Skip to main content

Trojan “Mac Defender” starts to chalk up victims

Although malware on Mac OS X is nowhere near as common as it is on Windows, Trojan horses—programs that purport to do something useful and instead do something nasty—aren’t exactly unknown. Some appear in the form of “free” installers for commercial applications distributed via file sharing networks, while others have been mostly proofs-of-concept that never made it out into the wild. However, a new-ish trojan dubbed “Mac Defender,” “Mac Protector,” or “Mac Security” seems to be garnering some victims, perhaps by tapping into Mac users’ unease that their operating system doesn’t have any explicit security software built in. To Windows users, Mac Defender’s tactics are all too familiar: the program pretends to scan your system for trouble, find all sorts of truly nasty things, then offers to fix them all—for a fee.

Mac Defender screenshot

In a blog post, ZDNet’s Ed Bott details trawling through Apple discussion forums looking for posts from people impacted by the trojan, and claims to have located hundreds of instances of Mac users being scared or outright duped by the software. He also details a conversation with an Apple support representative who confirmed the problem has been escalating since Mac Defender first appeared earlier this month.

Mac Defender’s success seems built on two factors. First, it looks (somewhat) like a Macintosh application: where few Mac users will be fooled by “scareware” that reports problems like “Virus found in C:\WINDOWS\system32\” or a similar location that makes no sense on the Mac, Mac Defender is tailored to Mac OS X and, to a non-technical user at least, looks legitimate. Second, the creators and/or distributors of Mac Defenders exercised some “Google fu” to put their malware in front of as many users as possible, creating bogus Web pages that gamed search engine rankings so the malware would sometimes be served up in response to everyday queries like “Mother’s Day.”

Although it’s been many (many) years since serious malware circulated for the Macintosh, there’s nothing about Mac OS X that makes it fundamentally more secure than other operating systems. Malware writers just don’t seem to bother targeting it, given the far greater number of Windows-based PCs on the planet. (Arguably, current versions of Mac OS X are less secure than current versions of Windows; Apple is expected to improve under-the-hood security technology more in the forthcoming Mac OS X 10.7 “Lion.”) However, if a program can trick users into giving your credit card information—or entering an administrator’s name and password—no operating system architecture in the world can save them.

Editors' Recommendations

Topics
Geoff Duncan
Former Digital Trends Contributor
Geoff Duncan writes, programs, edits, plays music, and delights in making software misbehave. He's probably the only member…
Yes, you can use both Mac and Windows — here are some tips to get started
The keyboard of the MacBook Pro 14-inch on a wood surface.

I'm not a typical Windows or Mac user. Where most people choose one operating system and stick with it, I use both Windows 11 and MacOS regularly, going back and forth daily depending on my workflow. And it's easier to do than you probably think.

I have a fast Windows 11 desktop with three 27-inch 4K displays, and I use that for all my research-intensive work that benefits from multiple monitors. But for writing simple copy, and for personal tasks, I use a MacBook Pro 14 M1 Pro simply because I like it so much. It's not MacOS that draws me to the machine, but its battery life, cool yet quick operation, excellent keyboard and touchpad, and awesome HDR display. To stay sane, I've worked out a few tricks and techniques to make the constant switching bearable. Here's what I've learned.
Adjust to your keyboards

Read more
This critical macOS flaw may leave your Mac defenseless
A close-up of a MacBook illuminated under neon lights.

Apple’s macOS operating system has such a strong reputation for security that many people mistakenly believe Macs simply aren’t affected by malware. Well, Microsoft has served up a reminder that that’s not true, as the company has identified a serious vulnerability that affects one of macOS’s most important lines of defense.

According to Bleeping Computer, the bug was first reported by Jonathan Bar Or, Microsoft’s principal security researcher, who named the flaw Achilles. It is now tracked as CVE-2022-42821.

Read more
Beware — even Mac open-source apps can contain malware
A pair of glasses rests on a desk in front of multiple computer monitors filled with code.

Installing apps on a Mac is generally considered to be safer than doing so on Windows and open-source software is usually benign but there are exceptions to both of these assumptions that can do untold damage to your privacy and security.

A recent discovery by Trend Micro provides a startling example of this risk. An open-source app designed to help Mac owners with iPhone and iPad app signing has been altered to include a nasty hack that steals your Apple Keychain data. The original app is called ResignTool and it’s available for free on the popular open-source site, GitHub. The app is six years old and both the code and the ready-to-run app can be downloaded from GitHub. That isn’t the problem.

Read more