© 2024
NPR for Northern Colorado
Play Live Radio
Next Up:
0:00
0:00
0:00 0:00
Available On Air Stations

Security Company Says About 600,000 Macs Infected With Trojan Virus

A map released by Dr. Web shows where the anti-virus software company found infected Macs.
Dr. Web
A map released by Dr. Web shows where the anti-virus software company found infected Macs.

A Russian computer security firm says it has discovered that about 600,000 Apple computers have been infected with a "Flashback Trojan" virus.

Now, before we move on, you should know that the company making the announcement is Dr. Web, which sells anti-virus software that will protect a computer against that kind of virus. It's also important to note that many of the parties weighing in are part of a security community that makes money off selling anti-virus software.

With that in mind: Phillip Elmer-Dewitt at Fortune'sApple 2.0 blog reports that the virus exploits a JavaScript vulnerability. Oracle released a patch in 2010 and after Apple got news that the virus was spreading, it released a fix in April.

In the grand scheme of things, this doesn't seem like a huge outbreak. But, as the security experts at Sophos point out, this is the second time in a year that Apple systems have been infected with malware.

Apple's operating systems are well known for not having many problems with viruses. But as Macs become more popular, it appears hackers are writing more viruses tailored for that operating system.

Chester Wisniewski, at the Sophos blog, warns:

"First and foremost Mac users need to be sure they have installed the latest security patches from Apple.

"Second, Mac users can no longer rely on simply updating their computers. Preventative protection is an essential defense mechanism to detect and thwart future attacks."

The virus — which gets into your computer if you visit an infected site — installs malware onto a computer and later sends information such as usernames and passwords to botnets. Dr. Web estimated that of 600,000 Macs infected, 57 percent were in the United States.

We've contacted Apple for a response, but we have not heard back. We'll update if we get one.

Also, Gizmodo has put together an easy step-by-step tutorial on how to check if your computer is infected.

Copyright 2020 NPR. To see more, visit https://www.npr.org.

Eyder Peralta
Eyder Peralta is NPR's East Africa correspondent based in Nairobi, Kenya.
Related Content
  • The infected computers are at Nevada's Creech Air Force Base, where operators control military drones flying over Afghanistan and other areas. So far, at least, the virus has neither hindered remote control of the drones nor funneled classified information elsewhere.
  • The Stuxnet computer worm successfully damaged centrifuges at a nuclear facility in Iran. Now, officials responsible for defending U.S. infrastructure fear that Stuxnet may have provided a blueprint for adversaries who may want to sabotage industrial operations in this country.
  • At issue is whether the nation faces the prospect of cyberwar and needs to prepare for it. The Pentagon says yes. Howard Schmidt, the White House coordinator for cybersecurity, sees such talk as "hype" and rejects the "cyberwar" term.
  • For years, the United States has been trying to stop Iran's nuclear program and change what it says is Iran's bad behavior in the Middle East and beyond. While the U.S. has had little success with economic sanctions and military threats, it has made headway with cyberattacks and other covert activities.