'Curse of Silence' exploit squelches inbound SMS/MMS to Nokia S60 devices
Here's an odd one for you. Tobias Engel of the Chaos Communication Congress has discovered a rather nasty exploit that'll cause any Nokia S60 devices running versions 2.6, 2.8, 3.0 or 3.1 to stop receiving SMS and MMS messages. The "Curse of Silence," which has been independently verified by F-Secure, is triggered by sending an SMS that begins with an email address that's at least 32 characters long. The attacker must also change the protocol identifier to internet electronic mail before sending. Devices with versions 2.8 and 3.1 lock up after 11 such messages and still have some limited receiving capabilities, while 2.6 and 3.0 devices will go completely mum after just one attack. In both cases a factory reset is required to fix it, and he says there is no other known workaround for the user. We don't imagine this being a pervasive issue, but if you've got any tech-savvy enemies or malevolent pranksters in your life, you've been warned. Video demonstration is after the break, or hit up the read link to see if your device is among those listed at risk.
[Via Hack a Day]
Read - Vulnerability Advisory
Read - F-Secure Verification
[Via Hack a Day]
Read - Vulnerability Advisory
Read - F-Secure Verification















Reader Comments (Page 1 of 1)
Steve Litchfield @ Dec 31st 2008 1:05PM
Well done for not going over the top in your reporting of this. See also http://www.allaboutsymbian.com/news/item/8714_Obscure_SMS_bug_no_need_to_pan.php
ILoveApple @ Dec 31st 2008 1:29PM
Well done for pasting links to your stupid post where they aren't needed! What information does your post provide that isn't readily available in this article and the read links?
Please, piss off.
IL oveApple @ Dec 31st 2008 2:23PM
Are you all well?
ran @ Jan 1st 2009 5:02AM
Good gracious, now on top of encryption to keep prying eyes away, I need an antivirus to further decrease performance?