Evil WAP Push messages can reboot some Sony Ericsson handsets?
Some modern phones do a pretty good job of rebooting at random on their own without additional assistance from miscreants, but unfortunately, the real world is filled with people who'd like to make your gadgets just a little bit buggier than they already are. Enter this nifty little vulnerability recently discovered to affect a good number of Sony Ericsson models, involving a specially crafted WAP Push message carried via SMS that'll instantly restart the phone. That's not the best part, though -- in theory, an attacker could send you a string of these bad boys that would get queued up by your carrier, so the second the phone comes back online, it gets the next message and restarts once again -- potentially leading to a long, painful spell without a usable handset. Apparently, there isn't any known fix for this, so if you're carrying one of the affected models, just stay on the good side of any evil-doers you happen to know for now, okay? Follow the break for a video of the restarts in action (we understand the outgoing calls are just to demonstrate that the attack can be initiated at any time, though we can't say for sure).















Reader Comments (Page 1 of 1)
ILoveApple @ Feb 2nd 2009 4:13AM
Who cares? They don't show us how to replicate it. Fuck them.
Do you know the sorts of fun I could have with those inferior Sony Ericsson users? Unlimited text messages....
nmason @ Feb 2nd 2009 7:49AM
Actually, I wouldn't be surprised if this worked for a lot of other makers' phones as well, given the way that WAP push works...
fuse @ Feb 2nd 2009 8:42PM
You can send things to phones to make them crash? Really? This is news?
Man I can't count the ways I can make phones crash. Let us know when you've found out how to make them work.
Mobile Security Lab @ Apr 9th 2009 8:22AM
Additional technical details related to this vulnerability have been released on our blog: http://www.mseclab.com/?p=135.
Regards