• On TV.com: SETH MACFARLANE 2 raunchy 4 Microsoft
July 2, 2009 2:03 PM PDT

Researcher hopes Apple fixes possible iPhone SMS security hole

by Elinor Mills
  • Font size
  • Print
  • 26 comments

A security researcher said on Thursday that he hopes that Apple has a fix later this month for what he believes could be a vulnerability in the iPhone that could allow an attacker to gain control of the device remotely via SMS, according to IDG News Service.

An attacker could exploit a possible weakness in the way iPhones handle SMS (short message service) messages to do things like use GPS to track the phone's location, turn on the microphone for eavesdropping, or take control of the device and add it to a botnet, Charlie Miller, co-author of The Mac Hacker's Handbook and principal security analyst at Independent Security Evaluators, said in a presentation at the SyScan conference in Singapore.

Miller said he plans to give a more detailed presentation on the hole at the Black Hat conference in Las Vegas at the end of the month.

Despite the SMS hole, which "could be a critical vulnerability," the iPhone is more secure than OS X on computers, Miller said. That is because the iPhone doesn't support Adobe Flash and Java, only runs software digitally signed by Apple, includes hardware protection for data stored in memory, and runs applications in a sandbox, he said.

Apple representatives did not immediately respond to an e-mail request for comment.

Correction at 8:45 p.m. PDT July 29:This post was updated to correct that the researcher said he hopes Apple will fix the flaw, not that it will.

Elinor Mills covers Internet security and privacy. She joined CNET News in 2005 after working as a foreign correspondent for Reuters in Portugal and writing for The Industry Standard, the IDG News Service, and the Associated Press. E-mail Elinor.
advertisement
Click here!
Recent posts from Security
Microsoft patching zero-day Windows 7 SMB hole
RSA reveals details behind re-shipping scam
Expert says Adobe Flash policy is risky
Apple updates Safari for security
Microsoft probing Windows 7 zero-day hole
Security considerations for virtual environments
Eastern Europeans charged in payment processor hack
A child porn-planting virus: Threat or bad defense?
Add a Comment (Log in or register) (26 Comments)
  • prev
  • 1
  • next
by bananaphonerules July 2, 2009 2:25 PM PDT
Wow. " iPhone is more secure than OS X on computers".
Mac users: strap on your rubber helmet.

Welcome to the real world where no-one is perfect.
Reply to this comment
by seven7dust July 2, 2009 2:57 PM PDT
this has nothing to do with OSX
but people need to spin to make Windows look better
one things for sure nothings perfect
the worst being Windows !
by bananaphonerules July 2, 2009 3:35 PM PDT
@seven7dust

Historically yes; but in the last few years they've done good work.

Mac users need to be proactive about their security and demand transparency from Apple.
Security though denial won't save you.
by ikramerica--2008 July 2, 2009 4:46 PM PDT
Read WHY it's more secure. It's the same reason it's more secure than WINDOWS.

You see, the anal control over the iPhone that people lament about Apple, that it is so restricted, that all apps must go through Apple, that there is no multi-tasking of third party apps, etc. is basically the ONLY way to secure an OS.

Windows and Mac OS are not secure because they are extensible and customizable. Customers can install crapware and malware if they want, without Apple or MS testing it out. They can install programs that have access to all levels of services. With that freedom comes vulnerability.

So which is it, trolls (on both sides). Do you want a limited function, "state controlled" system like the iPhone for all your computing needs, or do you want freedom? Because freedom comes with responsibility, and vulnerability.
by lennie22 July 3, 2009 7:53 AM PDT
I thought we were talking about the iphone with it's huge security hole.......
by Vegaman_Dan July 2, 2009 3:03 PM PDT
"Despite the SMS hole, which "could be a critical vulnerability," the iPhone is more secure than OS X on computers, Miller said. That is because the iPhone doesn't support Adobe Flash and Java, only runs software digitally signed by Apple, includes hardware protection for data stored in memory, and runs applications in a sandbox, he said"

All processes are run as root on the iPhone. There is no security built into the device. That's why it's important to make sure you don't have any holes open to exploit in the first place because you can't do anything about it after they get in. An SMS exploit is a rather big one. The sad part is that you would never even know if your phone was compromised or not, sending your personal data out to the world without your knowledge. :/

