Gadget & Tech News


Safari exploit gives hackers full control over iPhones and possibly PCs and Macs

Filed under: , , , ,

Oops, researchers just unveiled a pretty serious security vulnerability in the iPhone. More specifically, it’s Apple’s Safari web browser which exhibits the vulnerability. Researchers at Independent Security Evaluators have used the vulnerability to take malicious control of the iPhone from rogue websites loaded with the exploit. Once in, researchers have full administrative access over the phone allowing them to listen in on room audio or snatch the SMS log, address book, call history, email passwords and more — we’re talking full access to your phone. Researchers note that the only way to stay safe is to check those URLs and only visit sites that you trust (which isn’t very reassuring) and “may or may not be exploitable” from Mac and PC versions of Safari — the same vulnerability exists only they haven’t written the proof of concept exploit to test it yet. Apple has been notified of the vulnerability and a proposed fix with full public disclosure coming at the BlackHat conference on August 2nd. You listening InfoSec Sellout? That’s how you report a bug. Check the exploit in video form after the break.

[Via MacRumors]

Continue reading Safari exploit gives hackers full control over iPhones and possibly PCs and Macs

 

Read | Permalink | Email this | Comments

Office Depot Featured Gadget: Xbox 360 Platinum System Packs the power to bring games to life!

Original post by Thomas Ricker

Share and Enjoy: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Netvouz
  • DZone
  • ThisNext
  • MisterWong
  • Wists



Related Articles
  • New iPhone and iPod touch Safari exploit discovered
  • Web-based application manager for iPhone
  • First iPhone software update growing near?
  • Sony preaches the smack to circling PS3 hackers
  • iPhone hackers turn up a few vulnerabilities
  • No comments yet. Be the first.

    Leave a reply