It's just easier on Windows based machines to take advantage of the poorly written code. MAC's are based on UNIX which has had 40+ years of refinement. Most of the security risks are directed at vulnerabilities in open ports and services, which is cross platform.
The only factor is that nobody gives enough a damn about macs to attack them. If their install base keeps increasing then this will change rapidly.