Will Intel chips make Macs less secure?

Daily Newsletters

Sign up to ZDNet UK's daily newsletter.

ANALYSIS

When Apple announced in June 2005 that it would transition its Macintosh systems to Intel processors over the next couple of years, I can't say it was surprising. Perhaps more surprising was the fact that the company introduced the first Intel-powered iMacs last month — almost six months earlier than first indicated.

One of the most widely reported justifications for the switch from the PowerPC architecture centred on availability issues. Apple's desire to influence the design of the PowerPC architecture in general was another noted speculation.

But there was some irony in Apple's headline-making decision. The PowerPC architecture is a product of a 1991 joint venture called the AIM Alliance, comprised of Apple, IBM, and Motorola. From the start, Apple's focus was clear — higher performance for its personal computer systems.

The Alliance's main goal was to create a new computing standard based on the PowerPC architecture, one that could adequately compete with Intel. Ultimately, however, the AIM Alliance crumbled, suffering from the same fate as quite a few other ventures that attempted to dethrone or simply circumvent Intel's dominance in the microprocessor market.

When Apple announced its plans to make the move to Intel, many industry pundits — perhaps focusing more on emotional and financial reasons rather than technological ones — criticised the company's decision. And while such a shift has raised many issues and mixed reactions, one of the biggest questions is what this move will mean for Mac security.

Traditionally, Apple users have generally not found themselves in the crosshairs of virus, worm, and malware authors. Macs have remained largely untouched by the security threats that plague Windows systems, and there are a number of reasons for such relative immunity.

First, most malware authors want to infect as many machines as possible. Apple's limited market share — especially as compared to Windows systems' popularity — doesn't make Macs an attractive target.

Second, Apple's operating system, Mac OS X, is UNIX-based. UNIX traditionally hasn't been a major target for malware authors (but by no means ignored). Even the Opener rootkit, which affected Mac OS X systems in 2004, was due to a permissions problem on a directory — it didn't use a "true" exploit such as a buffer overflow.

Finally, malware authors are generally more familiar with x86 processors than PowerPC processors. True exploits generally require a buffer or heap overflow combined with shell code, and shell code is the realm of the assembly language programmer. In addition, there are probably dozens of virus and exploit writing kits for Windows out there that greatly simplify the process — and perhaps eliminate the need for knowing x86 assembly language at all.

But Apple's decision to switch to Intel doesn't just eliminate one of the factors that has traditionally provided a type of natural defence. This move also leverages the skills of x86 malware authors who are already responsible for the current state of Windows security — or lack thereof.

I'm not saying that new Intel-based Macs will be insecure by any means. Malware authors generally prefer to focus attacks on Windows because of its greater market share.

However, it's important to remember that microprocessor architecture does play a role in whether a computer system is more or less vulnerable to security threats, OS specifics aside. That's one of the reasons I recommend using a variety of computer architectures and operating systems in an enterprise. And in Apple's case, it's important to note that "security by obscurity" — disingenuous as it might be — is still a form of security.

So, like many Apple fans, I'm somewhat discouraged by Apple's decision to switch to Intel. But given the concerns over availability and the future of the PowerPC, it was inevitable.

While I can't say for sure whether Apple's move to Intel processors will have unwanted security side effects, I suspect that may be the case. By using the x86 architecture, Apple has eliminated one of the likely reasons that experienced malware authors have generally ignored its products. On the other hand, it could be that my concerns are nothing more than an emotional response — only time will tell.

Regardless of the microprocessor architecture, Unix-based systems are generally more secure "out of the box" than Windows systems anyway. And it's easy to verify this.

Take two computers, and install two operating systems from CD. Put Windows XP on one, and put a Unix-based system on the other. (It doesn't really matter which hardware or operating system you install.) Connect both systems to the Internet using a public IP address. Without a doubt, something will compromise the Windows system in less than a day.

Talkback

"Take two computers, and install two operating systems from CD. Put Windows XP on one, and put a Unix-based system on the other. (It doesn't really matter which hardware or operating system you install.) Connect both systems to the Internet using a public IP address. Without a doubt, something will compromise the Windows system in less than a day."

considering that XP ships with the firewall on and Macs ship with it off would this necessarily be true?

via Facebook 1 March, 2006 20:16
Reply

yes it would. if the firewall was vulnerable.

it also depends on which OS SP for windows you are talking about and which verison of unix you mean.

