
Fix on its way…
By Elinor Mills
Published: 3 July 2009 08:33 GMT
Apple expects to have a fix later this month for a vulnerability in the iPhone that could allow an attacker to gain control of the device remotely via SMS, a security researcher said on Thursday.
An attacker could exploit a weakness in the way iPhones handle SMS messages to do things like use GPS to track the phone's location, turn on the microphone for eavesdropping, or take control of the device and add it to a botnet, Charlie Miller, co-author of The Mac Hacker's Handbook and principal security analyst at Independent Security Evaluators, said in a presentation at the SyScan conference in Singapore. The presentation was covered by IDG News Service.
Miller said that under an agreement with Apple, he was barred from providing too much detail on the vulnerability. He plans to give a more detailed presentation on the hole at the Black Hat conference in Las Vegas at the end of the month.
Despite the SMS hole, which "could be a critical vulnerability", the iPhone is more secure than OS X on computers, Miller said. That is because the iPhone doesn't support Adobe Flash and Java, only runs software digitally signed by Apple, includes hardware protection for data stored in memory, and runs applications in a sandbox, he said.
Apple representatives did not immediately respond to an email request for comment.
Original article: Apple fixing iPhone SMS security hole from CNET News.com
Tariff analysis and presentation tools - Mobile device and services suppliers - Network based business continuity services - Hosted services ...
Position: Distribution Manager, Flash Memory Salary: $Negotiable, with experience Location: New York Our client, a world leader in innovative ...
Candidate will be required to have a good working knowledge of the following SPANII Member Bank, Interface, EMV Version 4.0, Host Interface, VISA ...
Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.
Managing a growing threat: An Executive's Guide to Web Application Security
5 Sources of Value Through a Telecom Expense Management Initiative
Adopting Server Virtualization for Business Continuity and Disaster Recovery
Business Continuity and Disaster Recovery with CA Recovery Management and VMware...
Stories from the web...
Copyright © 2008 CBS Interactive Limited. All rights reserved. Top of page
Peter Cochrane Peter Cochrane's Blog: Facebook saves teen from prison Another unexpected impact of social networking
Natasha Lomas Exclusive: Jimmy Wales on what's next for Wikipedia Why Wikipedia needs geeks and why a life unplugged is unthinkable