Flashback Malware Continues to Plague Macs

21.04.2012
Kaspersky and Symantec both reported of Macs infected with the Flashback malware this past week. However, Dr. Web--the source that discovered the threat in the first place--claims the number of compromised systems is , and may even be growing.

Apple responded to the malware attack with a patched version of Java, and a subsequent update that removes the Flashback malware. Apple also implemented a process to if its not actively used--a brilliant way of reducing the exposure to attack by following established security best practice and turning off or removing services and tools that aren't necessary.

Following the moves by Apple, there have been reports that the number of systems infected with Flashback malware has dropped to 140,000, or even as low as 30,000. However, Dr. Web claims the number is , and that unique evasion techniques in the malware, combined with flaws in the methodology of the security vendors, is yielding false data.

Symantec has to reflect the fact that its data may be inaccurate. Symantec states that its most recent information places the number around 185,000, but adds that a rival sinkhole seems to be skewing the numbers because it is acting like more of a blackhole and preventing others from gathering that data.

Regardless, the Flashback Trojan--and the botnet created in its wake--has been a wake up call for Mac users and for Apple. The Mac culture has been largely ignored by attackers, and that has fostered a that actually makes Mac users easier prey in some respects.

Perhaps the belief that the platform is just inherently secure is a contributing factor to why the Flashback malware seems to be continuing to thrive. The threat is known. Security vendors have tools to detect and block it. Apple has patched the flaw, and released a tool to eradicate the infection.