Worm ready to wriggle into smart phones

By Robert Lemos, CNET News.com
Tuesday, June 15, 2004 11:14 AM
Antivirus companies on Monday raced to decipher the workings of the first worm to target smart phones, while saying that the current incarnation of the program poses little threat.

The worm program, dubbed Cabir by Russian antivirus company Kaspersky, apparently uses the Bluetooth short-range wireless feature of smart phones that run the Symbian operating system to detect other Symbian phones, and then transfers itself to the new host as a package file. While able to replicate the spread of the virus in research settings, antivirus companies have not found any evidence that the program is infecting smart phones outside of those limited test cases.

"I don't think it will spread," said Vincent Gullotto, vice president of Network Associates' antivirus emergency response team. The group that is thought to have created the worm "likes to make concept viruses," he said, "so they probably just wanted to show that it could work."

Antivirus companies were apparently sent a copy of the worm from the group that created it. While the program does not do anything but spread, and has not yet been detected among the public's phones, Gullotto believes that other virus writers may use the worm as a departure point for their own development.

The Symbian software dominates the smart-phone market, which remains small, representing only a thin slice of the more than 1 billion cell phones in circulation. It's expected to battle a similar product from Microsoft for the lead in the operating system market through the end of the decade. Currently, Symbian's operating system is in a majority of smart phones--devices that combine the features of cell phone and a personal digital assistant.

Hackers and researchers have repeatedly warned about problems with the security of the Bluetooth wireless standard. This worm, however, mostly takes advantage of the amount of trust the Symbian operating system invests in other Symbian-based smart phones.

After infecting a phone, the program creates an application package file containing the worm and passes it to another phone over an automatically established Bluetooth connection, according to antivirus companies. The phone that received the program installs the application, thus infecting itself.

Nokia, which took the wraps off five new phones on Monday, is in the process of buying a controlling share of Symbian, the company that licenses the operating system of the same name. Only one of the new phones runs the Symbian operating system.

CNET News.com's Ben Charny contributed to this report.


WORTHWHILE?

0

0 votes
Blog

Talkback 0 comments

There are currently no comments for this post.


Tech Jobs Now!

Search for your ideal tech job:

How to protect yourself from RAID-related UREs

Enterprise Servers & Storage

An Unrecoverable Read Error during a RAID rebuild can ruin an entire day. Scott Lowe talks about UREs and how you can avoid falling victim to this silent threat.


Read more »



Buying a projector? Try an LED TV instead

Blog thumbnail

If you're thinking of buying a new projector for your office meeting room, why not consider getting an LED TV instead. LED TVs are similar to LCD TVs except that..... by Lee Lup Yuen

Read more »

Tags

  1. attack
  2. authentication and encryption
  3. blog
  4. data security
  5. e - mail
  6. hacking
  7. internet
  8. malware
  9. microsoft corp.
  10. network
  11. network security
  12. pc security
  13. researcher
  14. security
  15. security management
  16. software
  17. spam and phishing
  18. symantec corp.
  19. viruses and worms
  20. web