Free Republic
Browse · Search
General/Chat
Topics · Post Article


1 posted on 07/23/2008 8:56:26 PM PDT by Swordmaker
[ Post Reply | Private Reply | View Replies ]


To: 1234; 50mm; 6SJ7; Abundy; Action-America; acoulterfan; aristotleman; af_vet_rr; Aggie Mama; ...
MAc malware FUD article from the Houston Chronicle—PING!

It's the fault all of those "security-clueless" Windows to Mac switchers...


Mac FUD Ping!

If you want on or off the Mac Ping List, Freepmail me.

2 posted on 07/23/2008 9:03:17 PM PDT by Swordmaker (Remember, the proper pronunciation of IE is "AAAAIIIIIEEEEEEE!)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker; ShadowAce
In other words, these users' bad computing habits are a major cause of their own woes.

Ay yi yi. Tech ping!

3 posted on 07/23/2008 9:04:43 PM PDT by rabscuttle385 ("When you can't make them see the light, make them feel the heat." Ronald Reagan)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: All
The "OSX/Hovdy-A Trojan" referred to in the article has never been seen in the wild. In fact, it is not even a proof-of-concept malware.

As reported here on FR, Hovdy-A was merely a discussion in a hackers forum about how malware writers MIGHT exploit a newly found vulnerability in OSX. They postulated that it might be included in an Applescript that someone might download... another suggested that it be put into an Application—he suggested a Poker game. Some even went so far as to write some sample scripts... none of which were actually workable.

The list of things that Hovdy-A "does":

was merely speculation offered by various comments on the thread about the ARDAgent vulnerability. The fact is that it does NONE of those things.

The last comment in the Sophos listing for OSX.Hovdy-A, "OSX/Hovdy-A will also attempt to use the ARDAgent vulnerability to obtain root access," is particularly funny—it is ONLY through exploiting the ARDAgent;s permission to run as ROOT would it be able do ANY of the preceding list items!

If this "trojan" could do all of what was listed, it would have garnered a far higher threat rating than "slightly-higher-than-low."

The vulnerability can be negated by simply moving ARDAgent to another directory, renaming ARDAgent, changing the permissions of ARDAgent, or merely running ARDAgent for yourself.

4 posted on 07/23/2008 9:35:13 PM PDT by Swordmaker (Remember, the proper pronunciation of IE is "AAAAIIIIIEEEEEEE!)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker
I picked up some kind of persistent pop up on my 6 month old iMac from a eMail link to a you tube video yesterday and I had to do a force quit of my Camino browser. I should have written down what it said but it claimed it was a anti adware for windows XP and I don't have MSFT on my box.

The wording was poor grammar similar to the “All your bases are belong to us”

5 posted on 07/23/2008 9:46:25 PM PDT by tubebender (Why does a round pizza come in a square box?)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: rdb3; Calvinist_Dark_Lord; GodGunsandGuts; CyberCowboy777; Salo; Bobsat; JosephW; ...

8 posted on 07/24/2008 5:26:15 AM PDT by ShadowAce (Linux -- The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 1 | View Replies ]

Free Republic
Browse · Search
General/Chat
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson