Detailed Report of Ikee.B iPhone Worm

December 18th, 2009 admin
Share/Save/Bookmark

Add To Delicious Digg This post Stumble this post
Topics:

SRI International has published an excellent technical report on the Ikee.B botnet that replicates on jailbroken iPhone devices. The full report can be viewed here . We’re glad we were able to provide technical details for this report regarding the attack it does against an online bank. On 18/12/09 At 10:28 AM


Originally posted on F-Secure

 
  Related Posts
Malicious iPhone worm
Malicious iPhone worm
We’ve received a sample of a malicious iPhone worm with botnet functionality. Like the Ikee worm , it only affects Jailbroken iPhones which have SSH installed and have not changed the default password. This one connects to a web-based command & control center running at 92.61.38.16 in Lithuania. The worm is not widespread, but it is... 
First iPhone Worm Found
First iPhone Worm Found
We have located the first iPhone worm, dubbed as Ikee . It’s currently spreading in the wild, but it’s only able to infect devices that have been ” jailbroken ” by their owners. Jailbreaking removes iPhone’s protection mechanisms, allowing users to run any software they want. Affected users will find that their iPhone... 
iPhone Virus-Writer’s New Job: Building iPhone Apps
iPhone Virus-Writer’s New Job: Building iPhone Apps
An Australian youth who created a worm that attacked iPhone users has been hired by a company that creates applications for the iPhone. At least one security professional expressed displeasure that the malware author has been rewarded for his hack attack. Ashley Towns, a 21-year-old student who goes by the names “Ikee” and “Ikex,”... 
Another Bot Bites the Dust?
Remember Microsoft’s action against 277 Waledac domains last week? Well, that’s one way of going after a botnet… Another way of shutting down a botnet? Arrest the botmasters! Three Spanish citizens have been arrested for running the “Mariposa” botnet. The three reportedly have no criminal records and have limited hacking... 
Group IDs hotbeds of Conficker worm outbreaks
Group IDs hotbeds of Conficker worm outbreaks
Internet service providers in Russia and Ukraine are home to some of the highest concentrations of customers whose machines are infected with the Conficker worm, new data suggests. The report comes from the Shadowserver Foundation, a nonprofit that tracks global botnet infections. Shadowserver tracks networks and nations most impacted by Conficker,... 
al Qaeda Terror Pair Hunted By Authorites – Report
American security forces last night were reportedly searching for a two-man al-Qaeda team about to attack according to a report appearing on the Mirror.co.uk News website. The report states experts think the terrorists from Yemen are on their way, but that they could also already be in the country. This report has not been confirmed by This story... 
National Security Adviser – Airline Bomber Report To Shock
There’s a great deal of speculation of what additional details may be released in today’s report. Suffice to say there were apparently additional missteps and points of failure related to the flight 253 event that will be revealed in the report. From USA Today White House national security adviser James Jones says Americans will feel “a... 
Govt. Report: Air Cargo Still Vulnerable To Terrorists
The Transportation Security Administration is failing to ensure the security of boxed cargo in passenger planes, leaving the airplanes at risk for a terrorist attack, according to a government report obtained by USA TODAY. “Air cargo is vulnerable,” says a report by the Homeland Security Department’s inspector general. The report,... 
Podcast: Windows Azure, Windows 7 zero day and 2nd iPhone worm
Podcast: Windows Azure, Windows 7 zero day and 2nd iPhone worm
Welcome again to the Alan and Mitchell Podcast. We’re still working on a new podcast name so hang in there until we have something better. During the podcast, Alan and I talk about: 1. New security features in  Windows Azure 2. The first zero day for Windows 7 3. 2nd iPhone worm 4. HP/3Com 5. Why is security so hard 6. Fortinet’s... 
BeyondTrust Report on Removing Administrator: Correct?
BeyondTrust Report on Removing Administrator: Correct?
Last week BeyondTrust published a report titled BeyondTrust 2009 Microsoft Vulnerability Analysis . The report offers several interesting conclusions: [R]emoving administrator rights will better protect companies against the exploitation of: 90% of critical Windows 7 vulnerabilities reported to date 100% of Microsoft Office vulnerabilities reported... 
  Related Tweets from Twitter
  Related News from Digg
No comments yet.
You must be logged in to post a comment.
TOP