Good for Apple to close this hole, and I hope they do similar with any others they haven't told us about yet.
Reply to this comment
by lennie22 July 3, 2009 7:52 AM PDT
as of now the hole hasn't been plugged yet. it's still open.
by seven7dust July 2, 2009 3:06 PM PDT
Funny how people keep going On and On about macs not being secure
somehow my Macbook never gets infected with anything
and I haven't heard of anyone being infected ever !
a large majority of Macs run without any form of protection
and yet there hasn't been any attack yet ! even after all these years !
am I missing something
Oh yeah the usual marketshare FUD
then How come Windows 7 beta was among the first to create a botnet ?
Reply to this comment
by Perry_Clease July 2, 2009 3:11 PM PDT
Just wait, the shell code coder or one of the other trolls will be posting telling us how easy it is to write exploits for OSX.
by nopinktoday July 2, 2009 3:13 PM PDT
The usual Windows is horrible OS FUD?

Apple does good with addressing the problem and looking for a fix. Hope they get it out fast, my friend is freaking out.
by ikramerica--2008 July 2, 2009 4:49 PM PDT
Macs run behind firewalls by default, and for most exploits, users are required to type their passwords. The only major exploits that don't require that are certain Java holes and Office holes. Self propagating viruses are not running rampant on the mac because they are very difficult to write.
by monkeyfun14 July 2, 2009 7:46 PM PDT
I just sit back and laugh.

Keep sweeping it under the rug mac fanboys.

seven7dust I can ask you the same question if Mac is godly secure why is their a botnet just consisting of OSX machines? I mean its a smart move too because these things will never be detected as long as Mac users stay in denial and think they can run through walls.
by seven7dust July 2, 2009 8:09 PM PDT
@monkeyfun
as usual your twisting my words
did I say it was godlike secure
all I'm saying is that people like Charlie Miller
make it sound like it's the worst POS ever full of holes etc.
but this just isnt the case for me and 99% of Mac users
by Vegaman_Dan July 2, 2009 10:44 PM PDT
Interestingly enough, the mac users who were on that botnet discovered a couple of months ago also did not think their systems were compromised in any way.

Criminals don't want to take down your system. They want to keep it up and running and keep you in the dark about it. A running system can be sold for resources online. If they tip you off that you're compromised, they might lose the machine on the network.

Do you examine your system for unusual activity? Do you check the logs? How would you even know you were compromised? Now that is scary.
by svgtom July 3, 2009 9:19 AM PDT
"a large majority of Macs run without any form of protection"

If your Mac is unprotected, how would you even know if you've been infected with a virus, trojan, etc., if there is nothing to detect it?
by Perry_Clease July 2, 2009 3:23 PM PDT
Speaking of Apple, see this breaking news about the Psystar case http://www.macobserver.com/tmo/article/psystar_moves_to_drop_bankruptcy_ahead_of_apple_legal_battle/
Reply to this comment
by seven7dust July 2, 2009 9:22 PM PDT
as usual Psystar Irritates and Impresses at the same time
Seriously these guys deserve a cookie for holding out so long !
by DrtyDogg July 2, 2009 5:12 PM PDT
wow, actually this has to be a first. Apple acknowleding a flaw before pushing out a fix of "minor bug fixes."
Reply to this comment
by lennie22 July 3, 2009 7:45 AM PDT
it's quite crazy how this is being swept away like it's nothing......I wonder if it would be the same for any other mobile OS maker.
Reply to this comment
by Perry_Clease July 3, 2009 7:54 AM PDT
"I wonder if it would be the same for any other mobile OS maker."

Not the Pre, security through obscurity :)
by Edwin-schemer July 3, 2009 2:32 PM PDT
BTW, until it's fixed, you can always ask AT&T to switch off SMS on your account, and tell your friends to send you e-mail instead.
Reply to this comment
by Perry_Clease July 3, 2009 2:48 PM PDT
Set your SMS preferences to "blocking" which stops messages coming from computers, but allows them from cell phones. You need to log-on to your AT&T account, on their website, to do this.
by tacit July 4, 2009 12:15 AM PDT
Actually, this is some pretty sloppy reporting.

