MacDailyNews - Where Mac news comes first

 MacDailyNews Poll

5 Day Most Commented

Opinion Archive

Current Headlines

Latest Joy of Tech

  • Latest Joy of Tech!

MacNN

AppleInsider

Macworld UK

TUAW

MacRumors

Yahoo! Finance AAPL

iTunes Top 10 Albums

Mac OS X Downloads

Thu, Jan 08, 2009 - 12:11 PM EST  —  AAPL: 91.12 (+0.11, +0.12%)  |  NASDAQ: 1593.65 (-5.41, -0.34%)

Is Mac OS X really inherently more secure than Windows?
Tuesday, August 26, 2003 - 08:31 AM EST

Paul Thurrott writes for WinInformant.com, "After a summer of repeated virus and worm attacks, security experts and bored editors are turning once again to an interesting question: How many times does Microsoft software have to be attacked before we stop using it? The situation has become so bad that you can almost hear pundits from the Mac OS X, Linux, and Sun Microsystems side of the fence rubbing their hands in glee. Have we had enough? Is Windows inherently insecure? Of course not. We're targets because we represent 95 percent of the computing population. Attackers aren't going to attack Mac OS X users for an obvious reason: The OS has only a few users. If we all jumped ship to Linux, for example, that platform would then come under attack.

"'The Wall Street Journal' pundit Walt Mossberg got it all wrong when he wrote that 'switching to Macs can help users avoid hassle of viruses,' because if we all did that, the Macintosh would become the target. Apple hasn't invested in security the way Microsoft has, so the situation would be even worse. And nothing about switching to the Mac helps us with our current applications, hardware investments, and years of experience on Windows. No, what we really need is for the industry to rally around the notion of securing Windows instead of wasting time with silly talk. If you think that the Mac is safer, go for it. But don't complain when you can't run the applications or games you want, the hardware is too expensive, or the performance isn't quite what you're used to. Sure, the grass is often greener on the other side of the fence, but remember, that statement is true from the other side as well," Thurrott writes here.

Do you agree with Thurrot's simplistic concept that Mac OS X security is achieved solely though obscurity? Or do you think The Washington Posts Rob Pegoraro is closer to the mark when he writes, "Windows XP, by default, provides unrestricted, 'administrator' access to a computer. This sounds like a good thing but is not, because any program, worms and viruses included, also has unrestricted access. Yet administrator mode is the only realistic choice: XP Home's 'limited account,' the only other option, doesn't even let you adjust a PC's clock."

Pegoraro writes, "Mac OS X and Linux get this right: Users get broad rights, but critical system tasks require entering a password. If, for instance, a virus wants to install a "backdoor" for further intrusions, you'll have to authorize it. This fail-safe isn't immune to user gullibility and still allows the total loss or theft of your data, but it beats Windows' anything-goes approach."

"Because Microsoft blew off security concerns for so long, millions of PCs remain unpatched, ready for the next Windows-transmitted disease. Microsoft needs to do more than order up another round of 'Protect Your PC' ads," writes Pegoraro. "Here's a modest proposal: Microsoft should use some of its $49 billion hoard to mail an update CD to anybody who wants one. At $3 a pop (a liberal estimate), it could ship a disc to every human being on Earth -- and still have $30 billion in the bank." Full article here.

  • Social Web
  • E-mail






Always -- Free ground shipping with orders over $50 at the Apple Store.

Reader Feedback: ( = registered)

Aug 26, 03 - 09:06 am Comment from: Dave H

I'm laughing so hard I'm going to puke. This is someone who's fundamental belief system is being so seriously challenged, he's sticking his fingers in his ears and repeating "la la la" in a loud voice.

There is only one necessary program that is missing from the Mac, and that is a decent Exchange client.

Aug 26, 03 - 09:18 am Comment from: Jeff

The more I read from Thurrott, the more I realize he is either an idiot or in denial. He actually criticizes Microsoft quite frequently, but then claims its still better than everything else. I guess he's like other Windows supporters. I think they are all junkies. They know what they are doing is wrong, but they can't help it. They are addicted.

Our network here at work was hit hard by the viruses the last several days. Everyone was scared that their machine would get infected. Of course, me being the Linux Admin, I was not concerned at all about my servers. My desktop was running Linux and my iBook was right next to it. I wasn't worried at all. I was pissed that our network was slow, but at least I wasn't going down. Now they want to have a meeting to discuss how to prevent the viruses from infiltrating our network. I know what I'll be offering.

