Tuesday, March 9, 2010

Vodafone Android Phone Comes With Mariposa Malware

It's always helpful when vendors ship malware right to your doorstep with the products you've purchased.

Panda Security has reported that they've discovered Mariposa malware on a brand new Android phone purchased from Vodafone.

From SANS:

It didn't infect the phone proper, but it did have autoexec.inf and autoexec.bat files designed to infect whatever Windows machine the phone was plugged into via USB cable.

 If you haven't disabled autorun on your Windows machines, and if you don't have some sort of malware protection on your mobile devices, you're a sitting duck.

You've been warned.

