Smartphone malware: Still the next big thing?

By Tim Conneally | Published April 16, 2009, 1:43 PM

Microworms (courtesy BuyMicroWorms.com)Conficker may have dominated security headlines this quarter, but Finnish security company F-Secure says the lesser-known "Sexy View" worm represented a new threat: the SMS and phone-based worm and the mobile botnet.

Sexy View is a social engineering worm which uses a device's contact list to spread. It sends a text message to all contacts with a link to a Web site that installs a malicious application that shares the phone's information (like its serial number) with the virus' creators. It targets devices running Symbian S60 3rd edition and was first found on Nokia 3250 handsets.

"It is the first text message worm ever." said F-Secure's Chief Research Officer Mikko Hypponen. "It's also the first mobile phone worm that circumvents the signature checks that are meant to secure the latest smartphones. And the motive behind it seems to be to collect information for mobile phone spamming purposes. Mobile phone spam is already a big problem in some parts of the world -- eventually it will be an issue everywhere."

But there have already been hundreds of malwares for Symbian besides simple text messaging, and the opportunities for them to be fruitful and multiply extend further than mere spam. Last week, Visa introduced the world's first Near Field Communications technology for "wallet phones," where an NFC chip with the owner's bank information is installed in the phone, allowing simple SpeedPass style use in transactions.

Fortunately, the first handset to use the technology is the Nokia 6212, which runs Nokia S40, a non-Symbian operating system that does not let the user install new applications.

F-Secure is understandably concerned with mobile threats of this nature, as it's been the default anti-virus software provider for a number of Nokia devices since 2004. Hypponen has repeatedly warned the public that the increasing connectivity of mobile devices provides new ingress for malware.

Shortly after signing a deal with F-Secure, Nokia enlisted the help of Symantec for the protection of S60 and UIQ devices, and Trend Micro offers a number of mobile virus protection services, which includes not only protection for Symbian devices, but also for Windows Mobile for both PocketPC and Smartphone.

There's a catch to this, though, and perhaps you've already spotted it.

Most of the alarmist reports of mobile infections in the last few years have come from companies that also happen to make mobile virus protection software, spawning the question: "Are Symbian and Windows Mobile mobile devices actually in danger, or is this simply a case of manufactured demand -- nay, fearmongering -- by security providers?"

Fortunately, there is now more nonpartisan conviction to back up the fear. A recently published study funded by Deutsche Telekom examined anomaly detection in smartphones, and came to this conclusion: "We believe that the evolution of malware for mobile devices will take a similar direction as the evolution of PC malware. Thus, similar problems will have to be encountered, e.g., missing signatures for unknown threats and new malwares appearing at high frequency."

The group tested several different malware classes on a Nokia E61 running Symbian OS 9.1, a Nokia 7610 running S60 7.x, and an HTX TyTN B running Windows Mobile 5. One virus the group tested took a picture through the Nokia E61's front camera when the keypad was being used, guaranteeing a shot of the user. This picture was then sent via MMS to a pre-defined mobile number. Another malware was remotely controlled by SMS messages which could delete the user's entire phonebook when the SMS was opened.

However, these malwares are not likely to be encountered in the wild, as they were created by the research group. The group said that, despite their best efforts, they had to make their own to produce realistic results because there is actually a sufficient lack of available smartphone malware for newer platforms.

Nonetheless, the group finds that protection is absolutely needed, but as is the case with PC anti-virus software, signature-based protection methods are simply not good enough.

[Picture of real micro-worms courtesy of BuyMicroWorms.com]

Comments

View comments by with a score of at least

Good. I hate smart phones. Blackjack ...... gone. iPhone......gone after two months, and finally I went back to the only phone that can actually send and receive calls from my basement, the cheap a** and free Motorola RAZR.

My idiot, unemployed, and broke friend just met a new woman about two weeks ago. They both ran out and got iPhones and matching Bluetooth headsets. It just goes to show what I've always said, if you don't have money, act like you do. They both are always dressed up, wearing cologne, and are broke as ****.

All they do is shop and eat out, running up thousands of dollars on credit cards with one unemployment check coming in. His Honda is about to be repossessed, she has no car, but they had to have those iPhones.

Bring on the viruses and malware.

Retards.

Score: 0

|

This had to happen sometime, but it will certainly suck when it does. With much larger market shares, I'm afraid that Apple and Linux OS's won't be immune this time.

Great article.

Score: 0

|

Google Buzz: Another attempt to harness the content firehose

Similar to how Google successfully remolded RSS into a Google tool, the company now wants to remold Gmail into one big Google party

Success: Google's Nexus One shipping support line takes tech support questions

UPDATED Though the support line had been set up for shipping, it now appears Google personnel are happy to hear technical concerns.

Goodnight, moon: What I learned from a space shuttle

Carmi Levy | Wide Angle Zoom: Can the tech sector learn a few lessons from the space program? Certainly, if you believe in learning from someone else's mistakes.

Netflix to FCC: NBCU + Comcast could bypass net neutrality

Weaning itself from the post office as its main means of video transfer, Netflix would like someone to ensure the Internet remains just as unencumbered.

Rhapsody to become an independent company

RealNetworks and Viacom subsidiary MTV Networks have begun the process of spinning off music service Rhapsody into an independent company.

Nvidia debuts new dynamically-switched graphics card technology

Today, Nvidia announced that its Optimus technology for GPU switching will soon be available in a handful of Asus notebooks.

Google lowers 'unusually high' early termination fee on Nexus One

Google has lowered the Nexus One's early termination fees which were twice as high as the norm.

Netgear and Ericsson introduce a mobile broadband hotspot with a twist

It's a mobile broadband hotspot, but it's for use in the home.

Report: Streaming video drove 72% global increase in mobile data consumption

A new study says streaming video is "the single most influential factor driving the need for increased mobile network capacity."

Stymied by continuing Nexus One 3G issues, Google blames the environment

If you're still afflicted with the 3G flip-flop trouble, then you might consider moving. That appears to be the only suggestion Google can give for now.

Wolfram|Alpha makes a strong argument for virtual keyboards

"Answer engine" Wolfram|Alpha has updated its iPhone/iPod Touch app, harnessing the strength of the virtual keyboard.