Welcome | Sign In
MacNewsWorld.com
Security

Mobile Phone Worm Inches Its Way to US

Print Version
E-Mail Article
Reprints
Mobile Phone Worm Inches Its Way to US

"In the PC world, for example, some of the malware we're seeing can infect most or all of the vulnerable hosts in a matter of hours or minutes," said Ed Moyle of Security Curve. "In the phone world, it could take years to get to the same relative level of infection."


The mobile phone worm Cabir has popped up in a Santa Monica, California, store window, its first known appearance in the U.S.

The news was greeted with a shrug by one analyst. "This worm's appearance in the wild is no surprise," Pete Lindstrom, research director at Spire Security, told TechNewsWorld. "After all, it was prophesied by the sacred texts of trade publications and antivirus vendors, and thus it happened. And it will happen again."

Eating Battery Power

The virus, which announces itself on mobile phones with the word "Caribe," was first discovered by an employee of security software provider Symantec (Nasdaq: SYMC). Cabir first appeared eight months ago in the Philippines and has since spread to 12 countries.

The malware sucks up battery power and blocks Bluetooth connections. It was originally written as a proof-of-concept worm and sent only to security firms as a warning.

Cabir searches for the Bluetooth opening and sends a Symbian Installation System to those phones. As with infected e-mail attachments, nothing will happen without user interaction. With Cabir, a user must accept the transmission and manually install it.

Only phones running Symbian OS with Series 60 software that have the Bluetooth wireless feature set to "discovery" mode are vulnerable to infection. The infected phones in Santa Monica were Nokia 6600 models.

Slow Spread

Because mobile phones use so many different operating systems, Cabir is unlikely to cause much damage.

"Unlike personal computers and the Internet, mobile phones and mobile phone networks are not generally open systems permitting unknown parties to introduce software," Ira Brodsky, president of Datacomm Research, told TechNewsWorld.

Ed Moyle of Security Curve concurred.

"I think the fact that it took eight months to get to the U.S. is a significant indicator of the infection rate that we're likely to see now that it's here," he told TechNewsWorld.

"In the PC world, for example, some of the malware we're seeing can infect most or all of the vulnerable hosts in a matter of hours or minutes," Moyle said. "In the phone world, it could take years to get to the same relative level of infection."

Narrow Focus

The overall problem of mobile device malware, however, is likely to get worse as virus writers find more sophisticated ways to spread the viruses and mobile operating systems become more standardized.

Earlier this month, IBM (NYSE: IBM) released its annual Global Business Security Index Report and named malware and spam attacks on mobile devices as a growing threat.

"Yes it is likely to get worse. People must care a lot more and be willing to pay for security. Or not, and learn to live with this type of thing," Lindstrom said.


Print Version E-Mail Article Reprints More by Susan B. Shor


More by Susan B. Shor

Salesnet President Jonathan Tang Ready to Take On Salesforce.com
February 07, 2006
"We think it's Salesnet's time now. We've been around since the beginning, we've been lying low, but you're going to start to see more of us. We've done it through organic growth and happy customers. We continue to focus on customers."
Comcast Follows Time Warner in Offering 'Family' Programming Tier
December 23, 2005
"The demand for this type of tier is coming from the FCC and Christian conservatives. It has nothing to do with legitimate consumer demand," Todd Chanko, senior analyst at Jupiter Media, told the E-Commerce Times.
High-Risk Flaw Found in Symantec's Software
December 22, 2005
"Part of the significance of this vulnerability announcement is that your machine can be exploited without you needing to do anything at all. You don't even have to open an e-mail or attachment, and this happens with the default configuration of the product," said Forrester Research senior analyst Michael Gavin.
Don't miss a story -- sign up for our FREE e-mail newsletters and view the latest headlines at a glance.
Tech News Flash [ View Sample ]
E-Commerce Minute [ View Sample ]
ECT News Network Weekly Newsletter [ View Sample ]
Shortcuts
ECT News Network Information
Reader Services
Corporate
ECT News Network