Apple worm
A researcher claims that a Mac worm has the ability to execute code at root level

Worm 'proves' Macs as vulnerable as PCs

Anonymous hacker boasts of attack that can penetrate fully-patched Macs

Written by Shaun Nichols in California

An anonymous security researcher claims to have developed a worm capable of delivering a malicious payload to fully-patched Mac OS X systems.

A posting on the Information Security Sellout blog insists that the worm proves that Apple computers are as vulnerable to malware as Windows-based PCs. 

The blog is written by a group of anonymous researchers using the name 'Infosec Sellout'.

The researcher responsible for the post claimed to be developing the worm for a client, and said that no proof-of-concept or related details will be published. The author claims that the client does not plan to use the worm for criminal purposes.

The author has not yet notified Apple of the bug, but plans to contact the company "eventually".

The vulnerability apparently exploited by the worm lies in OS X's MDNSResponder networking component.

When exploited, the author claims that the worm has the capability to execute code at root level, allowing an attacker to install malware on the target system.

"While it is nothing special compared to Windows-based malware it does prove a point," wrote the researcher. "Apple computers are just as susceptible to malware as Windows-based ones."

The Infosec Sellout researcher is not the first person to attempt to prove such a point.

A virus for Apple's iChat application first appeared in February 2006, followed by another targeting OS X's Bluetooth software. Nine months later a third virus, dubbed OSX.Macarena, was found. 

None of these viruses was able to record more than 50 infections, and no malware installations were ever reported.

Tags:

Further reading

Apple patches critical QuickTime flaws

Vulnerabilities could lead to remote code execution   More...

iPhone dialler labelled security risk

Users urged to avoid automatic dialling via Safari   More...

Apple iPhone passes security muster

Safe for now, but uncertain future   More...

Zombie botnet targets iPhone buyers

'One of the most sophisticated' scams in recent times   More...

Related articles

Phishing Trojan targets Mac OS X

Fake codec delivers Mac malware   More...

Attackers feast on Real Player flaw

Real promises to patch hole as soon as possible   More...

Apple QuickTime exploit goes wild

Streaming media flaw used to push malware   More...

QuickTime flaw adds to Apple's woes

Exploit especially dangerous for Firefox users   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

24 Jul 2008

3.68 MBSpammer jailed, Esquire e-cover, and network passwords More...

23 Jul 2008

2.99 MBSmall time security, official 'spying' requests and a spammer jail break More...

22 Jul 2008

3.22 MBSat-nav crashes, open source security and female gamers More...

Poll

EUROPEAN E-COMMERCE

EUROPEAN E-COMMERCE

Are you happy making an online purchase from another European country?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

Credit card transaction

Credit card fraud rampant in the UK

Attempted frauds go unreported and ignored, analysts claim   More...

Intel

Intel rolls out new embedded line-up

System-on-a-chip offerings promise footprint and power saving   More...

Advertisement

Network cables

Tech giants collaborate on wireless HD

Another attempt at cable-free transmission in the home   More...

iPhone fever fills AT&T coffers

US provider cashes in on Apple smartphone   More...

Advertisement