MacDailyNews - Where Mac news comes first

 MacDailyNews Poll

Deal of the Day

5 Day Most Commented

Opinion Archive

Current Headlines

Latest Joy of Tech

  • Latest Joy of Tech!

MacNN

AppleInsider

Macworld UK

TUAW

MacRumors

Yahoo! Finance AAPL

iTunes Top 10 Albums

Mac OS X Downloads

Sat, Nov 21, 2009 - 05:38 PM EST  —  AAPL: 199.92 (-0.59, -0.29%)  |  NASDAQ: 2146.04 (-10.78, -0.5%)

Apple Mac less secure than Windows in 2007?
Wednesday, December 19, 2007 - 05:06 PM EST

Apple Online Store"During 2007, Apple has patched more than ten times the number of critical vulnerabilities in Mac OS X compared to the number patched in Microsoft Windows," Tom Espiner reports for ZDNet UK. "George Ou, a writer for ZDNet Australia sister site ZDNet.com, analysed in-depth statistics from security research company Secunia as a basis for his research."

MacDailyNews Take: ROTFLOFAO, he called what Ou does "research!" Please see related articles:
• ZDNet’s George Ou Exposed as Ignorant Microsoft Shill - RoughlyDrafted
George Ou’s Greatest Apple Hits! - The Macalope
George Ou: When Gerbilling isn't fun enough - Artie MacStrawman's Apple Orchard
George Ou's Bad Idea: Comparing Apple Ads to Nazi Propaganda - Wired

Espiner continues, "He found that Apple's latest operating system, Mac OS X, faced more critical flaws than Windows XP and Vista combined... Ou made the comparison as an indicator of how many vulnerabilities might exist in 2008, rather than a comparison of the relative security of the operating systems."

"Some experts have said that counting vulnerabilities is not necessarily reliable as a measure of security," Espiner reports. "Tristan Nitot, president of Mozilla Europe, told ZDNet.co.uk this month that it was more important to take into account the time it takes to patch vulnerabilities."

Espiner reports, "The amount of exploit code available in the wild also has an impact on security. While there are thousands of pieces of code that seek to exploit Windows XP vulnerabilities, exploit code for Mac OS X is relatively rare."

Full article here.

MacDailyNews Take: In "honor" of George Ou, we're going to continue surfing the Internet unimpeded with our Mac OS X Firewall turned off for another six years.

Bookmark and Share

Always -- Free ground shipping with orders over $50 at the Apple Store.

Reader Feedback: = registered.
Unregistered users: Feedback from multiple usernames are subject to deletion. Off-topic and posts from suspected astroturfers will be removed.

Dec 19, 07 - 05:13 pm Comment from: TowerTone

Looks like he got shot by phasers on 180˚

Dec 19, 07 - 05:14 pm Comment from: spliceguys

That just means that M$ didn't patch all theirs, not that the mac was insecure because Apple did patch a bunch.. M$ is probably still trying to figure out HOW to patch them..

Dec 19, 07 - 05:16 pm Comment from: informed

And the "winner" of an american football game is determined by how long the defense is on the field.

Dec 19, 07 - 05:16 pm Comment from: Hey Ou!

Show us ANY actual users out in the wild that have ever been impacted by any of these so called vulnerabilities, and then we'll talk....

Dec 19, 07 - 05:21 pm Comment from: Morpheus

And my boat is really water tight, because I had to patch it 34 times last year.

Dec 19, 07 - 05:23 pm Comment from: gow

Apparently George Ou needs his brain patched.

Dec 19, 07 - 05:24 pm Comment from: Arnold Ziffel

It's Mr. Zero U to the 'rescue' of MS and Windows' apologists everywhere!

Dec 19, 07 - 05:24 pm Comment from: Buster

let him go back to Gerbilling....

Dec 19, 07 - 05:25 pm Comment from: cartoonasaurus

It's floating, isn't it? Your WINDOWS boat is UNDER WATER!

Dec 19, 07 - 05:28 pm Comment from: Keith

I'm wondering why no one is bringing up this question:

How many of the updates issued by Apple vs. M$ would allow a malicious attacker to take over the system?

