Page 1 of 1

Mac Trojan Vulnerability on OSX 10.4 & 10.5

Posted: Thu Jun 26, 2008 3:38 pm
by skier
The Macintosh platform is again under attack by malicious code writers. This time, it's a Trojan horse that could compromise machines running Mac OS X 10.4 or 10.5.

Antivirus firm SecureMac claims to have discovered multiple variants of a Trojan horse being distributed from a hacker Web site. The site hosts a discussion on distributing the Trojan horse through iChat and Limewire.

The Trojan, distributed as either a compiled AppleScript called ASthtv05 or as an application bundle called AStht_v06, exploits a recently discovered vulnerability with the Apple Remote Desktop agent. The ARD allows the Trojan to run as root.

According to SecureMac, the Trojan runs hidden on a Mac and allows a malicious user complete remote access. The Trojan can transmit system and user passwords, and avoid detection by opening ports in the firewall and turning off system logging. The AppleScript version, SecureMac reported, can also log keystrokes, take pictures with the built-in Apple iSight camera, take screenshots, and turn on file sharing.
more info, how to protect(what everyone already knows of course), etc.

Re: Mac Trojan Vulnerability on OSX 10.4 & 10.5

Posted: Thu Jun 26, 2008 4:52 pm
by DMB2000uk
Hmm, maybe mac's do need an AV software after all 8-[

Dan

Re: Mac Trojan Vulnerability on OSX 10.4 & 10.5

Posted: Thu Jun 26, 2008 6:10 pm
by Alathald
Still awaiting a serious virus threat on Linux :finga:
Interesting read BTW [link]

Re: Mac Trojan Vulnerability on OSX 10.4 & 10.5

Posted: Thu Jun 26, 2008 6:27 pm
by kenc51
Your not reading the news, I posted this on Monday
http://www.legitreviews.com/news/4929/

Re: Mac Trojan Vulnerability on OSX 10.4 & 10.5

Posted: Thu Jun 26, 2008 7:06 pm
by skier
kenc51 wrote:Your not reading the news, I posted this on Monday
http://www.legitreviews.com/news/4929/
'doh i thought it was a different one :x

owell, gettin some discussion outta it