You've probably seen the headlines: "Pwn2Own 2008: MacBook Air hacked in 2 minutes" or "Pwn2Own 2009: Safari/MacBook falls in seconds." But there's a story behind every headline and who better to get the story from than Charlie Miller, the man behind the headlines?
Tom's Hardware had the opportunity to chat with Charlie after his back-to-back successes in demonstrating zero-day exploits affecting the Mac.
Miller stated, "I'd say that Macs are less secure for the reasons we've discussed here (lack of anti-exploitation technologies) but are more safe because there simply isn't much malware out there. For now, I'd still recommend Macs for typical users as the odds of something targeting them are so low that they might go years without seeing any malware, even though if an attacker cared to target them it would be easier for them."
He has also said that whatever you do, keep your system up to date, and be 100% sure you know what you're doing. The reason for this is because no anti-malware protection would have stopped him; "None of those protections would have probably worked, or at least there were potential workarounds. The best thing the user could have done is not click on the malicious link. Of course, in some cases such as a man-in-the-middle attack, even this wouldn't have helped."