Malware
- In Turkish
- Kötü Amaçlı Yazılım
- Pronunciation
- MAL-wair
In short
Malware (malicious software) is any program designed to harm a computer or its user by stealing data, spying, damaging files or taking control of the system.
What is malware?
Malware comes in several forms. A virus attaches itself to other files and spreads when they run; a worm spreads across networks on its own by exploiting vulnerabilities; a trojan pretends to be useful software; spyware and keyloggers secretly record what you do; rootkits hide deep in the system; and ransomware encrypts files and demands payment. Infected machines are often joined into botnets that attackers rent out.
Most malware arrives through people rather than clever hacks: an email attachment, a fake software update, a cracked program, a malicious browser extension or a poisoned package in a developer's dependencies. Unpatched software and exposed services let worms and attackers in without anyone clicking anything.
Defenses work in layers. Keeping systems and dependencies updated closes known holes; endpoint protection detects suspicious behavior; least privilege limits what malware can reach; email filtering and training reduce phishing; application allowlists and code signing stop unknown programs; and backups make recovery possible when something gets through.
A common misconception is that macOS, Linux or phones don't get malware. Every widely used platform is targeted, and developers are an attractive target because their machines hold source code, cloud credentials and signing keys, which is why supply chain attacks through packages and build tools have grown so much.
Key takeaways
- Malware is software built to harm, spy, steal or take control.
- Viruses, worms, trojans, spyware, rootkits and ransomware are common types.
- It usually arrives through phishing, fake downloads or poisoned packages.
- Updates, least privilege, endpoint protection and backups defend against it.
- Every platform is targeted, including developers' machines.
Readers ask
What is the difference between a virus and malware?
Malware is the umbrella term for all malicious software. A virus is one type that spreads by infecting other files. Worms, trojans, spyware and ransomware are other types.
How does malware get onto a computer?
Most often through phishing emails and attachments, fake or cracked software, malicious browser extensions, compromised websites, infected USB drives and unpatched vulnerabilities in exposed services.
Can developers' packages contain malware?
Yes. Attackers publish packages with names similar to popular ones, or take over legitimate ones, so that installing them runs malicious code. Reviewing dependencies and using lockfiles and audit tools reduces the risk.
See also
- RansomwareSecurity, p. 31Ransomware is malware that encrypts an organization's files or systems and demands a ransom for the key, often also threatening to leak stolen data.
- PhishingSecurity, p. 27Phishing is a social engineering attack in which criminals pose as a trusted company or person to trick people into revealing passwords, codes, or money.
- Supply Chain AttackSecurity, p. 43A supply chain attack compromises software through something it relies on, like an open-source package, a build tool or an update server, not the app itself.
- Zero-DaySecurity, p. 50A zero-day is a software vulnerability that the vendor doesn't know about or hasn't fixed yet, so attackers can exploit it before any patch exists.
- Social EngineeringSecurity, p. 39Social engineering is manipulating people, not breaking technology, to get information, access or money, often by posing as someone the victim trusts.
- Principle of Least PrivilegeSecurity, p. 28The principle of least privilege is a security rule that every user, program, and service gets only the minimum access it needs to do its job, and no more.
Spotted a mistake or something missing on this page?Suggest an edit