Abstract
The Palm OS operating system for Personal Digital Assistants (PDAs) and mobile phones has a weak security architecture, which introduces all sorts of security problems. This paper specifically targets the problem of malicious code. The main contribution of this work is the in-depth analysis of different vulnerabilities in Palm OS and the ways in which they can be exploited by malicious code. Furthermore, the key reasons for this problem are discussed and some suggestions for improvement are formulated.
Chapter PDF
Similar content being viewed by others
References
Kingpin, M.: Security analysis of the palm operating system and its weaknesses against malicious code threats. In: Proceedings of the 10th USENIX Security Symposium, USENIX, pp. 135–152 (2001)
Murmann, T., Rossnagel, H.: How secure are current mobile operating systems? In: Proceedings of the Eighth IFIP TC-6 TC-11 Conference on Communications and Multimedia Security, IFIP, pp. 47–58 (2004)
Ghosh, A.K., Swaminatha, T.M.: Software security and privacy risks in mobile e-commerce. Communications of the ACM 44, 51–57 (2001)
Pfitzmann, A., Pfitzmann, B., Schunter, M., Waidner, M.: Trustworthy user devices. In: Multilateral Security in Communications, pp. 137–156. Addison-Wesley, Reading (1999)
Symantec Security Response: The WinCE.Duts.A virus for Windows CE (2004), http://securityresponse.symantec.com/avcenter/venc/data/wince.duts.a.html
Symantec Security Response: The SymbOS.Cabir worm for Symbian, http://securityresponse.symantec.com/avcenter/venc/data/epoc.cabir.html
Symantec Security Response: The Palm.Phage.Dropper virus for Palm OS (2000), http://securityresponse.symantec.com/avcenter/venc/data/palm.phage.dropper.html
Vanhoof, J., Goovaerts, T.: Studie van de wormproblematiek op het Palm OS platform (Dutch). Master’s thesis, Katholieke Universiteit Leuven (2004)
PalmSource: Palm OS Garnet (2004), http://www.palmsource.com/palmos/garnet.html
PalmSource: Palm OS Cobalt 6.1 (2004), http://www.palmsource.com/palmos/cobalt.html
Software, N.: Filez 6.7 (2005), http://www.nosleeep.net
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2005 IFIP International Federation for Information Processing
About this paper
Cite this paper
Goovaerts, T., De Win, B., De Decker, B., Joosen, W. (2005). Assessment of Palm OS Susceptibility to Malicious Code Threats. In: Dittmann, J., Katzenbeisser, S., Uhl, A. (eds) Communications and Multimedia Security. CMS 2005. Lecture Notes in Computer Science, vol 3677. Springer, Berlin, Heidelberg. https://doi.org/10.1007/11552055_24
Download citation
DOI: https://doi.org/10.1007/11552055_24
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-540-28791-9
Online ISBN: 978-3-540-31978-8
eBook Packages: Computer ScienceComputer Science (R0)