OS X security record threatened by iPhone?

Summary: If the iPhone takes off, the overall penetration of OS X will skyrocket and attract some serious attention from malware writers.


If the iPhone does as expected and takes a decent chunk of the growing smartphone market then the overall penetration of OS X will skyrocket and attract some serious attention from malware writers.

It is still unclear exactly what is under the pretty exterior of the Apple iPhone but one thing we do know is that it will be running a cut down version of Apple's OS X.

Malware targeting OS X started to appear last year and as Apple products become more popular, the platform will become a more attractive target for malware authors. Luckily for Apple's customers, the Mac operating system was designed to be secure and the bad guys are having a tough time trying to exploit it.

However, one of the lessons we have learned is that if someone wants to get a piece of malware onto your system they will find a way to do it.

I was in a pub once when a colleague's smartphone received a Bluetooth message asking if she wanted to install an application. She said no but within a second the message reappeared. After clicking on "no" two dozen times she gave up and pressed "yes".

The annoying message went away but the phone died -- and couldn't be resuscitated. Eventually it was returned to the manufacturer. I guess it could have been worse if the phone had started functioning normally again but executed some kind of malicious application in the background.

This kind of attack basically bullies the user into executing a dangerous file.

The first mobile phone virus appeared around two and a half years ago but analyst firm Gartner has predicted that the first "serious" mobile virus will not appear till next year -- once there are enough smart devices to make widespread infection possible.

If, and it is a big if, malware authors find a way of infecting the iPhone's OS so it passes that infection to the desktop version of OS X, then the situation could get rather ugly.

Munir Kotadia

About Munir Kotadia

Munir first became involved with online publishing in 1998 when he joined ZDNet UK and later moved into print publishing as Chief Reporter for IT Week, part of ZDNet UK, a weekly trade newspaper targeted at Enterprise IT managers. He later moved back into online publishing as Senior News Reporter for ZDNet UK.

Munir was recognised as Australia's Best Technology Columnist at the 5th Annual Sun Microsystems IT Journalism Awards 2007. In the previous year he was named Best News Journalist at the Consensus IT Writers Awards.

He no longer uses his Commodore 64.

  • Whatever you're drinking, I want a bottle.

    Once the malware developers work around the fact that the phone won't be running an intel processor and will be running the OSX equivalent of Windows Pocket PC; and they write their own development tools, because apple will not be releasing any. All they need to do then is covertly circumvent apples lockouts to install their application onto phone, then simply exploit itunes to infect a host machine while syncing the phone while it's mounted as a storage device.

    Easy, give me a couple of minutes, I will whip something up for you.

    This is a scenario that will play out on Pocket PC's infecting windows long before it happens to an insignificant numbers of iphones connecting to a minority platform running Mac OS X.
  • Security Expert?

    You're writing about security, yet you didn't suggest to your colleague that she should just turn Bluetooth off?? Instead you chose to let her phone get owned...hhmm...
  • Bluetooth malware/spyware/dead phone

    Why didn't she just turn off the bluetooth on her phone????
  • MS-biased retards

    Really, this is just getting sad. I mean, i know ZDNET is owned by Microsoft, but this is pathetic. You crooked bastards will do ANYTHING to try to shake the sales of an Apple product. You're like a bunch of little kids telling 3rd rate lies to try to get your way. MS, you and your "reporters" should be ashamed of yourselves.

    Oh, and the iPhone will have a functioning OS similar to Mac OSs so, you MS-paid hackers will have your work cut out for you, just like when you were employed to try to crack Jaguar/Leopard/Tiger.

    Burn in hell, MS.

  • Iphone, ihype

    This is getting out of control. It's just a bloody phone! Hell if you want your existing phone to look like the iphone - you can down load the skin and even get a lot of really cool functionality from places like Yoober. And without the additonal security issues. But at the end of the day, does it really do anything better than what is already out there? Nope!