Various thoughts from an educational professional & geek.
Had an odd text on your Android device? Time to watch out for SMS worms ...
Get link
Facebook
X
Pinterest
Email
Other Apps
Google’s Android now dominates 80% of the smart phone market. Of the major phone operating systems, Android is the most vulnerable to security breaches and yet perceptions haven’t caught up with reality. People simply aren’t as worried, or as careful, as they ought to be.
If you’re using an Android and aren’t too concerned, maybe a recent announcement by a leading anti-malware company will make you stop and think. When were you last suspicious of a text from a friend?
Well, now is the time to start checking your messages with more scepticism as a virus known as “Andr/SlfMite-A” has been spreading throughout the Android world, transmitted by text messages, also known as SMS.
If you are fooled into clicking on a link embedded within the SMS, and if your phone is unprotected, the virus will in turn be installed on your own phone. The virus will then attempt to send text messages to your first 20 contacts. The message may look something like this:
Sophos
By making your contacts think this message is from you and is therefore a genuine (and seemingly honest) text message which they must act upon. It tricks them into clicking the link, unleashing malware onto their phone. And so on.
If this all sounds familiar, it is because self-replicating “worms” like these were a feature of early mass-market online viruses. A decade ago, famed worms such as ILOVEYOU or Mydoom spread through email, shutting down computer systems throughout the world and causing millions of pounds in damage.
Today’s SMS spam is spread in the same way, but things move even faster now. As soon as anyone clicks on the link, they become part of the worm’s progress. You may only be one victim with 20 contacts, but these things soon add up. If all 20 contacts fell for the link once every hour, the worm could have swamped the entire planet and all its Android devices within a day.
Fortunately not everyone falls for this, nor do all the text messages get through. In the end, Andr/SlfMite-A is likely to fizzle out. However, whether it is successful in infecting your friends, the virus also downloads a small malware application which appears to direct users towards Mobogenie, an independent Android app store.
It is important to note that Mobogenie has been hit in the past by other malware issues. There’s a reason the anti-malware community don’t consider it an effective resource for protecting your smart phone.
Should I panic?
If you already have an anti-malware application installed on your android smart phone, just check to see that its malware definitions are up to date. Then rest easy and make yourself a nice refreshing drink.
But if you do not have any protection I would be very concerned and strongly advise that you consider installing an antivirus app.
If you do get a mysterious text message from one of your contacts my best advice is to phone them and ask if they intended to send a message. If it looks as if they may be infected, point them to this article and advise them to ensure that their phone is protected.
Android is a victim of its success
Any computer and any operating system is potentially vulnerable to malicious code. So long as unsuspecting souls can be persuaded to download applications for their own personal benefit, cybercriminals will be able to exploit systems and create all kinds of mayhem.
Sadly, research has shown that over half of us could be persuaded to download malware for the right price. In some cases, manufacturers have managed to stem the supply: Apple and Microsoft, for instance, retain tight control over their smart phone app stores, ensuring a high degree of safety.
But the reality is that cybercriminals tend to target popular systems, and Android is increasingly dominant. There are many naive people out there, and more than one way to install dodgy apps.
It is important that everyone using any technology becomes more aware of the different types of attacks out there as you cannot entirely rely on experts to protect your smart phone from every attack.
We don’t all use our phones in the same way so nor are we all exposed to the same degree of risk. The way you respond to texts, emails or browser messages, the sites you visit and the applications you may download all have an effect on the security of your smart phone.
Becoming cautious should be a way of life. There is nothing wrong with checking to see if an unusual text message from a friend is suspicious; who knows, maybe they’ll even appreciate hearing your voice.
Andrew Smith does not work for, consult to, own shares in or receive funding from any company or organisation that would benefit from this article, and has no relevant affiliations.
This article was originally published on The Conversation.
Read the original article.
Ok, this is not a scientific study, the audience participation is likely to be from a self selecting group etc. So lets call this a poll amongst friends, followers and like minded. A question that is structural to my research is ... Do you think simulation can replace real hardware, when teaching networking? To remain fair, I am not going to share my opinion as it is biased and please don't try and answer this to please me (as I really don't know who will be answering and if you know me, you will know that it won't). Please take a look at the top left of this blog and based on your personal opinion, answer either yes or no. You do not have to be an expert, or an academic or even a teccie, everyone's opinion in this context counts. The opinions below are valid view points, but must not contribute to your own independent decision, please complete the question before reading these. =================================...
Ok, for many who read my blog, you may be aware that I dabble with many geeky projects, some count as work. As a fan of the shiny world of Mac, I have produced a couple of creative commons resources over the years for the Cisco Academy community, covering how Packet Tracer may be ported to a Mac. Looks like we now have a potentially tidy version three offering, moving from Virtual Machine, to Play on Mac now to a fully 'bottled' app, I have this working on v 5.3.3 and v6.0 (beta) To download please follow this link and download the app for 5.3.3, it looks like it will work on .... Snow Leopard, Lion and Mountain Lion, but this I would like to see tested. Multiuser seems to work, but you MUST set a rule in your firewall to allow this, otherwise your Mac will ignore any connection attempts. Yes you will need to unzip the contents of the folder to a location that you wish to run this, I may work on a DMG file, but lets do one step at a time. Please also note, it is 2...
Last night I deliberately started a debate on a ‘teachers of programming’ forum to gauge response. As expected those who were ‘interested’ in sticking to their ideas responded. I asked the question … I am of the view that Pascal is best kept in the past, where anyone who says that they are still teaching current programming skills using this language, worries me. Am I being unreasonable? The response was defensive and encouraged those who feel that it is something they must teach to self-acknowledge this fact. My concerns regarding Pascal stem from many positions: Old technology, being taught now …. If this were current in any way I would have less of an issue. It concerns me that some still teach C, but its structure is such that it does help programmers learn something that many systems use. But Pascal’s verbose structure is from a time gone, so why? Is it being used in anger? There is a place for scratch and greenfoot in getting stude...
Comments
Post a Comment