Macs not safe from viruses, says Sophos founder

And Windows can be as secure as Linux...

By Munir Kotadia, 8 June 2007 08:47

NEWS

The co-founder of antivirus company Sophos said the Mac is not a virus-free platform. He also believes Windows can be as secure as Linux - if it is configured correctly.

Speaking in an interview with silicon.com sister site ZDNet Australia, Dr Jan Hruska, who co-founded Sophos and was one of the first ever PC antivirus experts, said viruses on the Mac are here and now.

He said: "They are available and they are moving around - it is not as though the Mac is in some miraculous way a virus-free environment.

"The fact that most people do use PCs means you certainly do hear more about those attacks. It gives a false impression that somehow Apple Macs are all virus free."

Got two seconds?

Make your voice heard - take our latest poll.

Hruska's comments come just weeks after an OpenOffice macro-virus, which is capable of infecting Mac OS, Linux and Windows, was discovered. On its website, rival antivirus company Symantec said the virus is being distributed and OpenOffice users should "be cautious when handling OpenOffice files from unknown sources".

According to Hruska, there is no reason why Windows XP cannot be made as secure as Linux, if the security systems within the OS are used correctly. "It is important to realise that there is no magic in Linux from a virus point of view. It is really the question of how that security is deployed," he said.

Hruska explained that Windows and Linux have been used for different purposes - which has affected their security record: "On Microsoft operating systems, which were traditionally used on the endpoint, everybody ran as an administrator, which meant that if the operating system has security built in, it is simply not used.

"Linux came from the server world and in those deployments there was a great deal of effort put in separating users and making sure users do not run as administrator. It is really from the point of view of usage that security on Linux is probably used more than security on single user operating systems like XP and Vista."

James Turner, industry analyst at IBRS, backed up those sentiments. "I think it's a spurious argument to say that any of the leading operating systems is more secure than any of the others. It almost doesn't matter what OS you're using - it all depends on the processes and people supporting the OS. And this is without even talking about the supporting network architecture around the OS," he said.

Turner added: "If you want to get nitty-gritty, then using the Common Criteria listings, Windows XP is certified to EAL4+ and Apple's OS X is only at EAL3."

Munir Kotadia writes for ZDNet Australia

Comments

There are 4 comments. Join the discussion

  1. 1. Sceptic

  2. 2. Realist

    In responce to sceptic - why is it that most mac users can not accept the fact that no operating system is 100% secure.

  3. 3. Sceptic

    In response to Realist's 'responce'...

    Ooops, did I just give myself up inadvertently?

    I don't think most of us reckon we are 100% immune from Bad Stuff™, but it sure feels like it when compared to other systems (a.k.a Windows)

    And the reality is, Realist, as my first post pointed out and no amount of 'it ain't fair, you'll get yours' bleating will change this. Now, if you care to lock yourself away and write some clever exploits, you might just be able to wipe that annoying smug grin off our collective faces!

  4. 4. Roy Judd

    Happens every time... though I’ve never seen a “Macs insecure” message from anyone who hasn’t had a visible vested interest. A couple of well chosen snippets though, and we’re back to the same old Yah Boo slanging; “Mac users are smug” versus “Windows? You stupid or what?”. I guess I must be stupid and smug; I have both systems on my desk. My preference lies with OS X - it’s intuitive and easy while powerful and robust. But then, there are some tasks I sail through on Windows XP that I’d really struggle with on my Mac.
    What I find so intensely irritating in this whole jaded debate is the hubris and mendacity exhibited by these so-called experts. Any assertion they make is coloured by the fact that a vulnerable operating system is their cash cow, and fear is their sharpest marketing aid. It is true that no OS is completely secure, but OS X currently offers the best inherent protection by far. That may change as the competing systems evolve but, in the meantime, I’ll continue to load my PC with divers firewalled, sandboxed anti-virus smirus... watch it slow to a crawl then, while mentally genuflecting toward the sacred Cupertino Infinite Loop, crack gratefully on on my PowerBook.

Post your comment

In order to post a comment you need to be registered and logged in.

Log in or create your silicon.com account below

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy.

Questions about membership? Find the answers in the Membership FAQ