."

Copyright © 2008 vnunet.com

   


Ads by Google


Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 




Product Reviews

Star Rating
GuardianEdge Device Control is a component of the more robust GuardianEdge Data Protection Platform.
Star Rating
Lumension offers a pair of products, Sanctuary Application Control and Sanctuary Device Control, that work in...
Star Rating
First, it is important to note that unlike previous versions of ZENworks, Novell ZENworks Endpoint Security...
Star Rating
StormShield Security Suite offers integrated system and data protection in a single product.
Star Rating
Panda Security for Enterprise is another suite of products designed to protect the endpoint.
Product Reviews now available on iTnews.com.au

TopTopics
(9138) -  researchers
(6646) -  intel
(6404) -  processor
(6266) -  second
(6192) -  thermodynamics
(5968) -  telstra
(4016) -  network
(3168) -  broadband
(2914) -  microsoft
(2584) -  apple
(2406) -  samsung
(2323) -  wifi
(2305) -  nbn
(1906) -  iphone
(1373) -  security