Slashdot Mirror


PC Mag - Mac OS X Insecure

Suki writes "In this recent story a PC Mag writer concludes that "Panther and Jaguar were not better at outrunning vulnerabilities than Windows" and as my personal fav. ends by asking "How cocky are you feeling now, Mac elite? Hmm. Suddenly it's gotten pretty quiet around here." The article discusses many previous Windows security holes against a recent Mac OS X security flaw."

42 of 991 comments (clear)

  1. Hum... by Anonymous Coward · · Score: 2, Funny

    I can feel a big commentary fight coming on this post :)

    Pro-MACs on my left, pro-PCs on my right.

    Ready ?

    FIGHT

    1. Re:Hum... by Valdrax · · Score: 4, Funny

      I can feel a big commentary fight coming on this post :)

      Pro-MACs on my left, pro-PCs on my right.


      I think Rush Limbaugh might take offense at being placed on the Left.

      --
      If it's for-profit but free, you're not the customer -- you're the product (e.g., the Slashdot Beta's "audience").
    2. Re:Hum... by prockcore · · Score: 4, Funny


      Pro-MACs on my left, pro-PCs on my right.


      I'm Stuck in the Middle with you.
      Yes I'm stuck in the middle with Linux.

    3. Re:Hum... by LearnToSpell · · Score: 2, Funny

      Pro-MACs on my left

      Yeah, both of 'em. *chortle*

    4. Re:Hum... by FuzzyBad-Mofo · · Score: 5, Funny

      Shouldn't that be:

      Stuck in the middle with GNU..?

  2. Got quiet, eh? by bgarcia · · Score: 4, Funny
    I like how he acts as though nobody is willing to write back in defense of MacOS X.

    Can someone tell him that HIS WEBSITE IS NOT A BLOG, OTHERWISE HE WOULD BE INUNDATED WITH REPLIES!!!!

    Thank you. ;-)

    --
    I'm a leaf on the wind. Watch how I soar.
  3. I use emacs by Anonymous Coward · · Score: 1, Funny

    so I guess I am safe.

  4. That's exactly why... by raehl · · Score: 4, Funny

    I do the majority of my computing work on my TI-92. Havn't had a virus yet!

    1. Re:That's exactly why... by Unregistered · · Score: 4, Funny
      I wrote one actually

      DISP "THIS IS A CALCULATOR "
      DISP "VIRUS. GIVE IT TO YOUR"
      DISP "FRIENDS AND CLEAR YOUR "
      DISP "RAM"


      i hate the lameness filter. ti code is all caps so i need to put a lot of non caps in here to balance it out. this is not capatilized. take that you worthless filter. the above wasn't yelling, but now i think i just night start.
  5. Quick, someone mod parent down! by Phekko · · Score: 5, Funny

    We do not want to encourage behavior like this, do we? Reading the article, sheesh, what's next, checking for duplicates before posting?

    --

    Sigs for Nerds. Sigs that Matter.
  6. I'll second that... by American+AC+in+Paris · · Score: 5, Funny
    ...I swear, if I see one more SoBig.X, CodeAqua, or MacNimda entry in my logs, I'm gonna snap.

    It's about time Apple did something about the POS security in OS X!

    --

    Obliteracy: Words with explosions

  7. And this guy is an editor? by HarveyBirdman · · Score: 5, Funny
    "How cocky are you feeling now, Mac elite? Hmm. Suddenly it's gotten pretty quiet around here."

    That's the sound of no one caring what you think, Lance.

    A series of what ifs, followed by the reaction of imaginary mac fields that exist only in Lance's head.

    And the whole "Macs don't suffer viruses because there's so few" myth was dead and buried long ago. Sheesh. Who cares? If Lance is happy with his bloated, cheerless, abominable bugfest of an OS, more power to him.

    And now, Obligatory Car Analogy: it's like Lance is sitting by the side of the road with his Chevy Vega that just flew to pieces for the fifth time that week, and he's pointing at the Lexus that just sped by because it had a defective radio knob that just fell off.

    --
    --- Ban humanity.
    1. Re:And this guy is an editor? by cgenman · · Score: 2, Funny

      It's amazing that he could be so out of touch that he would think that Mac elitists would actually be quiet. That's like thinking fish will fly, dogs will play poker, and windows vulnerabilities will be patched before attacks are in the wild.

  8. Re:what a dork by Anonymous Coward · · Score: 1, Funny

    unless the patch from microsoft doesn't work again.

  9. your Mac by Tumbleweed · · Score: 2, Funny

    > My Mac never has never told anyone ILOVEYOU.

    Poor thing. Perhaps you could get it another Mac to play with?

  10. Re:it's quiet because you're such a pussy.... by Hayzeus · · Score: 2, Funny

    Yes -- this would have been nearly impossible to guess..