Aug 26, 03 - 09:21 am Comment from: Ben

Apparantly, from Thurrot's own website there are a lot of windows users who think he is full of BS; http://www.wininformant.com/Articles/Index.cfm?Action=Comments&ArticleID=39849 They really rip him to shreds.

Hmm could it be that more computer users are now understanding the phrase "you get what you pay for"?

Aug 26, 03 - 09:23 am Comment from: dan derrico

I got my company to start adding Macs by suggesting that we pepper the office with a few in case of a virus attack. Now those few Macs are gaining popularity within the office.

Aug 26, 03 - 09:28 am Comment from: Nate

Paul Thurrott states the virus / non-security situation like there's not really a problem.

My God, they say it like it's a point of pride. Like ooh, our donuts cause anal leakage.

Nuff said

Aug 26, 03 - 10:15 am Comment from: Atomic Bomb

Thurrott may not be a moron, but based on what he writes it would be hard to argue otherwise.

Aug 26, 03 - 10:18 am Comment from: Lance

Talk about sticking your head in the sand. Thurrott is just in total denial as are the majority of Windows users these past couple of weeks thru all of these attacks. Just let them believe whatever they like. They'll continue to have to deal with viruses and worms while the rest of us that know better will not. You can lead them to the water, but you can't make them drink it...

Aug 26, 03 - 10:20 am Comment from: rasmus

Paul Thurott is like the Iraqi Information Minister.
He will not believe Windows is a POS, even if Bill send him a nice hand written letter thanking him for his part in obtaining world domination through information theft.
Shortly thereafter Bill will release copies of PT's E-journal, obtained through the nice backdoors in PT's wonderful MS software, describing his latest breakdown due to stress from keeping up with MS updates.

Aug 26, 03 - 10:26 am Comment from: Tom Barta

These non-tech MSFT apologists seem to miss the obvious-- that most MSFT viruses are a problem because of Microsoft's sheer stupidity-- leaving ports open with "sobig" and allowing email attachments to auto-exec ("I love you", from a few years back). Virii occur on the Mac-- remember the OS 8.X autostart worm, but with much less frequency. the problem isn't hackers looking to make the widest possible impact; its that fact that the stupidity level at Apple is WAY less than at MSFT.

Anyone catch that NPR story (no doubt "commissioned" by MSFT) about the hard quiz question MSFT grills interviewee's with? My question: if they DO hire smart people-- where do they end up? Do they piss off bozo-Allchin and get fired? Or maybe they just all go over to the Mac BU. My expereince is that MSFT's Mac products suck les than their Windows products.

Aug 26, 03 - 11:03 am Comment from: mtnclmbr

I can't believe this guy thinks that Windows is hit because it has a 95% market share (his numbers, not mine), but that it wouldn't be a good thing to then diversify the market. What if Mac, Windows, and Linux all had about 33% of the market, wouldn't that lesson the effects of viruses?

Aug 26, 03 - 11:09 am Comment from: mtnclmbr

Also, the government has to take it's far share of the blame on this Microsoft thing. If they'd look for alterntives to Microsoft, then their employees and outside contractors would switch as well to be on the same platform. No more monopoly, no more being able to target the weak guy with the market share.

Aug 26, 03 - 11:10 am Comment from: timothy

i have more macs(4) than i do pcs(2).
but still, i hope i dont sound too biased to mac users.

there are a few reasons why my main work machines are pcs;
- i can secure my system so i dont have most of these problems.
- they perform better.

i love mac aesthetics and design, (which is what i do myself, so i'm not a techie :( ) but i can tell when i takes less time to render a scene on my pc.

* caveat - this is based on g3 and g4 macs. the g5s look and sound good, so i'll have to give it a go.

cost isn't a problem for me, so i just buy whatever performs best. i dont like to see pc users bash mac users about cost - more money spent doesn't automatically mean you've got a better product. and i think mac users shouldn't be so defensive.

i hope i haven't offended anyone. take care all.

