Apple Mac OS X has a lot more vulnerabilities than Windows XP?

“In yesterday’s article ‘Is Mac OS as safe as ever,’ Joris Evers poses the age old question if Mac OS security is myth or reality. I decided to settle this once and for all with some hard numbers from the independent security research group Secunia along with the number of CVE issues for Microsoft Windows XP and Mac OS X within the last two years,” George Ou blogs for ZDNet.

Ou presents a chart showing Mac OS X with far more vulnerabilities than Windows XP.

“The data is clear, and Apple has a lot more vulnerabilities of every kind ranging from moderately critical to extremely critical. While Windows had some months with more security disclosures, they are more spread out while Apple tends to release mega-advisories with dozens of vulnerabilities at a time. There were seven months where Apple disclosed more a dozen or more highly critical vulnerabilities and August 2005 saw nearly three dozen of them. One of the most severe zero day exploits for Mac OS X disclosed this month with a working proof-of-concept has yet to be patched so we’ll have to wait and see how long it takes Apple to release a patch,” Ou writes. “Microsoft on the other hand seems to let some moderately critical and even one highly critical vulnerability go unpatched for more than a year. I’ve hammered Microsoft for this issue in the past and Microsoft has responded to me that they are clarifying some of these issues with Secunia because some of the unpatched vulnerabilities may be moot. I’m still waiting for Microsoft’s detailed explanation on these unpatched vulnerabilities.”

Full article here.

MacDailyNews Take: Ou’s is a meaningless exercise. In the past five years and counting, zero Macs — out of tens of millions — have been infected with a virus. Clearly, Windows XP cannot match that record.

Advertisements:
MacBook Pro. The first Mac notebook built upon Intel Core Duo with iLife ’06, Front Row and built-in iSight. Starting at $1999. Free shipping.
iMac. Twice as amazing — Intel Core Duo, iLife ’06, Front Row media experience, Apple Remote, built-in iSight. Starting at $1299. Free shipping.
iMac and MacBook Pro owners: Apple USB Modem. Easily connect to the Internet using dial-up service. Only $49.
iPod Radio Remote. Listen to FM radio on your iPod and control everything with a convenient wired remote. Just $49.
iPod. 15,000 songs. 25,000 photos. 150 hours of video. The new iPod. 30GB and 60GB models start at just $299. Free shipping.
Connect iPod to your television set with the iPod AV Cable. Just $19.

Related MacDailyNews articles:
Enderle: Security vendors see Apple as next big opportunity – February 28, 2006
As Apple Mac grows in popularity, will security issues increase? – February 27, 2006
The Idiot’s Guide to Mac Viruses For Dummies 101 – February 24, 2006
Wired News: ‘Mac attack a load of crap’ – February 22, 2006
Report: Apple developing fix for automatic execution of shell scripts – February 21, 2006
Ars Technica: Fears over new Mac OS X ‘Leap-A’ trojan pointless – February 20, 2006
Atlanta Journal-Constitution asks: Is ‘Mac virus’ all just propaganda from Mac haters? – February 20, 2006

37 Comments

  1. Virus writers are egomaniacs. They operate for bragging rights, not for monetary gain.

    A lot of PC zealots hate Mac users. They are smug. Many of those same people write viruses.

    Based on this logic, why haven’t we seen the virus writers take the smug Mac users down a notch? Could it be because it’s not because of this so-called security through obscurity myth?

  2. Secunia.com Stats:

    Windows XP Pro: 130 Total; 28 Unpatched
    Mac OS X: 65 Total; 3 Unpatched
    Debian Unstable: 632 Total; 1 Unpatched

    Does the number of total vulnerabilities matter? NO! It’s the amount UNPATCHED! Every system is going to have vulnerabilities if it’s going to be connected to the Internet. Windows has far more unpatched than the other 2 in my example. It’s attacked because of unpatched holes, not because of their market share.

    Apple computers COULD be attacked, but the fact that they don’t run as admin like Windows, makes making system changes that much harder. And of course, there is no patch for human stupidity.

  3. Pure FUD.

    They are clearly referencing (but not directly, of course) a discredited method of counting up malware vulnerabilities. Most of us know of the report within the last year where it claimed the Mac OS had more vulnerabilities that Windows. However, there was a LOT of double and triple (and worse) counting of vulnerabilities in that report — and many of the vulnerabilities were with third pary software and not with the Mac OS or Apple’s software.

    Sometimes I wish I had the time and money to go to each one of the idiot authors and hit them with a tazer for every one of these articles they write.

    MDN Magic Word: must
    I *must* control the urge to strangle these guys.

  4. “I’ve hammered Microsoft for this issue in the past and Microsoft has responded to me that they are clarifying some of these issues…”

    Translation:

    I’ve hammered Billy and Monkeyboy with some greasy butt lovin’ until the synapses responded with a fiery bang!

  5. The difference between Apple and Microsoft:
    Prevention and Reaction

    Apple Prevention: before it happens
    Microturd Reaction: after it happens

    Statitics can be manipulated in any way, shape or form to prove whatever you want them to. The only thing thats important is the end result.

    If you listen to journalists or anal-ists, you deserve the results of your decisions based on their findings. Research and think for yourself!

  6. So… the best way to compare a 2006 Chevy Trail Blazer and a 2006 Ford Explorer would be to see which 2007 model came with the most improvements?

    The model with the most ‘things fixed’ is the inferior model.

    Asses!

  7. Not to rain on the parade

    I have purposely trolled certain sites and then either the moderators (with bad intention) or myself (on purpose) then circulated my ip address to hackers to crack my Mac OS X box.

    I’m sorry to say that although Mac OS X has been pretty good at resisting most attacks, it’s not 100% secure.

  8. A Hummer in Iraq is more vulnerable to a roadside bomb than my Chevy Truck.

    If people would start slinging roadside bombs where I live I think I would rather be in a Hummer than my Chevy Truck.

    It´s all relative. If no one is making viruses to attack you then there is no problem.

  9. MacDude:

    So how were you hacked?

    Whar weaknesses were exploited?

    And if moderators circulated your IP address with the intent that someone else should cause damage to your system, how come you didn’t inform the authorities given that that would be a criminal offence?

    We know its not 100% secure, no operating system is – but equally I think most of us recognise the fact that you’re a troll.

  10. I still dumbfounds me that all of these PC apologists take the time and energy to blast Apple. Apple is only 5% of sold computers. Do the PC people feel that EVERYBODY needs to use Windows? Or do they need to somehow justify the fact that they use an inferior system?
    It’s like the school bully picking on the smallest kid in the school to show everybody how great he is. Get a life!!

  11. This is just the start of a new market for the Mac security.

    this is how business is created, by false pretense.

    Its like the Presidents scenario, were all the left and democrats keeps bashing Bush.

    They do this enough times and people start beleiving that its true.

    How gullable we are!

Reader Feedback

This site uses Akismet to reduce spam. Learn how your comment data is processed.