Dec 19, 07 - 05:32 pm Comment from: Matrix3

Another conspiracy attempt / FUD from the M$ proxies ie: ZNET.

A key gauge would be what actual vulnerabilities are out in the wild and being exploited.

I have a feeling the actual OSX vulnerabilities being exploited is no where close to the quantity for XP and/or Vista.

Dec 19, 07 - 05:34 pm Comment from: Thanks MDN

I was beginning to worry that all these reports of security issues might be true.

I too will ignore them all along with the false alarms that Apple itself sends out in the form of some 'security updates' to the OS and various Apple apps.

Man, do I love the Mac!

Dec 19, 07 - 05:37 pm Comment from: bizlaw

I guess Ou's point is that he would rather have an operating system from a company which doesn't acknowledge or correct errors rather than a company which does updates and corrections?

I think it's rather amusing that people expect software to be perfect the first time it's written, every time a new feature is added, etc. Software is written by people, and people are aberrated and make mistakes. Plus, a company cannot possibly test for every possible combination of software, hardware and user interaction. Thus, Apple corrects mistakes, etc. by issuing patches. And far before ANY malicious attack can be made.

It's pretty remarkable how fast Apple had OS 10.5.1 prepared and released.

At least Apple doesn't bury its head in the software sand and pretend the problem doesn't exist.

Dec 19, 07 - 05:39 pm Comment from: ken1w

Vulnerability does not equal exploit. All exploits are not equal. Macs don't get turned into hackers' spambots. If there are so many security issues with Mac OS X, where are all the exploits? Oh, there aren't any, just Trojan Horse malware for the gullible and "proof of concept" stuff in the labs of security companies. Never mind...

Apple should be applauded for diligently fixing potential issues in a timely manner. The reason there have not been any meaningful exploits is because hackers can't do anything meaningful (worth their time and effort) with these so-called "critical vulnerabilities." The low-hanging fruit will always be Windows.

Dec 19, 07 - 05:39 pm Comment from: tony

The one thing I love about apple is that they continue to patch - update there OS's incrementally. I've only been a Mac user since panther and I can't believe how responsive they (apple) are.

Dec 19, 07 - 05:57 pm Comment from: LorD1776

It's great that they come out with the updates as often as they do, but I still do a backup before I install. I usually just wait till the weekend since I do my weekly Super Duper backup then. You never know when one of these things can cause problems. Better safe than sorry.

Dec 19, 07 - 05:59 pm Comment from: qka

When will these idiots learn that vulnerabilities are not exploits?

A vulnerability is a potential problem. When someone takes advantage of a vulnerability, then it becomes an exploit.

I sometimes leave my house unlocked when I go out. That's a vulnerability. I have two German Shepherd Dogs inside the house. there have never been any exploits.

Dec 19, 07 - 06:00 pm Comment from: AppleEasy.com

The difference between Apple and Microsoft here is, Apple actually fix majority of the holes before someone exploits them, and Microsoft waits until 50% of windows user have some sort of virus. Even then they still leave it up to the anti-virus programs.

Dec 19, 07 - 06:01 pm Comment from: iDon't

My Macs are very secure, self aware, and have high moral values.

My PCs have self esteem issues and criminal tendencies.

Dec 19, 07 - 06:01 pm Comment from: Realist

Don't believe the hype. The shepherd has pulled the wool over your eyes for too long.

This article tells the truth.

MDN is blind to the truth.

Dec 19, 07 - 06:05 pm Comment from: tango

The moron needs a logic patch!

Dec 19, 07 - 06:18 pm Comment from: Tommyr

ROTFLMAO! That guy HAS to be on heavy duty drugs! What a tool!

Dec 19, 07 - 06:25 pm Comment from: MacFhearghaile

The keyword is ZDnet, which is worse than even Cnet if thats possible. These guys are real scum suckers. their breath smells like farts.

Dec 19, 07 - 06:33 pm Comment from: Realist^

@ Realist

Perfect.

Dec 19, 07 - 06:34 pm Comment from: Truth

Realist = Pete

Dec 19, 07 - 06:36 pm Comment from: Tom

This BS stinks so bad even Ou couldn't put his name on it!

I addressed Microsoft's disgusting tack of redefining security via any measure other than attacks in the wild a while ago:

Microsoft: Building better security through statistics.