The exploit can not turn on GPS, turn on the microphone, or do anything else of the sort. It can only (temporarily) disrupt the phone's service; the service is restored a moment later.

Had the C-Net reporter bothered to read the Web site of the person who found the exploit, she would see that the guy who found the exploit has said he has not yet determined if the flaw allows remote code execution, but that a hypothetical flaw that did allow remote code execution might possibly be able to do things like enable the microphone or GPS tracking--which is a far cry indeed from "An attacker could exploit a weakness in the way iPhones handle SMS (short message service) messages to do things like use GPS to track the phone's location, turn on the microphone for eavesdropping, or take control of the device and add it to a botnet."

The IDG report that this story was obviously cribbed from contained numerous factual errors, which the researcher it was written about, Charlie Miller, quickly corrected. Other online news agencies that copied the IDG story soon issued retractions and clarifications. Pity that C-Net didn't.
Reply to this comment
by AppleSuxLeo July 4, 2009 8:03 PM PDT
OS EX has been re-named
'Swiss-cheese"
Reply to this comment
by Privacy-Rights-Army.com July 6, 2009 1:44 PM PDT
My hacker buddy just proved to me he can hack any cell phone, even my iPhone 3GS which I had been talking to him about jailbreak when we started talking about peak bandwidth issues like AT&T got hit with when first 500K iPhones hit market.

Interesting fact, a new microwave carrier called Zero1 challenged him to hack these new devices and he couldn't, and said he probably wouldn't be able to since they use microwave high speed data, not voice as most other cell carriers use.

Simply put, when he said he could not hack it, I said I want it, and he laughed, and he said he is way ahead of me, and he was distributor given he has sold so many hack and jailbreak software, he knows these same people will want a secure mobile and internet connection, and since this is an all wireless system, and so cheap in comparison, I too became distributor. lol

Here is a link to an investigative report he was interviewed for, so check it out, it is a real eye opener, I know it was for me. Heck, who in their right mind would use an obsolete iPhone when they can have every known application available on a new microwave 2100 giga hertz frequency with better security than Home Land Security has. lol

http://www.youtube.com/watch?v=uCyKcoDaofg

If this doesn't scare people, nothing will. Best of all, not only is this new carrier hack proof, it is far less expensive, I am saving over 60% and am getting ten times more features and totally unlimited voice, text, data, TV and internet

www.Low-Cost-Wireless.com
Reply to this comment
by Growverde July 8, 2009 8:38 PM PDT
Ok so on Friday last week I tried putting my iPhone into the belt clip and it missed the bottom clips and slide down my leg to the cobblestone sidewalk. No biggie! I thought as it has a plastic case to protect it fromlittle bumps. As it slides down my leg to the ground slides about a foot and comes to a rest with a little slow flip to it's face. When I went to pick it up the glass was shattered, luckily I had the non glare film on and it kept the glass in place, so now to the point of the article. I went to the store showed them my phone they responded "we have to charge you $199 to replace it." I said "fine" and off my phone went to the back! When the apple store rep came back he asked me " u got this phone recently right?" and I said "ya fathers day" he shook his head and kept working when he handed me my new face and the paper work, it read total charge $0.00!!!!!!! ***!!!!? He did not charge me for the new glass apple is the best!!!!
Reply to this comment
(26 Comments)
  • prev
  • 1
  • next
advertisement

A CNET Conversation with Eric Schmidt

CNET's Tom Krazit and Molly Wood sit down with Google CEO Eric Schmidt to discuss the future of Android, the Chrome OS, the problem of real-time search indexing, and more.

Verizon tests sending RIAA copyright notices

The No. 2 phone company, known for its reluctance to intervene in antipiracy cases, strikes an agreement to forward copyright notices on behalf of the music industry.

About Security

Online security is threatened by more than hacking and phishing attempts. Check here for the latest updates on software vulnerabilities, data leaks, and rapidly spreading viruses--and learn how to protect your systems.

Add this feed to your online news reader

Security topics

advertisement
advertisement

Inside CNET News

Scroll Left Scroll Right