Mac botnets don't mean an increased threat (yet)

Two Symantec researchers have reported what they believe is the first evidence of a major botnet consisting of compromised Macs

Writing in the latest issue of Virus Bulletin (registration required), two Symantec researchers report what they believe is the first evidence of a major botnet consisting of compromised Macs.

However other experts aren't so sure of the increased threat to Mac users. Researchers Mario Ballano Barcena and Alfredo Pesoli found that Mac users who downloaded pirated copies of iWork 09 and Adobe Creative Suite 4 from P2P sites got more than the programs they intended. Added to the binaries were two malware variants--OSX.Iservice and OSX.Iservice.B. The malware executes a PHP script, running as root, that launches distributed denial of service (DDoS) attacks against sites.

One site,, reported a DDoS attack of more than 600Gb of Web traffic at its peak, according to the Washington Post.

While Apple has been successful with advertising that Mac users won't suffer the same number of viral attacks that Windows users endure, "unfortunately Macs offer no protection against the manipulation of emotions by malicious users," said Randy Abrams, director of education at ESET, an antivirus vendor.Whether this is the first Mac-based botnet, Abrams said this probably wasn't the first. He told PC World, "usually the first is done by some really smart people and doesn't get discovered."

Abrams noted that Macs today essentially run on Unix and in his blog he describes the parallels of this Mac malware with the first network Unix worm written by Robert Morris, Jr. back in 1988.Other experts agree the media attention around this particular botnet is unwarranted."The story for Mac malware hasn't changed this week contrary to popular opinion," wrote Adam O'Donnell of Cloudmark in a blog post.

That said, O'Donnell and experts who spoke to PCWorld all cited the need for Mac users to be educated on the threat landscape and at least start thinking about antivirus solutions for their desktops. Each stopped short of saying such purchases were absolutely necessary.Based on this one example, as long as a Mac user avoids pirated software on P2P sites, their desktop remains safe. But O'Donnell writes "when we see what happens every day on the PC side happen once on the Mac side, then we all need to run out and buy anti-virus software."

Robert Vamosi is a freelance computer security writer specializing in covering criminal hackers and malware threats.

Join the newsletter!

Error: Please check your email address.
Rocket to Success - Your 10 Tips for Smarter ERP System Selection

Tags botnetsMac

Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Robert Vamosi

PC World (US online)
Show Comments



Victorinox Werks Professional Executive 17 Laptop Case

Learn more >

Sansai 6-Outlet Power Board + 4-Port USB Charging Station

Learn more >



Back To Business Guide

Click for more ›

Brand Post

Most Popular Reviews

Latest Articles


PCW Evaluation Team

Louise Coady

Brother MFC-L9570CDW Multifunction Printer

The printer was convenient, produced clear and vibrant images and was very easy to use

Edwina Hargreaves

WD My Cloud Home

I would recommend this device for families and small businesses who want one safe place to store all their important digital content and a way to easily share it with friends, family, business partners, or customers.

Walid Mikhael

Brother QL-820NWB Professional Label Printer

It’s easy to set up, it’s compact and quiet when printing and to top if off, the print quality is excellent. This is hands down the best printer I’ve used for printing labels.

Ben Ramsden

Sharp PN-40TC1 Huddle Board

Brainstorming, innovation, problem solving, and negotiation have all become much more productive and valuable if people can easily collaborate in real time with minimal friction.

Sarah Ieroianni

Brother QL-820NWB Professional Label Printer

The print quality also does not disappoint, it’s clear, bold, doesn’t smudge and the text is perfectly sized.

Ratchada Dunn

Sharp PN-40TC1 Huddle Board

The Huddle Board’s built in program; Sharp Touch Viewing software allows us to easily manipulate and edit our documents (jpegs and PDFs) all at the same time on the dashboard.

Featured Content

Latest Jobs

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?