Dec 19, 07 - 06:37 pm Comment from: iamdj

His articles are more SNAPPY these days!

Dec 19, 07 - 06:38 pm Comment from: AlanAudio

Comparing security by counting vulnerabilities, but ignoring actual exploits makes as much sense as comparing smart phones by counting features, but ignoring whether people can satisfactorily use those features in the real world.

Dec 19, 07 - 06:41 pm Comment from: Archie

Amazing, new Mac user here, you all make up explainations to justify your beliefs that Apple can do no wrong.

sounds like religion, is this a cult thing?

example:
A key gauge would be what actual vulnerabilities are out in the wild and being exploited.

why does this matter, I hack, I tell no one my exploits don't make virus either to have get out of control.

give me your ip address, I;ll get in your machine

SSH is open by default on Mac's, people make up easy to guess passwords. simple dictionary attack I pwned you.

Dec 19, 07 - 07:02 pm Comment from: Jubei

"In "honor" of George Ou, we're going to continue surfing the Internet unimpeded with our Mac OS X Firewall turned off for another six years."

LOL... excellent. Lets email Ou that we're all going to do this.

Dec 19, 07 - 07:06 pm Comment from: Big Al

Idiots,

Microsoft pays security companies to look for and publicize security holes in Mac OS X so the vulnerability patch count of Mac OS X vs Vista makes Vista somehow look better.

The truth is, with what few security holes there were in OS X already patched, OS X is very secure.

Vista, on the other hand, is full of secret, legacy code that is full of undiscovered vulnerabilities just waiting to be found and exploited.

Let's compare exploits or unpatched, unfound vulnerabilities. There's no way Vista wins that game.

Dec 19, 07 - 07:24 pm Comment from: matt

ya know, it's funny. i go to hardocp.com quite a bit, and they reported on this too - of course, they didn't actually think about it when they posted it, they just said something like "so much for most secure OS in the world!" - they have a lot of information and news that i enjoy reading but their anti-apple bias actually manages to be more irritating than the anti-MS bias here - mostly because at least the anti-MS stuff here has some basis in REALITY, instead of just in theory. MDN's take is awesome, and i'll be joining them in not worrying about my built-in firewall (four years of OS X for me and not one security/virus/malware issue the whole time).
as for hardocp: they can stfu and enjoy running ad-aware and spybot and AVG while i actually get some web surfing done!

Dec 19, 07 - 07:44 pm Comment from: Henri

>>we're going to continue surfing the Internet unimpeded with our Mac OS X Firewall turned off for another six years.<<

Not me. I'm having my firewall turned on. Also on my servers both Ubuntu Linux and FreeBSD the firewalls are always on..... Also my router has a built in firewall which is..... yes you guessed it: always on

Having a firewall and not using it is plain stupid....

Dec 19, 07 - 07:51 pm Comment from: iDon't

Archie the new Mac user,

Do you also want the keys to my house and car? Neither has an alarm system.

Dec 19, 07 - 07:56 pm Comment from: iWill

Archie the new Mac user,

Welcome <arms out and lips puckered> Yes, this is a cult. Did you get a tatto yet? What flavor Kool-Aid do you like? We'll talk later over a tofu lunch, OK?

Dec 19, 07 - 08:05 pm Comment from: Ampar

"give me your ip address, I;ll get in your machine"

I hope you're better at terminal commands than spelling and grammar.

;-p

Dec 19, 07 - 08:08 pm Comment from: OK Archie

I'm game... you proclaim:

"SSH is open by default on Mac's, people make up easy to guess passwords. simple dictionary attack I pwned you."

Do your stuff, get into my machine, impress me

grin

Dec 19, 07 - 08:09 pm Comment from: Answer

"Do you also want the keys to my house and car? Neither has an alarm system."

No, just leave the doors unlocked for us, because that's the equivalent of going on the Internet without a firewall and anti-malware protection.

I know, in sleepy little MacTown where you live you don't get much crime, so the population feels safe and secure for now with the doors wide open, no alarm systems and the locks not working even if you did choose to close the doors.

Dec 19, 07 - 08:10 pm Comment from: Reclaimer

Twenty three years and no problems yet.

