Linked by Thom Holwerda on Wed 31st Oct 2007 20:06 UTC
Mac OS X "A new trojan horse designed specifically for Mac OS X systems has been discovered on several pornography websites that can hijack Web traffic, according to security firm Intego. Affected systems are used to hijack some Web requests that lead users to other phishing sites, or simply display ads for other pornographic websites to generate ad revenue. Phishing attacks may lead users to believe they are surfing to eBay, Paypal, or various banks when in fact they are accessing specially-crafted mockups designed to retrieve usernames and passwords for those sites. The trojan, titled OSX.RSPlug.A, is rated as a critical risk by Intego, and is known to affect Mac OS X 10.4 Tiger as well as Mac OS X 10.5 Leopard. Intego is testing prior versions of Mac OS X, but believes them to be vulnerable as well."
Thread beginning with comment 282200
To view parent comment, click here.
To read all comments associated with this story, please click here.
netpython
Member since:
2005-07-06

If there's a trojan, just get it fixed, no reason to be in denial over it if it really exists.

It's not the trojan but the users willingness of bluntly installing anything that pops up. According to the article the user got a message to install something (should ring a bell or two), the user had to give admin credentials (should bring you into defcon 3).

I instructed a lot of users not to install anything unless you downloaded it from a verifyable source and with good reason.

Sex sells and still attracts a lot of people. The internet is just another medium. And as anything that works with files (software) can be abbused and sooner or later will be abbused.

The article is nothing extraordinary. What in my opinion is more remarkable ( mind i'm not an OSX expert in any way) is the lack of adjusting the dns server entries with the known OSX "it just works" userfriendlyness.

Reply Parent Bookmark Score: 4