Dumb phones can be attacked too

Posted by admin on Jan 17, 2011 in apple, Iphone, Wireless |

Feature phones are utilised by more grouping than smartphones, but intend inferior section scrutiny.

Feature phones are utilised by more grouping than smartphones, but intend inferior section scrutiny.

(Credit:
Collin Mulliner)

Much of the communicating of section threats to ambulatory phones revolves around smartphones, but researchers hit institute that inferior modern “feature phones,” ease utilised by the eld of grouping around the world, also are undefendable to attack.

Feature phones hit Web browsing, MP3 players, and added programs accepted voice-only phones lack, but they hit inferior technology noesis and feature combining than smartphones.

Because section investigate on feature phones has been eclipsed by investigate on favourite smartphones same Android and
iPhone, ambulatory scientist Collin Mulliner said he definite to invoke his tending to the lower-end phones. After all, so whatever grouping are ease using them. (Mulliner and added scientist demonstrated an SMS-type move on my iPhone at the BlackHat section word in 2009).

Mulliner, a PhD enrollee at Technical University Berlin, and digit of his master’s honor students, Nico Golde, unconcealed a artefact to belt grouping using feature phones soured the ambulatory meshwork and modify break the phones entirely. They did this by composition primary cipher to beam SMS-type messages to the sound that utilised primary characters, which caused the figure to disparity from the network, Mulliner told CNET today. In whatever cases, the sound would meet closed downbound after individualist much messages were sent, he said.

The cipher needs to be cursive specifically to direct the individualist ambulatory sound brands and Mulliner institute that it worked on feature phones from every the field manufacturers. The researchers contacted Nokia, Sony Ericsson and Motorola, but are ease disagreeable to accomplish Samsung and LG, he said.

So far, the manufacturers are attractive the concern seriously, according to Mulliner. For instance, Nokia said they would mend the problem, which is not plain in their sort newborn feature phones, he said.

The researchers demonstrated an move during a show entitled “SMS-o-Death” presented a some weeks past at the Chaos Communication Congress, a coder word in Berlin. They did not publicize the cipher to carry these attacks.

Attackers, if they were were healthy to indite move cipher from irritate on their own, could beam the vindictive cipher as an SMS direct to a sound number, or revilement and adhesive it into a Web modify of an online-based SMS sending service, according to Mulliner.

Speculating on doable motivations for wanting to move phones in this way, Mulliner said someone could direct a limited chief or polity authorised for playing or semipolitical purposes or start a large-scale move on a assemblage of phones to essay to influence or alteration a carrier’s business.

The easiest artefact to cipher the difficulty would be for manufacturers to display updates for the phones, but because there is no semiautomatic update impact as with smartphones, they would hit to inform customers to download an update from the concern Web site, Mulliner said.

Also, carriers could beam an signal to customers most the availability of an update and could modify update the sound cipher remotely for the phones that hold that, he said. Meanwhile, operators could separate discover chanceful messages before they accomplish the phone, if they monitored for the limited move cipher as identified by the researchers for apiece sort of phone.

“Basically, you can’t do anything most it if you hit a undefendable phone,” Mulliner said, when asked what individuals crapper do to protect themselves. “People should occurrence the concern to communicate for an update and communicate the cause to protect them by filtering discover the messages.”

Tags: , , , , , , , , ,

Leave a Reply

XHTML: You can use these tags:' <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

 

Copyright © 2012 aizong.org All rights reserved.
Desk Mess Mirrored v1.4.2 theme from