kalisphoenix said:
We had no warning and no real defense, so what was to stop this chap from nuking all our hard drives?
We have defense against things like this, it's called common sense.
Just don't run executable files from unknown sources. It's pretty simple.
And this ain't a virus, it's a trojan horse. The only way to get bit by it is user stupidity.
generik said:
Perhaps Apple should make it so that it won't automatically run executable from archives?
It doesn't do that.
tfaz1 said:
Only *after* you've entered the Admin password to install the Trojan in the first place. Those OS X admin password requests are there for a reason.
Nope. This app doesn't require a password to install (it doesn't install) or run.
BakedBeans said:
It says different on the front page of MR? You cant change anything damaging without a PW anyway can you?
Yes you can! You need a password to make changes to system files, but not to make changes to app files.
I agree with the idea of having ALL apps show the "you are running this for the first time" box, not just ones called from a document.
gedto said:
In addition, an antivirus would've been completely useless in this case, because yes! You guessed right!
This is no virus.
Most virus software scans for trojan horses. In fact, there's an update to sophos already for this very one.
Cubert said:
It seems that the simple fix for this on Apple's part is to require an admin password (even when logged in as the Admin) anytime an executable is run, or even more precisely, anytime a modification is made to an application (as this trojan does).
Any time run? Bad idea. Password for app modifications? Good idea.
gedto said:
uncle sam, your mac cannot be "infected": you must download the app, double click it and - depending on your setup - type in your admin password to execute
People need to stop spreading this misinformation! You do NOT need to type a password to run an app! This trojan only needs a password if you're not an admin user.
whooleytoo said:
Downloading and running a program without having viewed and verified it's entire source code?
Nope, just verify that the jpeg you downloaded IS that, and not a program.
~Shard~ said:
Well, being that you have to enter your Admin password to run this thing...
Doesn't anyone read the damn thread? You DON'T have to enter the password to run this. Could MR please update the article with this fact?
nagromme(And what's the final consensus said:
YES! Apps don't give that warning unless you run them via opening a document associated with them.