Symbian Malware – Signed

I saw some random references to something called Sexy View, malware aimed at Nokia devices. I was just going to ignore it, but then I realized it appears to be a signed application. Delicious. If nothing else that should allow the response folks to track down where it came from I would assume. The reports out there are vague so far at best, but I’m hoping at some point something will shed some light on how this came about. I’m assuming something happened like some company got careless (or went out of business and just ignored) their signing key for applications, and some malicious party got hold of it. Very curious about this I am.

This entry was posted in Community, Software, Technology, ThisIsMobility. Bookmark the permalink.

One Response to Symbian Malware – Signed

  1. tz says:

    It depends on how it was signed. MD5 is broken (i.e. I could copy a signature on an existing executable if it uses a signed MD5 hash).

    The Security Now podcast at GRC.com had some information on SSSL certificates! signed by MD5 being forged.

Leave a Reply

Your email address will not be published. Required fields are marked *

*

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong> <pre lang="" line="" escaped="" highlight="">