Aug 26, 03 - 11:14 am Comment from: ralphwiggins

Paul Thurott has been bashing Macs for as long as I can remember, and he usually ends his tirades with "The company deserves good hardware on which to run its excellent software" to make sure his inbox doesn't fill up too fast with Mac users lambasting another one of his lame articles. I seriously think Mr. Thurott has risen to his level of stupidity by trying to emulate his idol, Bill Gates.

Aug 26, 03 - 11:18 am Comment from: Don

UNIX, the basis of OS X, has been around for three decades. As a result, the holes in it have been fixed. Various virii, worms, trojans, etc., simply can't get it unless people open new holes (such as turning off the firewall). It's true that OS X also has security through obscurity, but you would think that at least one bozo would have created an OS X specific virus since this OS's introduction 2 years ago. So far, the score is Windows: 70,000, Mac OS 9 and earlier: 50, Mac OS X: zero. Do the math.

Aug 26, 03 - 11:24 am Comment from: timothy

its 2:18am here, dead tired.
sorry for all the spelling mistakes.

and paul thurott does seem to bash macs a lot.
though i dont think he's the worst anti mac guy out there.

i think a lot of it (bias on either side) has to do with what appeals to the user. macs scare me in one sense (mac's branding's a little too strong for me, i just want a powerful and graceful machine) but appeal to me in another, its deft approach to its interface and product design, and being part of a community that seems to have a very strong sense of belonging.

if macs were a majority of the market, i would have to say some of the appeal is gone (for me, at least).

Aug 26, 03 - 11:27 am Comment from: R.V

Blaming the attacks on the popularity of Windows is a simple excuse for simple minded people. Basically, the majority of the "ME TOO!" types who continue to flock to what can only be described as the most apologized for RIP-OFF in consumer history.

I agree with some of the other comments about letting them believe all the cock and bull stories they want if it makes them feel any better about their pathetic ignorance about viable alternatives.

Aug 26, 03 - 11:33 am Comment from: Aryugaetu

Popularity and a software's level of security have NOTHING to do with each other!!! It's the structure of the OS that determines this. Using "popularity" is a feeble and completely baseless argument which uses numbers and statistics, from a completely unrelated fact, to give it the appearance of credibility.

What better prize for a hacker but to make a Mac OS X virus, something claimed to be impossible, AND on systems that rarely run ANY virus protection? To make it more attractive of a target, a Mac virus will spread much more rapidly because it will be passed on via MS systems. MS users won't care to waste their CPU time looking for a virus that doesn't effect them. This Mac virus will ride the internet highway with very few stop signs. It also will not get the news media coverage to make others aware to download virus protection. And yet, THERE ARE NONE!!

A few months ago when hackers raced to infiltrate websites for points, even with Mac's large point-value, NONE were breached.

Out of 70,000 virii, Mac's 15% install base should net about 10,500 virii. Now, let's grossly overestimate that Macs have 100 times more user satisfaction AND as such persuade just 1% of all Mac-using hackers to be angry enough to make a Mac virus. Then there should be 105 Mac virii. Now there ARE about 50 known Mac virii that can potentially infect pre-OS X systems. This leaves 55 OS X virii unaccounted for. The current number of Mac OS X virii is ZERO -- NOT ONE!!

I don't give a damn about numbers, theories or reasons. The solid single FACT remains that Macs using OS X are infinitely more secure than Windows, and until Mac has 70,000 virii trying to attack it, I'll stay with Mac!

Aug 26, 03 - 12:23 pm Comment from: Nagromme

Even by his OWN false premise--that Macs and UNIXes are safer because they're "so obscure"... it STILL makes sense to switch away from Windows. Unless, by his logic, you switching makes everyone else--including virus writers--switch simultaneously along with you!

He must think Mac and/or Linux is perched in the edge of becoming dominant, or his argument makes no sense.

Aug 26, 03 - 12:42 pm Comment from: John F. Braun

Paul Thurrott is a piece of work. He's is actually under the impression that WinInformat is some sort of Windows news site, but if you spend any time reading it, you'll realize it is little more than a Windows rah-rah fan site.

Even when presented with actual facts, he won't back off. For example, he had a recent article that touted Windows as more secure than Linux since it received a higher Common Criteria EAL. For those that know what this actually is, you'd know that it is definitely NOT a measure of security. But he stands besides his article, hence the "fan" classification.

