elsterama

Malware Exploit Found for iOS Devices by German Researchers

Recommended by elsterama on July 6, 2011 via ReadWriteWeb

iphone_150x150.pngGermany's Federal Office for Information Security issued a warning today that iPhones, iPads and the iPod Touch have a "critical weaknesses," the Associated Press reports. The malware is delivered by an infected PDF that can affect the user's device without them knowing. The same a result would occur when a user visits a website with an infected PDF.

This is one of the first malware weaknesses discovered for iOS. Android has an increasing problem with malware and rootkits but so far there has not been a significant weakness exploited on iOS (not counting the 120,000 iPads that were hacked last year that was really more the fault of AT&T than iOS). Is this just the first drip of a coming wave of mobile malware?

Sponsor

According to a Google Translation of the German Federal Office for Information Security, the exploit will give the attacker administrative privileges over device which would include any data, email or contacts stored on the device. So far there is no official patch available for the exploit from Apple. Yet, if you have jail broken your iOS device there is a patch available through Cydia.

The exploit exists for all iOS devices running version 4.3.3. The agency stated that it
"currently can not exclude that other versions of the IOS operating system are affected by this vulnerability," (translated from German with Google Translate).

Apple works with Good Technologies to help secure iOS and has been consulted by corporations that focus on mobile strategy such as Juniper. If there is already a patch for this exploit in the Cydia store than it is likely that the security companies like Good and Fingerprint Security (a popular security app for the iPhone) will have the loophole closed relatively quickly.

Discuss


  • Computer science
  • Cydia
  • Ios Island
  • Malware
  • Rootkit
  • Vulnerability
  • ReadWriteWeb
  • Original article

Similar Findings

  • How Symantec Cracked Stuxnet
  • Security Trends: Quality Over Quantity, Mobile Vulnerabilities and the Cloud
  • Samsung Laptops - Now With Secret Keyloggers?
  • Over 1.3 Million Websites Host Malware - Don't Be One of Them
  • Highlights from Black Hat and Defcon

Recently Recommended

Is Photoshop Really Dead?: Repurposing Photoshop For The Web
iPhone App Prototyping With Photoshop: WireKit
Good Looking FPS Meters With JS – FPSMeter
Inspirational Podcasts: Listen, Watch And Share!
jQuery Plugin For Simple-To-Complex Responsive Menus – FlexNav
An Amazing, Free & Web-Based CSS Editor: bluePen Editor
Weak, Strong, Static And Dynamic: An Introduction To Programming Type Systems
jQuery.Shapeshift: Pinterest-Like Dynamic Grids With Drag ‘n’ Drops
Complex, Yet Simple: Making Sense Of Type Classification (Part 1)
Train Simple’s Web Design-Related Tutorials (Heavily Discounted By MightyDeals)
more

Follow elsterama on:

Facebook Twitter

Site by Eye580 Interactive | Hosting by ServInt | Contact