For the past few years I have enjoyed the "Security through obscurity" lifestyle, avoiding the malware trends while using my Macbook Pro laptop. Unfortunately Apple has put itself on the map as a malware target as you may have noticed with last weeks mass infestation with the iServices.A Trojan. While this should have easily been avoided by downloading software directly from apple, then using the key from the bit torrent site, oppoosed to downloading the software from the bit torrent site, many people blindly downloaded this app and installed it, and my bet would be that less than 1% knew what was happening in the background. As if the bombardment of browser bugs, click jacking, xss, and DNS vulnerabilities weren't enough, now I have to worry about infected mac-warez :-(.
Today I broke down and installed AV on all of my mac's which I could have done a while ago, but figured that it wasn't worth the hassle. I'm using ClamAV for OSX (ClamXav). While there are a few vendors offering mac-based AV solutions, I seriously doubt any of them are putting much work into the mac product, and that it will miss the latest trends anyhow, so instead of paying McAfffe $90 I went with the free solution (but donated anyhow). If you are familiar with Cisco Security Agent ( a great HIPS product in my opinion) you know that this is also based upon clam-av, so it can't be too bad :) Cisco was partnering on several solutions with Trendmicro before they offered CSA with intergrated Clam.
So in a nutshell, Cisco likes Clam, it's priced right, and it runs in OSX, go check it out :)
*Note: You may also notice that there is a .plugin file that you can integrate clam into the shell, allowing you to simply right-click on directories or files for quick+easy scanning.
Get it today!
Saturday, February 7, 2009
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment