Re: new OS X virus: Opener Malware

From: Mark Ingles <mingles_at_berkeley.edu>
Date: Fri Oct 22 2004 - 15:43:42 PDT

On Fri, 22 Oct 2004 14:03:49 -0700 (PDT)
  Rusty Wright <rusty@socrates.Berkeley.EDU> wrote:
>How is it propogated?

Rusty, I'm sorry but I don't know the details. I can only refer you to the website and Greg
Merritt's response below.

http://www.macintouch.com/opener.html

On Fri, 22 Oct 2004 14:05:55 -0700
  Greg Merritt <gmerritt@berkeley.edu> wrote:
>
>Virus? Not really. More like a trojan/rootkit.
>
>Mark, what you sent to magnet was just some random (but hacked) guy's post to macintouch, as you
>referenced. I don't think it sheds light on any sort of newly-discovered vulnerability. This
>fellow hasn't posted any analysis of how his box was compromised in the first place.
>
>Generally, OS X machines are hackable like any other FreeBSD machine. For example, I know of an
>OS X user here on campus had turned on ssh, enabled the root account, and left the root password
>blank. Hacked? Yup. A new vulnerability or a new virus? No.
>
>-Greg
>
>

------------------------------------------------------------------------
The following was automatically added to this message by the list server:

For information about MAGNet, its meetings and events, and its
mailing list, including information on subscribing and unsubscribing,
see the MAGNet Web site at <http://magnet.berkeley.edu/>.
Received on Fri Oct 22 15:45:02 2004

This archive was generated by hypermail 2.1.8 : Fri Oct 22 2004 - 15:45:02 PDT