« Crontab way around in Linux
The Johns get owned »

iPhone users at risk

November 9th, 2009

This is officially the first ITW (in the wild) Worm for the iPhone. It is affecting users that have ‘jailbroken‘ their device and still have the default password ‘alpine’.

The Worm dubbed sshgate by security company Intego has several variants, sshgate.d being the most annoying since it overwrites cydia , an app used by jailbroken iPhones.

Currently the Worm’s payload is to change the user’s wallpaper, but we could imagine a more destructive or invasive behaviour in the future.

Jailbreaking an iPhone is illegal and the numbers on how many iPhones have been hacked is not clear. Current mitigation would be changing the default password on the device.

For users that have already been infected, there is no Anti Virus software available as an app from the iPhone store. However, all is not lost, since the user can run a security solution such as Virus Barrier from their Mac while they plug in their Phone with the USB cord.

The iPhones are becoming more interesting of a target for malware authors, with already 7.3 million units sold in Q4 2009.

Jerome Segura

    This entry was posted on Monday, November 9th, 2009 at 10:41 am and is filed under Mac security. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

    Comments:

    • (0) comments
    • |
    • Add your comments




ParetoLogic, a Microsoft Certified Partner

 

RSS feed to this site Twitter Linkedin YouTube Channel

 

RSS feed to this site
Jerome Segura is a Security Analyst working at ParetoLogic.

You can contact him at:
MalwareDiaries Email

 

Pages

  • URL Clearing House
  • VB2009 pictures
  • Zheng™ Technology
  • About
  • Contact Us



Security Software

  • XoftSpySE Anti-Spyware
  • Anti-Virus PLUS
  • Privacy Controls



Malware Top 10

  • Koobface Worm
  • DNS Changer Trojan
  • Fake Alert Trojan
  • Windows System Suite
  • Smart Protector
  • Home Antivirus 2010
  • PC Antispyware 2010
  • System Security
  • AVCare
  • Perfect Defender 2009



Archives

  • March 2010
  • February 2010
  • January 2010
  • December 2009
  • November 2009
  • October 2009
  • September 2009
  • August 2009
  • July 2009
  • June 2009
  • May 2009
  • April 2009
  • March 2009
  • February 2009
  • January 2009
  • December 2008
  • November 2008
  • October 2008
  • September 2008
  • August 2008
  • July 2008
  • June 2008
  • May 2008
  • April 2008
  • March 2008



Categories

  • Adware (1)
  • Banker Trojans (4)
  • Botnets (3)
  • Conferences (4)
  • DDos (1)
  • Exploits (48)
  • Fake codecs (38)
  • IM threats (1)
  • Interviews (5)
  • Keyloggers (2)
  • Mac security (15)
  • Malware Trends (69)
  • Phishing (8)
  • Podcast (1)
  • ransomware (5)
  • Research (46)
  • Rogue software (53)
  • Rootkits (2)
  • scams (9)
  • Social Networking (6)
  • Uncategorized (118)
  • Wireless Security (2)
  • world map (1)



 
 
 
Microsoft is a registered trademark of Microsoft Corporation in the United States and/or other countries.

© 2010 ParetoLogic Inc.