That's all I need to know.

Dec 19, 07 - 08:18 pm Comment from: clunker

we're going to continue surfing the Internet unimpeded with our Mac OS X Firewall turned off for another six years.

Do you also drive without seat belts because your car has a great safety rating?

Some risks aren't worth taking.

Dec 19, 07 - 08:23 pm Comment from: Ampar

"Do you also drive without seat belts because your car has a great safety rating?"

Only if I can light a bowl while straddling a six-pack and text messaging my Congressman.

Dec 19, 07 - 08:23 pm Comment from: Revelation

"Twenty three years and no problems yet. That's all I need to know."

I think that's what the Indians said before European disease came to their peaceful little world.

Dec 19, 07 - 08:25 pm Comment from: Ampar

Don't forget that one of those European diseases was compulsive gambling. Sweet irony.

Dec 19, 07 - 08:35 pm Comment from: dance dance Monkeyboy

George "Ou NO HE DIT'NT!!!!"

"activity"- that of which there is none in Mr. Ou's brain...

Dec 19, 07 - 09:19 pm Comment from: LorD1776

Ampar,
Is the compulsive gambling disease spread through bodily fluids?

Dec 19, 07 - 09:21 pm Comment from: Ampar

LorD1776: Odds are . . .

Dec 19, 07 - 09:39 pm Comment from: Drunk Cheney

I don't get the mentality of people that could have enjoyed the last 20+ years of relatively virus free existence with Apple's Macintosh but consciously chose not to and continue to do so.

Instead they insist on crying "the sky is falling" if there is a possible virus threat on the Mac. Meanwhile, they have had to put up with over 100,000 virus' on a Microsoft Windows PC - the endless supply of Windows malware And pathetic Anti-virus support that Microsoft has sold them. - I mean, Microsoft actually sold it instead of just including it as part of the OS. That in itself is worthy of a "WOW". How pathetic is that of Microsoft? Very!

Still, the Mac in comparison to the PC is completely virus free. Why wouldn't you want to be a part of that? I certainly enjoy that aspect of the Mac.

The Mac has a Long Long way to go to catch up to Windows in the virus world - and so far Windows has maintained a very "unhealthy lead". A lead Microsoft doesn't appear to be able to relinquish.

Security through obscurity? - Whatever - that's perfectly fine with me whether it's true or not. It's more secure. I'll take it. You would be a fool not to.

Dec 19, 07 - 09:51 pm Comment from: Unfound

>>Let's compare exploits or unpatched, unfound vulnerabilities. There's no way Vista wins that game.

That is illogical, Captain. You cannot compare unfound vulnerabilities as you have nothing to compare.

Dec 19, 07 - 10:08 pm Comment from: Yes, Mac is SECURE!

Apple CHOOSES to stay on top of things

RATHER then be moved over by hacking hell raisers PAID by MacroSloth and it's team of Anti-virus sellers.

See Apple care about it's status and will continue.
MacroSloth sits and basks it's glory dreaming up useless plots to invade Apple.

They laugh in fear knowing soon their time will end shortly.

THEY are insecure over there at Macrosloth stink.

jay and my pointed plunger

Dec 19, 07 - 10:14 pm Comment from: Knows All

All this back and forth mud-slinging is actually part of Steve's evil plan for global domination.

He is siccing the journalists and the die-hard fans on each other. Once the swirling vortex of cynical-obsessive deconstructionism vs. rabid loyalty reaches critical mass, the two will react and go supernova, destroying both groups and clearing the way for total world control.

Trust me

Dec 19, 07 - 10:18 pm Comment from: Archie

TRY me

I LOVE to PROVE you wrong.

AND ALL OF US HERE will LAUGH your useless hacking abilities.

COME ON


HERE


99.235.255.182

GET IN WRITE me a TEXT MESSAGE using my TEXTEDIT

and a huge smilie


Ron

Reader feedback page 1 of 2 pages:  1 2 >

Always -- Free ground shipping with orders over $50 at the Apple Store.

Add Your Feedback:

Register or Login

Name:

Email: (optional)

Emoticons | Allowed HTML Tags

Remember my info   Notify me of follow-up comments?

Please enter the "MDN Magic Word" you see in the image below: