Archive for January 23rd, 2008

Filed Under (Internet, Software, security) by Telix on January-23-2008

After reports about new Skype flaw, Skype team has been forced to turn off a video-sharing feature as act of preventing attackers exploiting a software flaw to launch a self-copying worm attack against other Skype users. The software bug, reported last week by security researcher Aviv Raff, stems from the way Skype uses an Internet Explorer component to render HTML. Skype’s video-sharing feature allows users to share videos hosted on two sites - Dailymotion.com and Metacafe.com - while chatting with other Skype users. Video sharing website Metacafe had a cross-site scripting flaw that could allow hackers to run JavaScript on Metacafe.com and install unauthorised software on the victim’s computer. After that attackers could forward links to the malicious web page to all of the Skype contacts in the victim’s computer, spreading the infection.



Filed Under (News, Software, security) by Telix on January-23-2008

Security vendor Fortinet has detected new malicious SymbianOS Worm that affects S60 2nd Edition phones. Worm is identified as SymbOS/Beselo.A!worm and spreads itself via multimedia file (MMS) with a name either Beauty.jpg, Sex.mp3 or Love.rm. After clicking on attachment the worm harvests all the phone numbers located in the phone’s contact lists and targets them with a viral MMS carrying a Symbian Installation Source version of the worm. In addition to harvesting these numbers, the malware also sends itself to generated numbers located in China. So, if you have a Symbian S60 phone, and you receive a media file, answer “no” to any installation prompt that appears when trying to open the file.
Also we can also recommended having Anti-Virus software running on your phone.

sexmp3.gif