On the Effort to Create Smartphone Worms in Windows Mobile

作者: Michael Becher , Felix C. Freiling , Boris Leider

DOI: 10.1109/IAW.2007.381933

关键词:

摘要: Compared to what we know about malware for desktop and server systems, almost nothing smartphones similar mobile devices. With the growing ubiquity of such devices, they are becoming increasingly popular as attack targets. The ultimate target an attacker would be create a smartphone worm which autonomously spreads between In this paper focus on devices running Windows Mobile operating system. particular investigate effort needed recent version 5 Mobile. We measure in work time by skilled individual using modern tools software engineering techniques. found that it takes roughly 600 hours (14 weeks full work) come very close target. Our highlights strengths weaknesses over previous 2003 well general difficulties attacking AR,M-based architectures. insights from our study can used estimate lower bounds cost-to-break metrics current future versions

参考文章(7)
Sampo Töyssy, Marko Helenius, About malicious software in smartphones Journal in Computer Virology. ,vol. 2, pp. 109- 119 ,(2006) , 10.1007/S11416-006-0022-0
E. Jonsson, T. Olovsson, A quantitative model of the security intrusion process based on attacker behavior IEEE Transactions on Software Engineering. ,vol. 23, pp. 235- 245 ,(1997) , 10.1109/32.588541
Michael D. Smith, Stuart Edward Schechter, Computer security strength and risk: a quantitative approach Harvard University. ,(2004)
Collin Mulliner, Giovanni Vigna, Vulnerability Analysis of MMS User Agents 2006 22nd Annual Computer Security Applications Conference (ACSAC'06). pp. 77- 88 ,(2006) , 10.1109/ACSAC.2006.55
C. Cowan, P. Wagle, C. Pu, S. Beattie, J. Walpole, Buffer overflows: attacks and defenses for the vulnerability of the decade Foundations of Intrusion Tolerant Systems, 2003 [Organically Assured and Survivable Information Systems]. pp. 227- 237 ,(2003) , 10.1109/FITS.2003.1264935
David Seal, ARM Architecture Reference Manual Addison-Wesley Longman Publishing Co., Inc.. ,(2000)