Tässäpä alkuperäiskielellä Davidin viesti koskien sitä bottijuttua WP:ssä.
Hi Raimo,
Brian Krebs forwarded this to me.
I posted a follow-up comment in the blog which gives more details. It was due to a vulnerable PHPAdsNew application which was rated Extremely Critical by Secunia.
If you have any further questions feel free to send me an email.
<blog comment>
This entire story originated to mainly focus on those that spend their free uncompensated time chasing down botnets in hopes of helping to protect those victims that may end up being harmed by them. When it was mentioned that a Mac OS X system was involved in a botnet it caused a rucus to say the least. This was not intentional. The Mac systems that ended up in the botnet were running vulnerable versions of PHPAdsNew which had a serious vulnerability rated "Extremely Critical" by Secunia. This software runs on POSIX systems so from what I understand this means *nix (linux or unix) as well as Mac OS X.
I just wanted to clear this up for folks. An average Mac OS X user would not have had this application installed and would not have been vulnerable.
No matter what operating system you use please make sure that you are also updating third-party applications.
==================================================
David Taylor //Sr. Information Security Specialist
University of Pennsylvania Information Security
Philadelphia PA USA
(215) 898-1236
http://www.upenn.edu/computing/security/
==================================================
Penn Information Security RSS feed
http://www.upenn.edu/computing/security/rss/rssfeed.xml
Add link to your favorite RSS reader