<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Yes, Macs are Vulnerable Too.</title>
	<atom:link href="http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/feed/" rel="self" type="application/rss+xml" />
	<link>http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/</link>
	<description>A Member of the Gartner Blog Network</description>
	<lastBuildDate>Thu, 09 Feb 2012 23:32:29 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.4</generator>
	<item>
		<title>By: Neil MacDonald</title>
		<link>http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/comment-page-1/#comment-744</link>
		<dc:creator>Neil MacDonald</dc:creator>
		<pubDate>Fri, 09 Oct 2009 19:25:11 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/#comment-744</guid>
		<description>@BS,

Take a look at the posts again. This is not a Windows versus Apple discussion. The question any Mac user should ask is &quot;Is Apple doing all it can to produce secure code?&quot; . The data shows that the number of vulnerabilities is real.

It doesn&#039;t matter whether its Windows, Linux, Mac or any other OS. If its written by human beings and is operated by end-users that download and install arbitrary code, are tricked into clicking on links they shouldn&#039;t and so on, the system is vulnerable and will be attacked.

The fact that most users run as standard user on a Mac helps, but as I pointed out, this doesn&#039;t protect from financially motivated and targeted attacks that go after user data.


Take a look at this interesting article:
http://www.threatpost.com/blogs/apple-malware-bounty-infect-mac-earn-043-125</description>
		<content:encoded><![CDATA[<p>@BS,</p>
<p>Take a look at the posts again. This is not a Windows versus Apple discussion. The question any Mac user should ask is &#8220;Is Apple doing all it can to produce secure code?&#8221; . The data shows that the number of vulnerabilities is real.</p>
<p>It doesn&#8217;t matter whether its Windows, Linux, Mac or any other OS. If its written by human beings and is operated by end-users that download and install arbitrary code, are tricked into clicking on links they shouldn&#8217;t and so on, the system is vulnerable and will be attacked.</p>
<p>The fact that most users run as standard user on a Mac helps, but as I pointed out, this doesn&#8217;t protect from financially motivated and targeted attacks that go after user data.</p>
<p>Take a look at this interesting article:<br />
<a href="http://www.threatpost.com/blogs/apple-malware-bounty-infect-mac-earn-043-125" rel="nofollow">http://www.threatpost.com/blogs/apple-malware-bounty-infect-mac-earn-043-125</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: BS</title>
		<link>http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/comment-page-1/#comment-723</link>
		<dc:creator>BS</dc:creator>
		<pubDate>Sat, 03 Oct 2009 13:09:10 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/#comment-723</guid>
		<description>--Sigh--  Yet another security &quot;expert&quot; who uses flawed logic to defend his pet OS -- Windows -- for its inherent shortcomings in the security department.

Fist of all, how many of these vulnerabilities listed are rated Critical by SANS?  I will guarantee M$ has more critical vulns every year than OS X and Linux.  

Secondly, how many of these vulns are a result of third party applications that come bundled with OS X and Linux?  I would bet a significant portion of them.  As we all know Windows doesn&#039;t come bundled with much of anything.

Thirdly, I wonder how many vulnerabilities in Windows we never hear about?  That is, vulnerabilities that  M$ does not release to the public that are found in house?  I would bet many.

Fourthly, I wonder how quickly M$ patches their vulns on average compared to Linux?  I KNOW the answer to this question -- Linux smokes M$ is this department.  (I can&#039;t speak for Apple).

