PDA

View Full Version : S60 Vulnerability - Remote SMS/MMS Denial of Service "Curse of Silence"



wraggster
December 31st, 2008, 19:11
The "CurseSMS" attack is a remote SMS/MMS denial of service, recently discovered by Tobias Engel, and disclosed at CCC. The attack consists in sending a maliciously crafted SMS to the potential target. Upon reception of the malicious SMS, the targeted device may no longer be able to receive any further SMS or MMS messages, its messaging system thereby effectively becoming deaf. Depending on the operating system version, this state may persist until the device is factory reset. Fortinet have released a tool called FortiCleanUp which effectively blocks and disables the remote SMS/MMS Denial of Service attack.

http://my-symbian.com/s60/software/applications.php?name=FortiCleanUp&fldAuto=1825&faq=37