Linked by Thom Holwerda on Wed 31st Oct 2007 20:06 UTC
Mac OS X "A new trojan horse designed specifically for Mac OS X systems has been discovered on several pornography websites that can hijack Web traffic, according to security firm Intego. Affected systems are used to hijack some Web requests that lead users to other phishing sites, or simply display ads for other pornographic websites to generate ad revenue. Phishing attacks may lead users to believe they are surfing to eBay, Paypal, or various banks when in fact they are accessing specially-crafted mockups designed to retrieve usernames and passwords for those sites. The trojan, titled OSX.RSPlug.A, is rated as a critical risk by Intego, and is known to affect Mac OS X 10.4 Tiger as well as Mac OS X 10.5 Leopard. Intego is testing prior versions of Mac OS X, but believes them to be vulnerable as well."
Thread beginning with comment 282092
To view parent comment, click here.
To read all comments associated with this story, please click here.
SlackerJack
Member since:
2005-11-12

I understand this and so do others but making it news like it's some kind of dooms day device on the OS is not right. Just the right timing for not long after the Leopard release, got to love OSnews.

Reply Parent Bookmark Score: 1

Thom_Holwerda Member since:
2005-06-29

I understand this and so do others but making it news like it's some kind of dooms day device on the OS is not right. Just the right timing for not long after the Leopard release, got to love OSnews.


As far as I can recall, this is the first trojan in the wild for OS X - instead of previous alarm bells that were just proof-of-concepts or whatever.

That is what made me publish it on OSNews today. There is no conspiracy.

Reply Parent Bookmark Score: 3

RIchard James13 Member since:
2007-10-26

Is there another source for this "information" other than from Intego?

As a Linux user I remain highly skeptical of Virus Protection companies. Especially when they mark something as critical that involves Social Engineering.

Reply Parent Bookmark Score: 6

SlackerJack Member since:
2005-11-12

Looking back maybe I jump to quick with my remarks, should have took more time to think about it.

Reply Parent Bookmark Score: 6

StephenBeDoper Member since:
2005-07-06

.

Edited 2007-11-01 03:10

Reply Parent Bookmark Score: 3

HappyGod Member since:
2005-10-19

Ah yes, the "I don't like this news, so it not news" approach.

MacOS makes a big deal about how their OS does not get viruses:

http://movies.apple.com/movies/us/apple/getamac_ads1/viruses_480x37...

It is therefore newsworthy if they are then affected by them. Simple.

And yes, I am aware of the difference between a virus and a trojan, and it makes no difference.

Reply Parent Bookmark Score: 3

Nossie Member since:
2007-07-31

yes it does... because you still have to agree to install/run the program

So yes, os X gets malware.. but in windows with IE all you have to do is surf a malicious website and suddenly you have malware without agreeing to it. Admittedly SP2 now USUALLY gives the option to install or not but this certainly does not mean OSX is vulnerable to un assisted crapware.

This is just like a malicious wmv codec license, nothing more nothing less.

Just wait till there is one for Ubuntu, then Bill Gates will know his monopoly is over.

[Edit:] TYPO

Edited 2007-11-01 05:43

Reply Parent Bookmark Score: 5