After a series of Java security updates, Apple quietly releases an (invisible) removal tool
In a perfect world, there would be no computer viruses, worms or trojan horses -- and for most of Mac OS X's first 10 years it was blessedly malware-free.
In the world as we would like it, Apple (AAPL) would have used that decade-long grace period to prepare for the day when its flagship operating system got hit -- as it inevitably would -- with a major outbreak.
In the world as it actually is, a piece of malware known as the Flashback trojan -- a patch for which has been available since February -- caught Apple with its pants down. The rogue code had already infected roughly 1% of the Macs in use -- an estimated 600,000 machines -- before Apple did anything about it.
By then, the company was scrambling -- putting on the equivalent of belts and suspenders. It issued not one or two but three Java security updates between April 3 and April 12, and on Friday it gave users something that sounded like just what they had been waiting for: An official tool -- one from Apple, not one they heard about on Facebook -- that would safely and definitively tell them if their Mac was infected.
What Apple didn't do was tell users that the tool existed. Not with a Software Update, not with a press release (see update below). It isn't listed on the Mac App Store and it doesn't show up in a search of the Apple website. And if you do somehow find and install it on your computer, it will disappear into the underlying code, making its presence known only if Flashback shows up.
If Apple is going to operate in the malware-ridden Internet as it is -- as Microsoft (MSFT) has for years -- a little transparency would be appreciated. Starting with an easy way to find the tool that will locate and eradicate infections as they appear.
For the record, you can download the Flashback Malware Removal Tool here.
UPDATE: A reader reports that the tool did show up as a Software Update on one of his Macs. He may not have installed Java on that particular Mac. The stand-alone utility, according to Apple's documentation, was designed for OS X Lion users without Java. CNET's Topher Kessler suggests that the tool was made to address "earlier variants of the malware that these users might have encountered."
Compare to Windows, OS X is nearly malware free. But it does run JavaScript.
Having written several times -- and taken a lot of heat from PC users -- about the relative security of Apple's (AAPL) operating systems (See Why are there no Mac viruses), I feel obliged to report that Mac OS X is under what appears to be the most serious malware attack to date.
According to a report posted MORE
Philip Elmer-DeWitt - Apr 5, 2012 8:08 AM ET
Biggest savings on Macs. Best deals on accessories. But beware the malware.
Apple (AAPL) posted its Black Friday sale prices at 12:01 a.m. Pacific Time Friday and they were exactly as rumored.
The savings on Apple-branded products range from a high of 15.94% on $69 accessories like the Magic Trackpad to 7.02% -- less than the sales tax in 25 states -- on the $299 Time Capsule 2TB.
A guide to the best deals:
WARNING: MORE
Philip Elmer-DeWitt - Nov 25, 2011 6:30 AM ET
Reports of trojans, spyware and other malicious programs are up 472% since July
Several warnings have been issued over the past year about the growing problem of malware on Google (GOOG) Android smartphones (see here, here and here), but none as dire or as sharply worded as the report issued Wednesday by Juniper Network's Global Threat Center.
Not only did Juniper's annual threat report see a 400% increase in Android malware between 2009 and the MORE
Philip Elmer-DeWitt - Nov 17, 2011 11:16 AM ET
A collection of dire warnings from the past puts this week's alarms into perspective
Three days after ZDNet ran a piece entitled "Coming Soon to a Mac Near You: Serious Malware": Daring Fireball's John Gruber has posted, under the headline "Wolf!" more than a dozen variations on the same theme.
They date back to 2004 and all sound a familiar warning: Apple (AAPL), having achieved critical mass in the market place, is MORE
Philip Elmer-DeWitt - May 5, 2011 7:41 PM ET