Disipal Network  
Go Back   Disipal Network > Apple iPhone > General iPhone Discussion


Reply
 
LinkBack Thread Tools Display Modes
Old 11-23-2009, 06:51 PM   #1 (permalink)
Administrator
 
Disipal's Avatar
 
Join Date: Mar 2009
Location: Athens (Greece)
Posts: 220
Send a message via MSN to Disipal Send a message via Skype™ to Disipal
Default New iPhone Worm Tries to Steal Banking Information

A second worm to hit the iPhone has been unearthed by security company F-Secure.

It is specifically targeting people in the Netherlands who are using their iPhones for internet banking with Dutch online bank ING.

It redirects the bank's customers to a lookalike site with a log-in screen.
The worm attacks "jail-broken" phones - a modification which enables the user to run non-Apple approved software on their handset.
The handsets at risk also have SSH (secure shell) installed.
Many people use SSH so other programs can remotely connect to an iPhone and, among other things, transfer files. It comes with a default password, "alpine" which should be changed.
Users who have installed SSH and not changed the password are especially at risk.
The new worm is more serious than the first because it can behave like a botnet, warns F-Secure.
This enables the phone to be accessed or controlled remotely without the permission of its owner.
'Clearly malicious'
"It's the second iPhone worm ever and the first that's clearly malicious - there's a clear financial motive behind it," F-Secure research director Mikko Hypponen told the BBC.
"It's fairly isolated and specific to Netherlands but it is capable of spreading."
He added although the number of infected phones was thought to be in the hundreds rather than thousands, the worm could jump from phone to phone among owners using the same wi-fi hotspot.
A spokesperson for ING Bank said that a warning was going to be put on the bank's official website.
"We are also briefing call centre personnel," she added. "It's important to remember that the worm only affects jail-broken phones and it is only aimed at customers in the Netherlands."
The first iPhone worm, called ikee, was harmless. Users with infected phones found their wallpaper replaced with a picture of 1980s popstar Rick Astley.
It also targeted jail-broken phones which were SSH enabled.
Its creator Ashley Towns said he wrote the ikee program in order to raise the issue of iPhone security.
Disipal is offline   Reply With Quote
Reply

Bookmarks

Tags
banking, information, iphone, steal, worm


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Forum Jump


All times are GMT. The time now is 12:39 PM.

Powered by vBulletin® Version 3.8.4. Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Skin designed by Disipal