YOUR IT - Technology for you

No. 1 Story

Support for NBN not improving

Various media outlets are today carrying an AAP report of a survey that purports to show increased support for the NBN. Had these outlets dug a bit deeper they might have found that the story was somewhat different.

read more

Scanning QR codes can infect your smartphone

Your IT - Mobility

Cybercriminals are using QR codes to infect mobile phone with malware in a rapidly growing mobile malware 'industry'

According to Australian security technology distributor AVG Technologies, "Putting a malicious QR code sticker onto existing marketing material or replacing a website's bona fide QR code with a malicious one could be enough to trick many unsuspecting people…This new technique is expected to gain momentum in 2012 and beyond, as the user does not know what lies behind the QR code until the malware is already installed and running.

"For example a QR code could be used to download malware that directs the phone to send text messages to premium SMS numbers.'

AVG says, in its Community Powered Threat Report  for Q4 2011: "Malware targeting mobile devices evolves frighteningly fast and has the potential of being even more destructive than before…While consumers are going mobile, so are the cyber criminals. We have witnessed the use of the same malicious intent tactics targeting mobile devices: social engineering, stolen or fake certificates to sign malware, root kits and other tactics."

AVG's CTO, Yuval Ben-Itzhak, said: "As phones become more like computers, so do the risks. Many sophisticated tricks of the trade from computers are now being repurposed for phones. However, as phones are often tied into billing systems the gains can be far greater."

The report also warns that digital signatures attached to Android applications offer little guarantee of trust "Stealing or faking a private key of a trusted source (developer), will allow cyber criminals to sign their malicious applications with the same key as the trusted developer," it says.

"By doing so, the cyber criminal could sign and distribute applications that maliciously replace the authentic applications or corrupt them."

The full text of this story is published in ExchangeDaily. iTWire's daily newsletter for telecommunications industry professionals. If telecoms is your business: you'll find in-depth, industry-specific news, analysis and commentary in ExchangeDaily
It is available only on subscription, but you can check out a recent edition (no forms to fill in) or take a free trial

Loading comments ...

The Australian IT Directory

You may have missed


Advertisement

- sponsored feature -

The Death of Traditional BI: What’s Next?

How to Make Business Discovery Work for Your Business IP PABX BUYING GUIDE

Business Discovery takes its cues from consumer apps. Like Google, it encourages us- ers to hunt for and explore data without worrying about or even noticing the underly- ing technology. Their entire experience is working within an intuitive interface to get real-time, self-service results with only minimal training. ...more