Sun solaris 5.4 has statd remote exploit, give it a day and ill have it hacked.

windows xp sp1 and vanilla dont have the firewall turned on as default leaving them wide open and bending over like the proverbial naked man in jail!

via Facebook 6 March, 2006 18:32
Reply

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your ZDNet UK account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Community FAQ

Get ZDNet UK's daily newsletter

Enter your email address to sign up

ZDNet UK Live

kevinmchapman

"the very significant number of users" and "many (most) of us" - you have no evidence for these statements. It is a fact that most users are saying...

6 hours ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
Marg Menzies Harrison

Another grammar faux pas is the improper use of "you". When sitting down down in a restaurant, for example, I get cringe when the waitress...

8 hours ago by Marg Menzies Harrison via Facebook on 10 flagrant grammar mistakes that make you look stupid
zdnetukuser

And NOW, folks, for Canonical's next trick... Kubuntu is late. Here's a pencil. Draw your own conclusions. cf.:...

8 hours ago by zdnetukuser on Linux Minterface
Moley

@kevinmchapman. The discussion here reflects the very significant number of users who really do like the traditional menu system and who wish to...

10 hours ago by Moley on A tale of two distros: Ubuntu and Linux Mint
kevinmchapman

Er, no... It is an efficient means of finding the application/file/setting you need in one place. The icons are a simply a fallback for when you...

12 hours ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
TerryRK

Isn't the provision of a text based search an admission by the developers that the mass of icons approach does not work? I don't need to use a...

13 hours ago by TerryRK on A tale of two distros: Ubuntu and Linux Mint
kevinmchapman

"Unity and GNOME 3 both abandon the old text-based cascading menus in favour of a graphical icon-driven system." Point truly missed. Both use a...

14 hours ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
TerryRK

whs001 - Thank you, I'm glad you liked the article. I absolutely agree with you on your first point. I should perhaps have made it clearer that...

14 hours ago by TerryRK on A tale of two distros: Ubuntu and Linux Mint
Dennis Nilsson

If we allow corporate interest to dictate the way our government circumvents due process against foreign entities then we should accept the same...

15 hours ago by Dennis Nilsson via Facebook on ACTA stumbles in Germany
GHar123

I totally dislike pirating of works, I fear that artists will be deterred from creating works if they think that they are going to get ripped off....

17 hours ago by GHar123 on ACTA stumbles in Germany
JCB33

How dare film makers, artists or anybody that invests in creativity stop us pirating their works for free. I want to be able to walk into my local...

22 hours ago by JCB33 on ACTA stumbles in Germany
Moley

@GrueMaster. I prefer horses for courses rather than one size fits all. I, and I suspect most other computer users, do not really wish to have...

1 day ago by Moley on A tale of two distros: Ubuntu and Linux Mint
greycynic

The product that scares me every time I have to use it is the Office 2007 version of Excel. The first bug that I found was applying the median...

1 day ago by greycynic on Ten flawed products that derail productivity
GrueMaster

Nice review and very informative. One thing I'd like to add (in reply to whs001's 1st question), the main reason to have the same interface from...

1 day ago by GrueMaster on A tale of two distros: Ubuntu and Linux Mint
Frederick Wrigley

I'be been using Mint 12 since the RC came out, and I am far more happy with the Cinnamon, the Mate, and, yes (with extensions), theGnome 3...

1 day ago by Frederick Wrigley via Facebook on A tale of two distros: Ubuntu and Linux Mint
bdantas

Excellent article. One small correction, though--although a fresh installation of Linux Mint 12 will, indeed, provide the user with a version of...

1 day ago by bdantas on A tale of two distros: Ubuntu and Linux Mint
Alan Ralph

In related news, the ISPs club together to get the members of the Home Affairs Select Committee (ya goofed on that part, ZDNet UK) copies of "The...

1 day ago by Alan Ralph via Facebook on MPs urge ISPs to take down terrorist material
Alan Ralph

In related news, the ISPs club together to get the members of the Home Affairs Select Committee (ya goofed on that part, ZDNet UK) copies of "The...

1 day ago by Alan Ralph via Facebook on MPs urge ISPs to take down terrorist material
Moley

For Gnome 2 die-hards, it is possible to add icons to the bottom panel (or top top panel, if you prefer) which provide the exact Gnome 2...

1 day ago by Moley on A tale of two distros: Ubuntu and Linux Mint
ramwellian

Your comments would seem pretty naive and immature. Your 'solution' appears to be, "gee, let's all just give in to the hackers and give them...

1 day ago by ramwellian on Cloud computing security: no more oxymoron?