Experts warn against iPhone security flaw

London , Thu, 05 Aug 2010 ANI

London, Aug 5 (ANI): A hole in Apple's iOS for iPhone, iPad and iPod could make the devices vulnerable to remote attackers, warned security firms.

 

Symantec said that it could be exploited by remote attackers to take complete control of a vulnerable device.

 

Experts said that the threat, at present, only exists on paper but Apple should issue a fix before it becomes a reality.

 

Apple said that the company was aware of the report and was investigating.

 

The problem lies in the way Apple's Mobile Safari handles Adobe Acrobat PDF documents.

 

As the browser automatically opens PDF files, a hacker could embed malicious code into this file.

 

Graham Cluley, a computer security expert with Sophos, said that the exploit used the same principle as Jailbreakme-a utility that lets iPhone 4 owners run non-Apple approved applications-although it uses the exploit in a benign way.

 

"It uses the same tricks as you do when jailbreaking," the BBC quoted Cluley as saying.

 

"We always thought that Apple's Mobile Safari would be the main vulnerability. At present, we have yet to see any of these exploits out in the wild, but it is only a matter of time," he warned.

 

However, in an ironic twist, the only way of preventing Mobile Safari from automatically opening PDF files is by jailbreaking a phone and installing an application, called PDF Loading Warner, which then asks for permission every time the browser tries to open a PDF file.

 

US authorities declared it was legal for users to jailbreak their phones.

 

"I personally wouldn't want to jailbreak my phone to get the fix," said Cluley.

 

"Right now, its all eyes on Apple who we hope are going to fix this problem as soon as possible. Historically, Apple have been slow to fix problems on their Mobile browser.

 

"This has been a concern of ours in the past and continues to be," he added.

 

Apple have yet to release a patch that would either prevent Jailbreak from working or close the highlighted security flaw. (ANI)

 



Read More: Mobile Technology | R K Puram (main) | Neoria Mobile Bo | A.c.company | Jami Annavaram | Gandrai | Gowravaram | Chillakallu | Konakanchi | Bandipalem | Pochampalli | Mangollu | Peda Modugapalli | Tirumalagiri | Paritala | Graham Bazar | Jeypore Mobile | Safari | Apple iPad3 | Apple

LATEST IMAGES
Yamuna River overflows the danger mark in Delhi Kavuru Sambasiva Rao takes charge as Minister of Textiles Mallikarjun Kharge takes charge as Union Minister for Railways Rita Menon MD ITPO announces International Security Expo from 26 September Pictorial book on Darbar Sahib presented to Delhi CM

7 ROB ATM MACHINE FILLED WITH CASH
June 18, 2013 at 8:35 PM
MORE...
Social bookmark this page



Post comments:
Your Name (*) :
Your Email :
Your Phone :
Your Comment (*):
  Reload Image
 
 

Comments: