| Mobile malware to get worse, McAfee predicts |
Nov. 30, 2006
Malware attacks on mobile devices will likely increase in 2007, reports anti-malware maker McAfee in its "top ten predictions for security threats in 2007." With increased use of Bluetooth, WiFi, USB, multimedia, SMS, instant messaging, email, and the web, the chances are growing for "cross device contamination," the company says.
During 2006, malware authors worked toward producing "PC-to-phone and phone-to-PC infection vectors," McAfee notes. In particular, MSIL/Xrove.A, a .NET malware that can infect a smartphone via ActiveSync, was successful as a PC-to-phone vector. Currently, phone-to-PC vectors "remain primitive in nature," for example, infecting devices via removable memory cards.
"SMiShing," which ports email phishing techniques to SMS, is also expected to increase next year. In August, McAfee's Avert Labs received its first sample of a SMiShing attack -- a mass mailing worm that also sends SMS messages to mobile phones. By the end of September, four variants of the worm had been discovered, according to the company.
McAfee expects "for-profit" mobile malware to increase in 2007. For example J2ME/Redbrowser, a Trojan horse program, pretends to access WAP (wireless access protocol) web pages via SMS messages, but instead sends SMS messages to "premium rate" numbers, thus costing the user more than intended.
Commercially available mobile spyware was also on the rise in late 2006, and is expected to grow in 2007, according to McAfee. Most such programs monitor phone-numbers and SMS call-logs, or steal SMS messages by forwarding copies to another phone. Two particularly unsettling spyware examples, however, are one that enables eavesdropping by remotely activating the microphone on the victim's device, and another that activates a phone's camera.
Naturally, McAfee recommends that both individuals and enterprises keep updated with the latest Data Definition Files (DATs), install the latest patches, and implement a "multi-layered approach" to detecting and blocking attacks.
Related stories:
(Click here for further information)
|
|
|
7 Advantages of D2D Backup
For decades, tape has been the backup medium of choice. But, now, disk-to-disk (D2D) backup is gaining in favor. Learn why you should make the move in this whitepaper.
4 Legal Reasons to Control Internet Access
The Internet is obviously a valuable resource for many organizations. However, many are exposed to legal liability concerns because they fail to control Internet access. Learn if you're safe in this white paper.
Rapidly Resolve J2EE Application Problems
Whether you are in the process of building J2EE applications or have J2EE applications already running in production, you must ensure that they deliver the expected ROI. Learn how in this white paper.
Load Testing 2.0 for Web 2.0
There are many unknowns in stress testing Web 2.0 applications. Find out how to test the performance of Web 2.0 in this white paper.
Build Better Games Online
For the game infrastructure providers, life is complex. Making money from games has become more complicated. Why? Find out in this white paper.
Building a Virtual Infrastructure from Servers to Storage
This white paper discusses the virtual storage solutions that reduce cost, increase storage utilization, and address the challenges of backing up and restoring Server environments.
Gaining Faster Wireless Connections with WiMAX
Welcome to what is quickly becoming the hyperconnected world where anything that would benefit from being connected to the network will be connected. Learn more in this white paper.
Is Your Desktop a Security Threat?
The new wave of sophisticated crimeware not only targets specific companies, but also targets desktops and laptops as backdoor entryways into those business’ operations and resources. Learn how to stay safe in this white paper.
Increasing SAN Reliability by 100 Percent
Storage area networks (SAN) are a strong part of storage plans. Learn how to increase your reliability and uptime by 100 percent in this case study.
|
|
|
|
|