<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; symbian virus</title>
	<atom:link href="http://www.darknet.org.uk/tag/symbian-virus/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Chinese Firm Writes First SMS Worm</title>
		<link>http://www.darknet.org.uk/2009/07/chinese-firm-writes-first-sms-worm/</link>
		<comments>http://www.darknet.org.uk/2009/07/chinese-firm-writes-first-sms-worm/#comments</comments>
		<pubDate>Thu, 30 Jul 2009 10:54:53 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[mobile phone virus]]></category>
		<category><![CDATA[mobile phone worm]]></category>
		<category><![CDATA[sexy space]]></category>
		<category><![CDATA[sms worm]]></category>
		<category><![CDATA[symbian sms virus]]></category>
		<category><![CDATA[symbian sms worm]]></category>
		<category><![CDATA[symbian virus]]></category>
		<category><![CDATA[symbian worm]]></category>
		<category><![CDATA[symbos yxe]]></category>
		<category><![CDATA[worms]]></category>
		<category><![CDATA[yxe worm]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1966</guid>
		<description><![CDATA[Ah another first, and once again China is at the forefront! We recently reported about a Chinese company sharing their huge malware database and now a group of Chinese companies has managed to develop the first SMS worm! It&#8217;s a pretty cool concept, abusing the Symbian Express Signing procedure. It reminds me of the heydays [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>Ah another first, and once again China is at the forefront! We recently reported about a <a href="http://www.darknet.org.uk/2009/07/chinese-company-shares-huge-malware-database/">Chinese company sharing their huge malware database</a> and now a group of Chinese companies has managed to develop the first SMS worm!</p>
<p>It&#8217;s a pretty cool concept, abusing the <a href="https://www.symbiansigned.com/">Symbian Express Signing</a> procedure. It reminds me of the heydays of self-propagating e-mail worms when corporate e-mail servers were getting flooded because everyone in the company was sending the same attachment to everyone else in their address book.</p>
<p>Now with the application integration on mobile phones it&#8217;s now possible on mobile phones.</p>
<blockquote><p>Three Chinese companies &#8212; XiaMen Jinlonghuatian Technology, ShenZhen ChenGuangWuXian Technology, and XinZhongLi TianJin &#8212; created the &#8216;Sexy Space&#8217; worms or Yxe Worm (Worm:SymbOS/Yxe.D) and submitted to Symbian OS-based phones through the express signing procedure, said F-Secure Security Labs recently.</p>
<p>&#8220;The worm is the first text message worm in history,&#8221; said Chia Wing Fei, security response senior manager at F-Secure. &#8220;Our labs have received few confirmed reports from China and Middle East at the moment.&#8221;</p>
<p>The first stage of Symbian&#8217;s signing process is done automatically using an antivirus engine, said Chia, adding that once an application has been submitted and scanned, random samples are then submitted for human audit. </p></blockquote>
<p>So what next? Anti-virus for your mobile phone? Well that already exists (e.g. <a href="http://www.kaspersky.com/kaspersky_mobile_security">Kaspersky Mobile Security</a>).</p>
<p>I&#8217;m sure the Symbian developers will tighten up the OS and the signing procedure too. It&#8217;s an area that is definitely going to get some attention with people starting to do more on their phones (<a href="http://phobos.apple.com/WebObjects/MZStore.woa/wa/viewSoftware?id=283646709&#038;mt=8">PayPal just came out with an iPhone app</a> for example) and mobile banking has been gaining popularity.</p>
<blockquote><p>However, most applications are not inspected by humans through the express signing procedure, he noted.</p>
<p>An attacker can therefore put a web link pointing to the worm&#8217;s web site into a text message and invite the user to download the worm by clicking the link, Chia said. Once activated, the worm will install itself on the device, and send a similar text messages to all phonebook contacts listed, he added.</p>
<p>&#8220;These messages are sent in your name and from your phone. It means you will pay for each SMS sent by the worm. A typical cost for a single text message might be 5 cents. If you have 500 contacts in your phone, an infection would cost you 500 times 5 cents,&#8221; Chia noted. </p></blockquote>
<p>It could cost you some money getting infected, and definitely cause a headache for you and your friends.</p>
<p>No one likes spam right? Especially when it&#8217;s serving up some self-replicating malware.</p>
<p></p>
<p>Source: <a href="http://www.networkworld.com/news/2009/072709-f-secure-chinese-firms-write-worlds.html">Network World</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Chinese+Firm+Writes+First+SMS+Worm+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D1966+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/07/chinese-firm-writes-first-sms-worm/&amp;t=Chinese+Firm+Writes+First+SMS+Worm" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2009/07/chinese-firm-writes-first-sms-worm/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/07/chinese-firm-writes-first-sms-worm/&amp;title=Chinese+Firm+Writes+First+SMS+Worm" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/07/chinese-firm-writes-first-sms-worm/&amp;title=Chinese+Firm+Writes+First+SMS+Worm" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2009/07/chinese-firm-writes-first-sms-worm/&amp;title=Chinese+Firm+Writes+First+SMS+Worm" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/07/chinese-firm-writes-first-sms-worm/&amp;title=Chinese+Firm+Writes+First+SMS+Worm" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2009%2F07%2Fchinese-firm-writes-first-sms-worm%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/07/chinese-firm-writes-first-sms-worm/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
	</channel>
</rss>

