Security threat for iPhone, iPod and iPad

Apple has just taken a breath after the antenna gate problem for iPhone 4 and they are now facing another threat regarding iOS security on all iDevices whether it is iPhone, iPod, or iPad.
The “Voluptuous  Jailbreak” by comex known as JailbreakMe has completely challenged security architecture of Apple’s iOS and put a question mark against on ability of Apple’s Developers who were unaware of this atrocious hole in the security.
JailbreakMe actually jailbreaks  iOS while it parses a PDF File opened using Safari. In the parsing process, the specified JailbreakMe’s PDF actually pushes a code on iOS and iDevices are jailbroken. A detailed analysis regarding the bug can be read here. What is the implication?
The way JailbreakMe works is that it takes advantage of a vulnerability in iOS, and more specifically the fact that iOS downloads PDF documents automatically. Comex managed to inject the jailbreak code in a PDF document that is downloaded and executed once you “slide to jailbreak” on JailbreakMe.com.
Now that this very simple exploit has been revealed, there are chances some bad guys out there might want to take advantage of it and potentially steal data from your iPhone. Before you start panicking and running around the house screaming, let’s be clear that the chances of this happening are actually very thin, but you never know…If a website can jailbreak iOS on a device then imagine what is left behind which can’t be executed on your iDevice. Anything! Using this vulnerability a hacker can remotely take control of your iPhone, iPod Touch, and iPad.
Nothing is secure anymore.
This poses a great threat for Apple’s customers and Apple can’t wait to fix this. Therefore, an iOS 4.0.2 is very likely expected to be released within days. There is iOS 4.1 Beta2 revolving around but iOS 4.1 stable is going to be released next month. So, iOS 4.0.1 update for iPhone 4 3GS 3G and iPod Touch 3G 2G will be released along with iOS 3.2.2 update for iPad.

If you have already accomplished iPhone 4 Jailbreak, 3GS,  iPod Touch or iPad then this vulnerability can be fixed with a Cydia App named “PDF Loading Warner” which will warn you whenever a malicious code using this exploit is trying to be injected.

Just don’t click yes without reading the warning message.

You may also like:

Sharing is caring.
  • Subscribe to our feed
  • Share this post on Delicious
  • StumbleUpon this post
  • Share this post on Digg
  • Tweet about this post
  • Share this post on Mixx
  • Share this post on Technorati
  • Share this post on Facebook
  • Share this post on NewsVine
  • Share this post on Reddit
  • Share this post on Google
  • Share this post on LinkedIn

Discussion

One response to "Security threat for iPhone, iPod and iPad"

Leave a Comment