|
-
March 4th, 2008, 11:07 PM
#12
I agree with SirDice that the security model is somewhat lacking once a user has decided to run something.
For instance if you happen to be logged into OS X as the admin (dont do it, you DO NOT need to be an admin all the time. If you need admin rights the OS will prompt you for creds) then yes anything dodgy that you run, so socially engineered malware for instance, will run with the users rights, ie admin rights.
I work for a Computer Security company that produces software for OS X and the biggest issue for normal users are the attachments that they get in emails and stupid bits of software that they have downloaded from a website, or torrented/P2P for.
Users are far to trusting. Wow, naked images of Brittany Spears, wkd. Right double click on that, oh needs admin rights, right enter my username and password.oooooo no pictures, hmmmm, thats odd.
Its a lame example (although you would be surprised how many people *still* fall for it. But things like cracked codecs, or free software that will fix all your mac woes.
So i guess what im trying to say is that the security model could be improved immeasurably, but the first hurdle that needs to be addressed is the thing between the keyboard and the chair. Decent security education is essential, but its something that just isnt looked at well enough these days.
Similar Threads
-
By Jareds411 in forum Other Tutorials Forum
Replies: 3
Last Post: May 14th, 2005, 07:02 PM
-
By valhallen in forum Tech Humor
Replies: 20
Last Post: September 20th, 2002, 02:23 AM
-
By jansson_markus in forum Roll Call
Replies: 0
Last Post: September 26th, 2001, 03:10 PM
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|