Security holes discovered in iPhones, iPads

Jul 08, 2011 By JORDAN ROBERTSON , AP Technology Writer

A new security hole has opened up in Apple Inc.'s iPhone, iPad and iPod Touch devices, raising alarms about the susceptibility of some of the world's hottest tech gadgets to hacker attacks.

Flaws in the software running those devices came to light after a German security agency warned that criminals could use them to steal off the devices. Apple, the world's largest technology company by market value, said Thursday that it is working on a fix that will be distributed in an upcoming software upgrade.

With the , an attacker can get onto a device by tricking its owner into clicking an infected PDF file. Germany's Federal Office for Information Security called the flaws "critical weaknesses" in Apple's iOS operating system.

Internet-connected mobile devices are still subject to fewer attacks than personal computer, but they could eventually prove a juicy target for hackers because they are warehouses of confidential banking, e-mail, calendar, contact and other data.

Software vulnerabilities are discovered all the time. What makes the latest discovery alarming is that the weaknesses are already being actively exploited - albeit in a consensual way.

The latest concerns were prompted by the emergence of a new version of a program to allow Apple devices to run any software and circumvent the restrictions that Apple notoriously retains over software distributed through its online store. There are of doing so, but many people find it liberating to install their own software.

Although this program is something people would seek out, the weaknesses that its authors discovered could easily be used for malice, say.

There is an irony in the controversy: The site distributing the program offers a fix for the problem, but to get the fix, a user has to first install the program in question. So a user must defy Apple's restrictions to get the protection until Apple comes up with a fix of its own.

Charlie Miller, a prominent hacker of Apple products, said it likely took months to develop the program to break Apple's restrictions, but a criminal might need only a day or two to modify it for nefarious purposes.

Apple Inc. spokeswoman Bethan Lloyd said Thursday the company is "aware of this reported issue and developing a fix." She would not say when the update will be available.

One reason for gadget owners to take heart: Attacks on smartphones and other Internet gadgets are still relatively rare. One reason is PC-based attacks are still highly lucrative. Still, vulnerabilities such as the ones Apple is confronting show that consumers should take care of securing their mobile devices as they would their home computer.

"These things are computers - they're just small, portable computers that happen to have a phone tacked onto them," said Marc Fossi, manager of research and development for Symantec Security Response. "You've got to treat them more like a computer than a phone. You have to be aware of what's going on with these devices."

Explore further: Amazon expands Kindle tablet sale to 170 countries

5 /5 (1 vote)
add to favorites email to friend print save as pdf

Related Stories

Germany warns of Apple security problem

Aug 04, 2010

(AP) -- Several versions of Apple's iPhone, iPad, and iPod Touch have potentially serious security problems, a German government agency said in an official warning Wednesday.

Apple says it's fixed iPhone SMS vulnerability

Jul 31, 2009

(AP) -- Apple Inc. says it has fixed an iPhone vulnerability that lets hackers knock people offline - and possibly take over the phones - by sending them specially crafted text messages.

ElcomSoft undoes Apple's location security fix

May 25, 2011

(PhysOrg.com) -- ElcomSoft, a Russian computer forensics company that first came to the attention of the public in 2002 when it was sued and cleared of violations of the Digital Millennium Copyright Act for ...

Recommended for you

First Look: New Xbox elegant, but much unknown

May 22, 2013

Will gamers want One? After four years of development, Microsoft unveiled the Xbox One entertainment console and touted it as an all-in-one solution for playing games, watching TV and doing everything in ...

The new consoles from Microsoft, Nintendo and Sony

May 21, 2013

Microsoft is the last of the three big video game console makers to unveil its latest gaming system. Tuesday's unveiling comes nearly eight years after the Xbox 360 went on sale. It follows last fall's de ...

Microsoft readies new Xbox as entertainment hub

May 21, 2013

Microsoft offers a glimpse Tuesday at a new-generation Xbox as videogame consoles evolve into home entertainment centers and adapt to competition from smartphones and tablets.

User comments : 6

Adjust slider to filter visible comments by rank

Display comments: newest first

Bob_Kob
4.7 / 5 (3) Jul 08, 2011
That image doesnt look anything like an iphone or ipad.
dogbert
5 / 5 (2) Jul 08, 2011
Does anyone think that this new exploit will prompt Apple to stop tracking users?

Nah!
LuckyBrandon
not rated yet Jul 08, 2011
Apple has ALWAYS been vulnerable, they have only been unaffected by the virus age simply because there aren't enough of them in the world to be worth hacking...so nobody cared about them, they were under the radar.
Now the iPhones and iPads....the consumer market on those devices IS enough to make them a target.
I am 200% certain that this is only the 2nd of hundreds, if not thousands, of vulnerabilities to be found.
After that happens, the result is a Windows type of OS (lockdowns and all). Google will then become the new apple with Chrome and Android, and the cycle begins all over again....note that this has already started....Android is on the playing field for attacks as well (first trojan for a smartphone ever was for android)
jjoensuu
not rated yet Jul 08, 2011
and you cannot make the devices completely foolproof. That could block Apples and The Governments access to them as well.
Cave_Man
not rated yet Jul 08, 2011
Considering the chips and hardware all come from china what are the chances that there is already covert spying software hardwired into just about any electronic device connected to the internet?
Dhanne
not rated yet Jul 09, 2011
Yeah, it appears that Apple users have a couple of secret features in their gatgets. Should the customers pay more because of these awesome features?

More news stories

Expectations high for next Xbox

It's almost time for a new Xbox. Eight years have passed since Microsoft unveiled the Xbox 360, double the amount of time between the original Xbox debut in 2001 and its high-definition successor's launch ...

First Look: New Xbox elegant, but much unknown

Will gamers want One? After four years of development, Microsoft unveiled the Xbox One entertainment console and touted it as an all-in-one solution for playing games, watching TV and doing everything in ...

NEC phone is liquid-cooled and gender-specific

(Phys.org) —Pink is the color of princess fairy-tale gowns, magic slippers, upscale cupcake icing, and everything else favorable to girls who just want to be girls. "Ladyphones" appear to be concepts for ...

Controlling mood through the motions of mitochondria

(Medical Xpress)—Regulating the distribution of power in neurons is done by a system that makes the national electric grid look simple by comparison. Each neuron has several thousand mitochondria confined ...