The HackBerry

Permalink | August 8th, 2006

BlackBerry 8100

From BlackBerry to CrackBerry to HackBerry. Computer consultant Jesse D’Aguanno has developed a program which can allow attackers to exploit the trusted connection between a BlackBerry and a company’s internal server. Dubbed BBProxy, the program D’Aguanno wrote creates an encrypted data tunnel between the handheld device and internal server which can be very difficult to detect using traditional intrusion detection systems. The program must be loaded onto the BlackBerry either willingly or as a Trojan horse via email (assuming that someone will readily pull down and install an unknown attached program).

D’Aguanno, who has met with Research in Motion about the issue, said the company posted two new documents on its website this week in anticipation of his presentation at the DefCon hacker convention in Las Vegas.

Comments are closed.