-
A recent study found that Mac users actually deal with more malware, phishing, scams, privacy issues, and even identity theft than Windows users.
-
Just 35% of Mac users bother with any sort of security software, compared to 42% of people on Windows.
-
The study finds that the idea that buying a Mac keeps you safe from online threats isn’t really true.
A lot of Mac users think their computers are safer than Windows PCs. But Kaspersky’s latest survey shows that believing this can actually create security risks. Based on the survey, 12% of macOS users dealt with malware infections in the past year, compared to just 9% of Windows users.
The same gap appeared with phishing. Twelve percent of Mac users reported encountering fake emails, websites, or messages. Among Windows users, this figure was at 9%. Mac users (about 16%) also reported more scams and investment fraud compared to 13% for Windows users.
Privacy problems showed another gap. About 11% of macOS users encountered privacy violations. On the contrary, only 8% of Windows users faced this problem.
Theft of personal data occurred more frequently among Mac users too. 12% of Mac users said someone stole their personal data, while only 7% of Windows users had the same problem.
These statistics are based on a global survey performed by Kaspersky market research center in March 2026. 7,200 respondents were asked about their experience across 18 countries.
However, these are self-reported experiences. It means that these figures do not represent the measurement of all attacks that took place within the year.
Windows users report stronger security habits
The survey also found a clear difference in how users protect themselves. The biggest gap involved suspicious emails and links. Sixty-two percent of Windows users said they avoid opening them. Only 51% of Mac users reported that they followed the same rule. This 11 percent difference is extremely important since phishing is always based on clicking on links.
Windows users also reported better password habits. When it comes to passwords, 52% of Windows users say they go for complex ones, while just 45% of Mac users do the same. Creating unique passwords for every account? Thirty-eight percent of Windows folks handle it, but only 35% of Mac users do.
Two-factor or multi-factor authentication showed another gap, 51% of Windows users say they use it, compared to just 46% of Mac users. Website checking followed the same pattern. Forty-two percent of Windows users reported checking the website URL before providing any personal information, while only thirty-six percent of Mac users did so.
Yet even in cases where the computer operating system features strong built-in security measures, some habits might be crucial. Attackers don’t always compromise the computer itself; they can instead trick the person using it.
Mac’s built-in security does not remove the risk
Apple has built several security layers into macOS. Its Gatekeeper system checks downloaded apps. The second mechanism that Apple employs is notarization, which helps identify any malicious activity contained within the application.
MacOS has XProtect as well, which is the built-in malware protection from Apple. It detects any known malware and removes infections. It also receives security updates separately from normal system updates. Those protections make macOS harder to attack in some situations. They do not make it immune.
Malware attacks illustrate this. As seen from one Kaspersky report, malware threats such as Banshee, which is able to steal browser passwords, crypto wallet information, and many other types of information from Mac users, have become a threat.
The hackers have also targeted Mac users through software and search advertising. In one 2026 campaign, criminals disguised the AMOS data stealer as popular AI tools. The same campaigns used different malware against Windows users.
Kaspersky spotted over two dozen fake crypto-wallet apps hiding in the Apple App Store in 2026. The apps’ main purpose is to trick users into handing over their sensitive personal information to attackers.
The threat is bigger than malware
The survey points to a wider problem. Many modern attacks do not depend on exploiting a flaw in macOS or Windows. They rely on deception.
A fake login page can steal a password. A fake software update can install malware. A convincing investment offer can lead to financial loss without infecting the computer. That helps explain why phishing, scams, and data theft keep showing up in Kaspersky’s reports.
The security firm’s broader research for 2026 told the same story. According to the research, 56% of the respondents reported having been victims of different kinds of fraud last year. 45% of respondents claimed to have experienced attacks on their devices, accounts, or personal information.
Kaspersky’s own anti-phishing tools blocked more than 140 million phishing and scam attempts, just in the first three months of 2026. That’s a lot of danger packed into a short time.
The broader security picture also suggests that Windows is still very much a prime target. As seen from Kaspersky’s 2025 security report, 48% of Windows users experienced threats compared to 29% of Mac users who had similar problems.
Thus, recent statistics do not indicate that Apple computers and smartphones have become more dangerous than Windows computers. On the contrary, it brings out another problem. Mac computer users’ assumption that they do not require additional security tools might expose them to danger.
Why good security practices matter
The latest statistics aren’t suggesting that all Mac users should download a third-party antivirus program for security reasons.
While Apple has built in many security features in its macOS, users have a part to play to ensure complete safety. Regular operating system updates and the use of strong unique passwords will go a long way. They also need to activate multi-factor authentication where applicable and be cautious of strange links.
Probably, the biggest takeaway from the latest Kaspersky survey is quite simple. While having a secure operating system is one of the ways to minimize risks, it will not help to defend against any scams.
When cybercriminals start attacking users instead of software vulnerabilities, safe online practices will always remain among the key defense mechanisms. For Mac users, the survey clarifies one thing, feeling safe may sometimes be the very thing that lowers their guard.
The same principle applies to privacy in the physical world, UK pubs, theatres, and private clubs have begun banning Meta’s smart glasses over concerns that their discreet cameras enable surreptitious recording, with Wetherspoons telling customers to “turn the cameras off” because filming staff or patrons without permission violates the venue’s code of conduct.