Fifthly, and most importantly, if OS X and Linux are just as prone to viruses, then the salient question we must ask is &quot;Where are they?&quot;  Linux has been around 17 years and OS X, for what, a decade?  Why do we not even see a few viruses out in the wild spreading around?  Just one?  Where are they?  OS X is 10% of the desktop market and Linux DOMINATES the server market, yet we still don&#039;t see any viruses in the wild.</description>
		<content:encoded><![CDATA[<p>&#8211;Sigh&#8211;  Yet another security &#8220;expert&#8221; who uses flawed logic to defend his pet OS &#8212; Windows &#8212; for its inherent shortcomings in the security department.</p>
<p>Fist of all, how many of these vulnerabilities listed are rated Critical by SANS?  I will guarantee M$ has more critical vulns every year than OS X and Linux.  </p>
<p>Secondly, how many of these vulns are a result of third party applications that come bundled with OS X and Linux?  I would bet a significant portion of them.  As we all know Windows doesn&#8217;t come bundled with much of anything.</p>
<p>Thirdly, I wonder how many vulnerabilities in Windows we never hear about?  That is, vulnerabilities that  M$ does not release to the public that are found in house?  I would bet many.</p>
<p>Fourthly, I wonder how quickly M$ patches their vulns on average compared to Linux?  I KNOW the answer to this question &#8212; Linux smokes M$ is this department.  (I can&#8217;t speak for Apple).</p>
<p>Fifthly, and most importantly, if OS X and Linux are just as prone to viruses, then the salient question we must ask is &#8220;Where are they?&#8221;  Linux has been around 17 years and OS X, for what, a decade?  Why do we not even see a few viruses out in the wild spreading around?  Just one?  Where are they?  OS X is 10% of the desktop market and Linux DOMINATES the server market, yet we still don&#8217;t see any viruses in the wild.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: [gartner] Yes, Macs are Vulnerable Too. - Overclock.net - Overclocking.net</title>
		<link>http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/comment-page-1/#comment-722</link>
		<dc:creator>[gartner] Yes, Macs are Vulnerable Too. - Overclock.net - Overclocking.net</dc:creator>
		<pubDate>Sat, 03 Oct 2009 12:11:42 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/#comment-722</guid>
		<description>[...] as to not attract too many trolls. I just wanted to share this with the security-minded.  source: http://blogs.gartner.com/neil_macdon...ulnerable-too/ September 25th, 2009   [...]</description>
		<content:encoded><![CDATA[<p>[...] as to not attract too many trolls. I just wanted to share this with the security-minded.  source: <a href="http://blogs.gartner.com/neil_macdon...ulnerable-too/" rel="nofollow">http://blogs.gartner.com/neil_macdon&#8230;ulnerable-too/</a> September 25th, 2009   [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Three Things for Thursday: A Big Week</title>
		<link>http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/comment-page-1/#comment-713</link>
		<dc:creator>Three Things for Thursday: A Big Week</dc:creator>
		<pubDate>Fri, 02 Oct 2009 00:16:31 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/#comment-713</guid>
		<description>[...] &#8592; Yes, Macs are Vulnerable Too. [...]</description>
		<content:encoded><![CDATA[<p>[...] &larr; Yes, Macs are Vulnerable Too. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Yes, Macs are Vulnerable Too. &#124; I AM OSX</title>
		<link>http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/comment-page-1/#comment-701</link>
		<dc:creator>Yes, Macs are Vulnerable Too. &#124; I AM OSX</dc:creator>
		<pubDate>Sat, 26 Sep 2009 02:28:46 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/#comment-701</guid>
		<description>[...] See original here: Yes, Macs are Vulnerable Too. [...]</description>
		<content:encoded><![CDATA[<p>[...] See original here: Yes, Macs are Vulnerable Too. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Scott Olson</title>
		<link>http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/comment-page-1/#comment-700</link>
		<dc:creator>Scott Olson</dc:creator>
		<pubDate>Fri, 25 Sep 2009 15:54:47 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gartner.com/neil_macdonald/2009/09/25/yes-macs-are-vulnerable-too/#comment-700</guid>
		<description>Good article Neil. This is actually one of my main concerns with my Macs. The big problem is that there isn&#039;t really a viable security solution for Macs yet.

Given the lack of a viable business market for the anti-virus vendors with Macs and their already diminishing effectiveness at protecting against new attacks, I am left with hoping for the best and patching every time Apple has a new update.

Until there is a viable Mac security solution I still get nervous every time I click on a shortened URL or my machine runs slow.</description>
		<content:encoded><![CDATA[<p>Good article Neil. This is actually one of my main concerns with my Macs. The big problem is that there isn&#8217;t really a viable security solution for Macs yet.</p>
<p>Given the lack of a viable business market for the anti-virus vendors with Macs and their already diminishing effectiveness at protecting against new attacks, I am left with hoping for the best and patching every time Apple has a new update.</p>
<p>Until there is a viable Mac security solution I still get nervous every time I click on a shortened URL or my machine runs slow.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