And he doesn't sweat things like facts to prove his point. He somehow thinks that stating "Is Windows inherently insecure? Of course not" is enough evidence to make prove Windows is secure. Maybe for some of his knuckle-dragging readers, this is enough.

And for a real treat, check out his "Internet Nexus" site, which appears to be a teen-age warez d00d rant about how much the Mac sucks:

http://www.internet-nexus.com/

Aug 26, 03 - 01:16 pm Comment from: Nick

Thurrott is a simple-minded NBMer whose overwhelming Mac-envy rivals that of his idol Billy Bob Gates, and a Windows tinted Reality Distortion Field to rival any in Cupertino.

To the editors of MDN: in the future, please ignore him. Sure, it's fun to get all riled up and slam on him, but he is just sad and pathetic, and doesn't deserve your attention.

Aug 26, 03 - 02:02 pm Comment from: DudeMac

Why does Paul Thurrot waste his time speaking nonsense? Of course his analysis of the Windows world being 95% of the computing population is absurd. We all know Mac world is about 10% of the pie with Linux not far behind, which would actually throw the 'Windows' number into the 80-85% region. Why do people always confuse installed userbase with marketshare?!

Aug 26, 03 - 04:15 pm Comment from: Matthew24

Hey, all you 95% Windows users, is anybody of you clever enough to write a Mac virus? Good luck!

Aug 26, 03 - 07:57 pm Comment from: tthomcarl

Thurrot confirms that Wintel biased journalists are indeed idiots. Even knowledgeable Wintel folks admit that M$ is more susceptible to hackers that unix based systems. Thurrot needs a brainectomy. What and irritating P----. Ignorance presented as fact should be punished by being used for bait while trolling for alligators.

Aug 26, 03 - 08:44 pm Comment from: John McArn

Thurrott seems to asume something: Mac Os X and other unix-based operating systems all work the same way. They don't. Even more, he seems to impy that other operating system have the same vulnerabilities as Windows which are not being exploited simply because most people do not use anything other than Windows. 95% of all users use Windows? ...home users *maybe* (and I would even take issue with that bloated percentage). The server and enterprise markets are a different ball game.

Windows and *nix have two different sets of priorities. Security and stability have always been top priorities for developers of *nix operating systems. Windows, on the other hand, favors "ease of use" at the cost of security. Ease of use is better commercialism and marketing. Viruses simply can't propagate in *nix. There have been some attempts at developing viruses to trick users of *nix systems into giving it root access, but most administrators are knowledgeable and experienced enough to know better. I do think, though, that Microsoft's woes have been teaching users some important lessons in safe Internet practices... or at least I hope so.

I must say, if I were ever to develop a top-selling product then I would love to have blind customer loyalty as demonstrated by the author of this article. People like that would ensure that I make some serious money, and they would buy anything and everything that my company puts out simply because of the name. And, I would reel them in with catchy slogans like "Johnny Mac... a name you can trust".

Windows and *nix simply are not the same. Period. Microsoft's vunerablities are *unique* to Microsoft because of Microsft's *design* and the failure of Microsoft to close the holes since doing so may cost a percentage of its profits.

Aug 26, 03 - 09:34 pm Comment from: Jacob

From the current issue of Time Magazine:
Nevertheless, there is much to embarrass Microsoft in the latest crop of worms. Blaster and Welchia both relied on the same security loophole that was found in Windows in July. There was a fix available ó the one Welchia tried to download ó but it was among dozens the company puts out every month. Windows XP made its debut in 2001 with some 45 million lines of code and a lot of mistakes, many of which have yet to be uncovered. Because of its complexity, "no other product could potentially be so flawed," says Jerry Ungerman, president of Silicon Valley's Check Point Software. No consumer movement has sprung up demanding a Windows recall just yet, but a car with this many problems would be a tort lawyer's joyride.

Security experts are willing to cut Microsoft a lot of slack. In some ways, they say, Windows is a victim of its success. if rival operating systems like Linux or Mac OS had a 95% market share, the virus writers would be hard at work probing them for holes. Whether they would find as many is a different question altogether. Linux and, to a lesser extent, Mac OS are open source, which means they're subject to constant peer review by engineers and software writers all over the world. The energy that goes into finding fault with Windows exists in the Linux world too, but it's focused on making the code better. To help stave off the competitive threat from Linux, Microsoft recently allowed several governments across the world to take a peek at the precious Windows source code but is unlikely to go fully open source anytime soon.

http://www.time.com/time/magazine/article/0,9171,1101030901-477922,00.html

Aug 27, 03 - 01:08 am Comment from: Left Hand Hung

The last mac ever for me was 9, unix with a much better interface just doesn't cut it.

