????讓我試著以問答的形式解釋此事。 ????問:互聯網上存在Mac OS X的病毒嗎? ????從技術上講并不存在。就我目前所知,人們并未在互聯網上發現針對Mac OS X的病毒。但你必須知道,互聯網上仍有不少針對Mac系統的惡意軟件。 ????問:比方說什么? ????目前最引人關注的是一款名叫“MAC防御者”( MAC Defender)的假冒殺毒軟件,運行Safari瀏覽器的Mac OS X用戶可能會碰到它。 ????問: “MAC防御者”會造成哪些危害? ????本周一,計算機安全網站Intego發布的一份備忘錄指出, 1)“MAC防御者”會運行一個假的帶有病毒掃描動畫的窗口,并提示你的電腦中毒了;2) 然后它會運行一個真正的Mac安裝程序,并要求你輸入管理員密碼;3)一旦安裝程序,你的電腦就會表現得像真正中了病毒,會不停打開大堆令人生厭的網站,其它方面表現也會不正常;4)“MAC防御者”會向你提供1年、2年和終生防毒三個選項;5)如果你選擇購買,它就會盜走你的信用卡賬號。 ????問:萬眾期待的Mac大災難到來了? ????并非如此,不過一些人已經開始銷售一種1000美元的惡意軟件工具包,這可能會掀起新一輪針對蘋果(Apple)電腦的惡意軟件進攻大潮。 ????問:什么是惡意軟件工具包? ????這是一種一鍵生成式軟件,很多有組織的網絡犯罪團伙一直在使用它制造針對微軟(Microsoft)Windows系統的惡意軟件。通過這種傻瓜工具,一個略懂編程技術的罪犯就能入侵上百萬臺電腦。 |
????Let's see if we can handle this one as a Q&A. ????Q: Is there a Mac OS X virus loose on the Internet? ????Technically, no. As far as I know, no Mac OS X virus has ever been detected in the wild. But there are other kinds of Mac malware out there that you should know about. ????Q: Like what? ????The immediate concern, ironically, is a bogus antivirus program called "MAC Defender" that targets Mac OS X users running Safari. ????Q: What does MAC Defender do? ????According to a memo released Monday by the computer security site Intego: 1) It runs a fake Windows virus scan animation and announces that your computer is infected. 2) It runs a real Mac installation program and asks for your administrator password. 3) Once installed, it makes your computer act like it really is infected, opening offensive websites and generally misbehaving. 4) It offers you 1-year, 2-year or lifetime protection. 5) If you buy the protection, it steals your credit card number. ????Q: Is this the start of the long-awaited Macpocalypse? ????No, but someone has started selling a $1,000 crimekit that could produce a new wave of malware targeting Apple (AAPL) computers. ????Q: What's a malware crimekit? ????It's a fill-in-the-blanks program of the kind organized cybercrime gangs have been using for years to generate Microsoft (MSFT) Windows malware. With a do-it-yourself toolkit, a criminal with limited programming skills can infect millions of computers. |
????問:這種新的Mac惡意軟件工具包是什么樣?它會造成哪些危害? ????本周一,丹麥安全公司CSIS發布警告稱,這是一種名為“Weyland-Yutani BOT”的Windows程序,能夠在Mac平臺的Firefox瀏覽器上進行“網頁注入”和“表格竊取”。(據稱Safari和Chrome版本正在開發中,而Linux和iPad平臺的開發也正在進行。)網頁注入能在被信任的網站上添加新的腳本語言,而表格竊取能盜竊毫無戒心的用戶輸入的密碼和信用卡賬號。 ????問:那這意味著現在Mac同Windows PC一樣危險了? ????絕不是。去年秋天,Sophos實驗室的計算機安全團隊報告稱,他們每周能發現一到兩次針對Mac的攻擊,與之相比,每天有成千上萬起針對Windows PC的攻擊。更何況,這兩款最新的Mac惡意軟件并沒有什么大不了的。Intego將“MAC防御者”的危險程度定義為“極低”,而CSIS表示,目前還沒有發現Weyland-Yutani BOT帶來的威脅。 ????問:Mac用戶需要安裝殺毒軟件嗎? ????這就看你(或是你的IT管理員)怎么選擇了。這種情況可能會改變,但就目前來看,我認為沒必要安裝,因為他們可能反而帶來很多麻煩——看看“MAC防御者”這樣的程序能夠造成多大的危害你就知道了。 |
????Q: What's this new Mac crimekit, and what does it do? ????According to an alert published Monday by the Danish security firm CSIS, it's a Windows program called "Weyland-Yutani BOT" that supports "Web injects" and "form grabbing" on Firefox for the Mac. (Safari and Chrome reportedly in the works, as well as Linux and iPad versions.) Web injects can put new language into trusted websites and form grabbers can capture passwords and credit numbers entered by unsuspecting users. (Video of the toolkit in action below.) ????Q: So are Macs now as dangerous as Windows PCs? ????Not by a long shot. Last fall, the computer security team at Sophos Labs reported that they were seeing one or two attacks on Macs each week, compared with tens of thousands per day against Windows PCs. Moreover, the two newest Mac malware threats haven't really begun in earnest. Intego describes MAC Defender as "rare," and according to CSIS, Weyland-Yutani BOT is still flying under the radar. ????Q: Should Mac users install anti-virus software? ????That's your (or your IT administrator's) call. This could change, but I've found anti-virus programs for the Mac to be more trouble than they're worth -- witness the havoc a program like MAC Defender can cause. |
????問:Mac用戶還能采取哪些保護措施? ????不要下載程序,除非它們來自可信任網站,例如蘋果應用程序商店。除非你完全信任某個網站,否則不要按照其要求輸入你的計算機密碼、社會保障號碼或是信用卡信息。還有一個預防措施,那就是不要在Safari的“選項/一般設置”里勾選“下載后打開‘安全’文件”。 ????譯者:項航 |
????Q: What else can Mac users do to protect themselves? ????Don't download programs unless they come from trusted sources, like an Apple App Store. Unless you have absolute confidence in the site that is asking for it, never give up your computer password, your social security number or your credit card information. And as an extra precaution, uncheck "Open 'safe' files after downloading" in Safari Preferences/General. |
相關稿件
最新文章