Apple ‘investigating’ iOS flaw that opens door to Web-based jailbreak (Ben Patterson)

The modify abstract most the “JailbreakMe” agency that iPhone hackers unleashed terminal weekend is that it’s confident of jailbreaking your iPhone over the Web, via the handset’s Safari browser. The scary abstract most the “JailbreakMe” tool? It’s confident of jailbreaking your iPhone over the Web, via the handset’s Safari browser.

Luckily for us, the hackers who shapely the Web-based JailbreakMe place didn’t impart some harm; every they desired to do was organisation a ultimate artefact for iPhone, iPad, and iPod Touch users to easily jailbreak their devices — a impact (or rather, a hack) that allows users to establish third-party apps that aren’t sactioned by Apple, including applications that’ll unlock your iPhone for ingest on added meshwork likewise AT&T. Indeed, I proven JailbreakMe early this hebdomad with my older iPhone 3GS — not my newborn iPhone 4, nous you — and within transactions it was jailbroken, with zero a hiccup.

But connector the “JailbreakMe” place is relatively harmless and up-front in its intentions (it tells you meet what it’s doing, and asks you to swipe a person curb before hacking into your handset), section experts were ease alarmed at how easily a third-party, non-Apple website had managed to essentially pirate the iPhone, attractive rank curb as it installed files and denaturized settings willy-nilly.

So, how does JailbreakMe impact its Stygian magic? Through a imperfectness in the artefact iPhone’s Safari Web application handles online PDFs, according to AppleInsider, which quotes a section authority for F-Secure who titled the JailbreakMe place “very bonny work” connector warning that it’s also “scary how it totally defeats Apple’s section architecture.”

An Apple representative told Reuters that Cupertino is “investigating” the exploit, which could conceivably be utilised by hackers with something more sinister in nous than making it easier to jailbreak your iPhone.

With some luck, Apple module presently supply a connector that plugs the PDF section mess in Safari for the iPhone, In the meantime, you crapper protect yourself by intellection twice before clicking on PDF course on ambulatory Safari, or you could establish a newborn app that warns you if a place wants to alluviation a PDF — but as AppleInsider points out, the app exclusive entireness on jailbroken iPhones. D’oh!

One terminal thing: While I meet mentioned that I successfully jailbroke my older iPhone 3GS using the JailbreakMe site, ready in nous that you should exclusive jailbreak your iPhone at your possess risk.

While the Library of legislature fresh proclaimed that it’s jural to jailbreak a phone, including the iPhone, doing so crapper vacuum your iPhone’s warranty, and don’t wait such disposition at the Apple Genius Bar if something goes criminal on your jailbroken handset.

AppleInsider: Browser-based iOS ‘jailbreak’ utilizes ‘scary’ PDF section hole
Reuters: Hackers could enslave iPad, iPhone – section firm

— Ben Patterson is a profession illustrator for Yahoo! News.

Follow me on Twitter!

Follow Yahoo! News on Twitter, embellish a follower on Facebook

Tags: , , , , , , , , ,
Posted in SECURITY on Aug 6th, 2010, 6:01 am by admin   

 
privacy policy
We use outside ad companies to display ads on our site. These ads may contain cookies that are collected and tracked by outside ad companies. These sites have privacy policies which may be different from ours. You should read the privacy policies on such sites before subscribing to their services.