A Worm in the Apple
Exploration of Mac malware
Wes Widner
@kai5263499
wes@manwe.io
Introduction
Information security engineer by day, malware researcher by night
Also father of 4, so nights tend to be pretty short
Previous talks have been about malware pipelines in general
Macs are secure, right?
Before 2012
After 2012
Flashback
Flashback part 2
But that was a fluke, right?
Apple and many experts still don’t recommend using protection
Perhaps some history will help
Mac malware history
Apple still actively fights with vendors
The Apple fights back
iDroid
Firewall
Little Snitch
Icefloor - open source GUI pf manager
Software installation
Code signing
Huxley the Platapus
MachO
Little Flocker
Boot - in the beginning
Books worth getting
Thanks for attending!
Mac malware feed: http://ow.ly/O1WM303qAkV
Mac infosec homebrew tap: http://ow.ly/c1LZ303pKwa
OSX Security Awesome: http://ow.ly/uWEj303pKuf
These slides: http://ow.ly/DpNQ305KfPd