Oct 05, 03 - 05:26 pm Comment from: Matt

Microsoft has proven that windows is not inherently insecure. If there were no people writing virus and other malicious code all 80,000+ holes in windows software would be completely harmless.

Sep 09, 04 - 06:29 am Comment from: Rob klein Gunnewiek

About the problem of mass-infection..

Mass-infection is possible when people massively use the same vulnerable software. Every piece of software is vulnerable at one time..

To massively exploit this, there are multiple options:

1 Silly users who execute any attachment in their mailbox
2 Everyone using the same vulnerable software so that their systems get automatically infected

Problem 1:

This is the OS-question. When everyone uses MacOSX, then the combination of writing a worm that works on MacOSX + Stupid users would outcome a succesful worm.
There's nothing that can be done about this problem on any system.
Solution is variety, when using more variation among OSes, this problem would be reduced (not eliminated ofcourse)

Problem 2:

When all outlook users switch to some Linux system and run Kmail, their systems would get infected. I guess that Linux would stimulate these users to make a user account and not run as root which would reduce the impact.
Anyways, a vulnerability in Kmail would be almost as devestating as running Outlook.

Solutions:

Users should not be so stupid.

Diversity in applications. In the linux world alone there is somuch diversity in people using different software from webbrowsers to email clients, to instant messengers, to video players etc. etc.

The con to this on the windows platform is incompatability. But linux systems try to concentrate on open standards, cooperation etc. etc.

People *can* use a diversity of operating systems and software aslong as they use open standards.. Microsoft does not support this.. they try to lock everyone in to one software. One person's Windows 2000 platform is almost identical to any other person running Windows 2000, which makes infection a piece of cake. In the linux world though, many distributions compile their own versions of the software, there's even so many variation among the same software; kmail on debian is not kmail on mandrake! Exploiting some memory vulnerability would become very hard to do for mass-exploitation because of that.

So the solution (or atleast; reduce of impact) is *diversity*.. and diversity is no problem when things are based on *open standards* ..

The difference between linux/macosx/windows mass-exploitation is comparable to shooting a target in daylight under ideal circumstances (windows) to shooting the target at night while it's clouded and misty.

Sep 15, 04 - 05:11 am Comment from: Tugger

I too have mac and PCs.

I have PCs because all my customers do, I have macs because the operating system is better and more secure.

Thats the difference. the operating system not the hardware.

If apple wrote OSX for the PC, I'd use that.

The only people who bash the Macs are people who don't use them. Paul Thurrott is a good example, he has no idea why the mac OS is more secure firstly because he doesn't own one, secondly because he doesn't do his homework.

Most viral problems that PCs suffer with are down to 2 or 3 basic types of software, variations of a theme that expose weaknesses in Windows.
There are similar viruses written for the mac, but put simply, there are fewer leaks in the mac OS than in windows.

Paul Thurrott is assuming that there are thousands of different viruses out there (attacking pc's) because there are more people writing them. In fact there are only a few viruses out there, but everyone has them because the OS is shite.

If someone started fresh and wrote a basic solid operating system for the pc that could run windows applications, would you not use it..??

How much would you pay for a version of windows that was fast, virus-proof, didn't require drivers and weekly updates, and didn't hang or crash... ever!
$200... $300... ??

Someone needs to petition Apple.

Oct 07, 04 - 09:32 am Comment from: zsdv

Someone answer me!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!

Oct 07, 04 - 09:35 am Comment from: ksdjgf

WHAZ UPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPP!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!

Oct 07, 04 - 10:14 am Comment from: J bird

Can windows get a virus?

Apr 26, 06 - 02:23 am Comment from: sasadad

ONET http://www.onet.pl atore pornos

Reader feedback page 1 of 1 pages:

Always -- Free ground shipping with orders over $50 at the Apple Store.

Add Your Feedback:

Register or Login

Name:

Email: (optional)

Emoticons | Allowed HTML Tags

Remember my info   Notify me of follow-up comments?

Please enter the "MDN Magic Word" you see in the image below: