All the latest UK technology news, reviews and analysis

Sophos warns of Mac OS X backdoor Trojan

by Dave Neal

28 Feb 2011

Comment: 1

  • Tweet this

Security firm Sophos has uncovered a backdoor Trojan aimed at the Mac OS X operating system. The hack is unfinished and only in beta, but could threaten an operating system that many users believe to be inherently more secure than its rivals.

Chester Wisniewski, senior security advisor at Sophos Canada, said that the malware may suggest a new trend among "underground hackers" which seeks to capitalise on the increasing popularity of Mac computers.

"As even the malware itself admits, it is not yet finished, but it could be indicative of more underground programmers taking note of Apple's increasing market share," he explained in a blog post.

"SophosLabs analysed the sample we received and determined that it is a variant of a well-known Remote Access Trojan for Windows known as darkComet. The author refers to it as the 'BlackHole RAT.' Sophos refers to it as OSX/MusMinim-A, or 'MusMinim' for short."

Wisniewski said that the attack is basic, and could be more of a nuisance than a catastrophe depending on how it is tackled.

The Trojan places text files on the desktop, sends URLs to the client to open a web site and uses pop-ups to try to phish users.

The malware also requests a reboot, and presents the following message: "I am a Trojan Horse, so I have infected your Mac Computer. I know, most people think Macs can't be infected, but look, you ARE Infected! I have full control over your Computer and I can do everything I want, and you can do nothing to prevent it."

Wisniewski said that the best protection is to stay on top of security administration and patching. He added that the Trojan could be distributed through pirated software or torrent sites.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

38%

0%

10%

52%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Java Developer, Algo Trading, FX, Trading Strategies

Java Deveoper/Programmer/Software Engineer, Algo Trading...

Lead and Senior Developers Wanted

Austin Fraser has the pleasure of appointing a number...

Java Developer - Great move up for a Junior Developer

Austin Fraser has the pleasure of appointing a Java Developer...

Senior J2EE Application Developer

Austin Fraser has the pleasure of appointing a Senior...

To send to more than one email address, simply separate each address with a comma.