  11. Screw it! by BeProf · · Score: 2, Funny

    Holy crap! You mean that if some ass-taco gets physical access to my network and can set up a rogue DHCP server he'll be able to get root access to my Mac (unless of course I took the 5 minutes to read the technote article and disable all my unused directory services)?

    Dammit! I'm gonna' go back to my OpenVMS box!

    If what this guy really wants is absolute security right out of the box, I guess he'll have to do the same.

    --
    You are attempting to read sigs. Cancel or Allow?
  12. Re:it's quiet because you're such a pussy.... by nathanh · · Score: 5, Funny

    Lance_Ulanoff@ziffdavis.com



    An e-mail address! Quick, send him an Outlook virus!

  13. He's Right! by teamhasnoi · · Score: 4, Funny
    It did get really quiet around there. I'm sure that everyone was gathered around to see if he really was going to click 'Submit'.

    Overheard whispers: "He's not going do it" "Yes, he is - you didn't see last months rant against one button mice?" "I dare you" "I bet his ethernet cables not plugged in" "It's been a pleasure working with you" "I knew he was an idiot, but nobody's that dumb" "Didn't his last article get taken out by the Melissa virus?"

  14. Insecure? by vitaflo · · Score: 5, Funny

    How cocky are you feeling now, Mac elite? Hmm. Suddenly it's gotten pretty quiet around here.

    I think you can add Lance Ulanoff to the list of things that are "insecure".

  15. Quick! by cgenman · · Score: 5, Funny

    Quick, send him an Outlook virus!

    I think I already did.

  16. Re:Mac isn't more secure, BUT: by b-baggins · · Score: 4, Funny

    No, he's doing the reasonable Mac observance that 50 versions of a greeting card program does not count.

    --
    You can tell a great deal about the character of a man by observing those who hate him.
  17. Re:Mac isn't more secure, BUT: by tsmccaff · · Score: 3, Funny

    thanks for the supporting evidence. very convincing. I SAY the Doublemint Gum twins rule the world as part of a secret cabal that includes Cobra Commander and Billie Holiday.

    --
    "the starry sky above and the moral law within"-Kant
  18. Have at it: by Anonymous Coward · · Score: 1, Funny

    192.168.0.10

  19. Re:Good points... by libra-dragon · · Score: 5, Funny
    Really this Mac exploit can be blamed on Microsoft.

    Because of the hundreds of holes in Windows some attacker can compromise a Windows server in the local subnet and then use it to spoof the DHCP servers to gain access to the Mac.

  20. Mac elite! by iamanatom · · Score: 5, Funny

    "How cocky are you feeling now, Mac elite?"....Aha! At least they are now recognising that we are an elite! ;-)

    --
    "This is crazy, you realise we could all go to jail for this?" - my manager, somewhere I used to work.
  21. Computer magazine "journalism" by mnot · · Score: 2, Funny

    1. Notice flagging readership, reduced ad revenue
    2. Write audacious, insupportable story that will anger people
    3. Submit to Slashdot
    4. Profit!

  22. Re:sad... by aWalrus · · Score: 5, Funny

    I'm using Windows...I don't feel like I have to defend myself...I'm not being attacked.

    Umm... you are aware that this is Slashdot, right?

    --
    Overcaffeinated. Angry geeks.
  23. Re:It's all about the scope... by jceaser · · Score: 2, Funny

    You know I once found a user on my WI-FI hub. I was all exited untill I found out he was so rude as to not leave any shares open with mp3s in them. I disconected him after running a dict. atack. No share, good password, your off my net buddy.

  24. Re:sad... by AntiOrganic · · Score: 4, Funny

    No. The site appears to be Slashdot, and the URL above seems to point to slashdot.org, but this is really a hoax taking advantage of an Internet Explorer exploit allowing, through JavaScript, the location in the address bar to be spoofed.

  25. Same bug in most Windows versions by terminal.dk · · Score: 4, Funny

    A bug in Windows 3.1 and forward allows a malicious attacker with access to the local network to hijack your machine and run any program he wants on the users machine.

    The attack goes like this:
    He sets up a DHCP server
    Feeeds computers booting with fake IPs for DNS and WINS servers.
    Redirects the NETLOGON server shares to a share under his control. Makes sure the login script runs his software.

    It is thus recommended that all Windows users, especially coorporate users, disables DHCP in the TCP/IP settings, until Microsoft starts shippign support for DHCPS - which is DHCP over SSL/TLS.

    It is important to do this, since if only some users does it, it might be difficult for thew machines to connect to each other.

  26. My Favorite Part by Aqua_Geek · · Score: 5, Funny

    But even back then, I had this gnawing suspicion that 18-month software development cycles could somehow hurt the platform. Before the tide really turned, however, I switched to PCs. I had joined PC Magazine, and the editorial staff used them.

