All the latest UK technology news, reviews and analysis

Malicious code targets Palm users

by John Leyden

29 Aug 2000

Be the first to comment

  • Tweet this

The discovery of malicious code affecting Palm devices has shown that handhelds as well as PCs are potentially vulnerable to virus infection.

The Trojan horse program, called Palm.Liberty.A, which can delete applications and databases from users' Palm devices, is disguised as a tool for people who want to obtain pirate copies of Liberty, the Nintendo GameBoy emulator program for the Palm platform.

The bug will affect any Palm device on which it is installed even if data is re-synchronised with a user's PC.

But antivirus experts said that the Trojan is not spreading and does not represent a significant threat to users, particularly those that are sensible enough to avoid pirate software sites.

Most antivirus packages have been updated to detect the virus on a user's PC before the malicious application is synchronised to the Palm device.

Eric Chien, head of Symantec's Antivirus Research Centre, said: "Whilst no users have reported being infected, this signifies the latest development for devices outside of the PC being under attack. The Palm platforms and all [personal digital assistants] have long been criticised for their lack of security as they are running on processors that do not support security features."

He added that the Trojan is best viewed as a "proof of concept", but said that security problems affecting handhelds can only be expected to increase as these devices become more connected.

The Trojan originated in Sweden and was written by Aaron Ardiri, the co-author of Liberty.

Ardiri has admitted writing the malicious code and giving it to "a few friends", and it is widely believed that one of these people posted it during an Internet Relay Chat session. It may now be present on sites and newsgroups popular with the pirated software community.

Graham Cluley, senior technology consultant at antivirus vendor Sophos, said: "This is a very low threat to Palm users who are sensible enough to avoid pirated software mailing lists and do not download pirated software."

Cluley added that a malicious program capable of self-replication on a mobile platform had yet to be discovered.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

34%

1%

11%

54%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Global Project/Programme Manager-with recruitment deployment experienc

My London client is looking for an experienced Programme...

PHP Developers (All Levels)

My leading client is looking for a number of excellent...

Group Services Manager - Telecoms

My client, a leading international name in Manufacturing...

Automated PHP Developer

My client is looking for an Automated Engineer/Developer...

To send to more than one email address, simply separate each address with a comma.