    That's the Mac's problem! He has nailed it! Apple develops new and vastly improved features (in the range of 150+) - basically an overhaul of the operating system - every 18 months. Rather than this whole OS X thing, they should have just created a new theme for OS 9 (oooh, maybe with Green highlights) and changed its name every so often...

    If you can't taste the sarcasm, just smile and nod...

    --
    Disclaimer: This comment was generated by a Flock of Trained Microsoft Programmers for Aqua_Geek.
  27. Re:Good points... by nite_warrior · · Score: 3, Funny

    in fact, it is easier because you can always use your MS Virus Creation Tool (R) and from there click on the check boxes and select the vulnerability you want to exploit.

  28. This should be taken seriously by Anonymous Coward · · Score: 1, Funny

    When you think about it, there are probably hundreds of Macs connected to the Internet these days. Imagine the mess if all of them were compromised at once.

  29. Mac news from PC Mag? by madcompnerd · · Score: 2, Funny

    Why would one read about Macintosh, or for that matter any, news from PC Magazine. I don't consider it a valid source. Now I will go read it, maybe he cites a valid source.

  30. Huge security risk by zpok · · Score: 2, Funny

    We all know the mac has a huge security risk. It's a major issue. From now on OS X is as virus prone as XP. And Apple's DRM has been Hacked. People are pirating the iTMS as we speak.

    And in other news, SCO really was attacked from outside by an evil DDOS. Those Open Source Commy Bastards.

    Believe everything you read folks. ;-)

    --
    I think, therefore I am...I think.
  31. Image to take home. by twitter · · Score: 2, Funny
    Imagine you are walking down Burbon Street in New Orleans. The usual carnival of whores, drunks and normal bon-vivants surrounds you. It is bright and festive this cool and clear night.

    Motion in the gloom of a side street catches your eye. You turn to see what it is. There, in the vomit and urine stench of a gutter, you see a form rising. You see the whites of someone'e eyes. The stench and filth turn your stomach but you stare transfixed. You think of calling an ambulance for the poor trashed bastard. There, it's a man! It's Bill Gates!

    He points a finger and thunders with all of his might, "You are no better than I am!"

    --

    Friends don't help friends install M$ junk.

  32. Re:Total Moron by kjg · · Score: 2, Funny

    You can't ignore him. The Windows fanatics are all behind him! Both of them!

    --
    Kevin Gilhooly
    Migrant Programmer
  33. Re:Good points... by Dr_Cornholio · · Score: 2, Funny

    Well, I don't know what you've done to your system, but all I have to do is go to the 'go' menu and select 'go to folder' and then type in /etc. the GUI is protected only as far as the user's knowledge of the system.

    I can also easily change the owner of said folder by clicking onto column view and then viewing the info of /etc and changing the owner from system to me. The admin password to enable this is MY password, not root's.

    As I said earlier, the system is protected as far as the user's knowledge of the system. From the looks of things, your system is protected just fine. :P

    --
    In Soviet Russia, the monkey spanks you!
  34. Re:MOD THIS DOWN by JamieF · · Score: 3, Funny

    >Apple's response was that it doesn't happen in Panther, so just upgrade.

    Those BASTARDS! How can you get any work done in Jaguar without this critical feature. I just can't believe that somebody inside Apple decided not to backport this.

    *cough*

    Jesus Christ.

    Please also keep us posted on the progress of the bug whereby a 20" iMac cooled to nearly absolute zero incorrectly reports a temperature value of MAXINT. That one's really slowing me down at work and if they don't fix it soon I'm gonna have no choice but to switch back to Windows.

  35. Re:sad... by moncyb · · Score: 4, Funny

    If you were a Linux user, this type of thing would be an old hat who was beaten to death.

    I remember in the days of Win98. With every single Linux security story, the WinNuts would cry: "See! See! Linux is just as insecure as Windows!" They would even do this on stories about local compromises, yet Win98 has no local security whatsoever. No permissions. Nothing. It doesn't even keep track of which users own a file. And they'd still insist it overshadows all the Windows holes, which were in effect root level remote compromises.

    I especially love when they'd play numbers games. They'd say Linux has twice as many vulnerabilities as Windows this month/year, yet if one would actually look at the reports, one would see the Linux ones weren't nearly as serious. Nearly all Windows ones would say something like "one packet from the internet will cause arbitrary code execution with admin rights." Yet the Linux "vulnerablilties" would be mostly obscure crap from packages almost no one uses. "Video game Boogerman3D will allow any user to change the high score list." Oh no! Some user might give himself a billion point high score...what do I do???

    Welcome to the real world. Where a bunch of lusers try to point out the "inferiority" of your OS by claiming your relatively obscure and unimportant security flaws are much worse than glaring and suicidal ones.

  36. Headline by pguerra1 · · Score: 2, Funny

    Apple Magazine: PCs insecure

    --

    "And I for one welcome our new insect overlords."