Saturday, October 25, 2014
Search
  
Submit your own News for
inclusion in our Site.
Click here...
Breaking News
Internet Explorer 11 Toolkit Allows Enterprise Admins "Spy" On Their Employees
FCC Says Airwave Auction To Delay Until 2016
HP Broadens Moonshot Portfolio With Intel-powered Models
Microsoft To Keep Nokia Brand For Low-end Smartphones
LG Introduces Its First Octa-Core Application Processor
Cloud and Surface 3 Drive Microsoft's Revenue
Micron Urges Investors To Reject TRC Capital's Unsolicited Tender Offer
Facebook Returns To Chat Roots With Rooms App
Active Discussions
Copied dvd's say blank in computer only
How to generate lots of different CDs quickly
Yamaha CRW-F1UX
help questions structure DVDR
Made video, won't play back easily
Questions durability monitor LCD
Questions fungus CD/DVD Media, Some expert engineer in optical media can help me?
CD, DVD and Blu-ray burning for Android in development
 Home > News > Mobiles > Researc...
Last 7 Days News : SU MO TU WE TH FR SA All News

Tuesday, February 25, 2014
Researchers Discover New Security Flaw For iOS


A new iOS flaw has been discovered, which could allow hackers to record keystrokes made on an Apple device no matter if its jailbroken or not.

FireEye mobile security researchers have discovered a background monitoring app vulnerability, and found approaches to bypass Apple's app review process and exploit non-jailbroken iOS 7 successfully.

The researchers have created a proof-of-concept "monitoring" app on non-jailbroken iOS 7.0.x devices. This "monitoring" app can record all the user touch/press events in the background, including, touches on the screen, home button press, volume button press and TouchID press, and then this app can send all user events to any remote server. Potential attackers could use such information to reconstruct every character the victim inputs.

The researchers demoed the exploit on the latest 7.0.4 version of iOS system on a non-jailbroken iPhone 5s device, but they have also verified that the same vulnerability exists in iOS versions 7.0.5, 7.0.6 and 6.1.x.

iOS7 provides settings for "background app refresh". Disabling unnecessary app's background refreshing contributes to preventing the potential background monitoring. However, the researchers say that it can be bypassed. For example, an app can play music in the background without turning on its "background app refresh" switch. Thus a malicious app can disguise itself as a music app to conduct background monitoring.

"Before Apple fixes this issue, the only way for iOS users to avoid this security risk is to use the iOS task manager to stop the apps from running in the background to prevent potential background monitoring," the researchers said." iOS7 users can press the Home button twice to enter the task manager and see preview screens of apps opened, and then swipe an app up and out of preview to disable unnecessary or suspicious applications running on the background."




Previous
Next
Verbatim To Showcase Smartphone and Tablet Accessories at CeBIT        All News        ZTE Launches 4K p60 Ultra HD Set Top Box
Qualcomm and Deutsche Telekom Collaborate on LTE Direct Operator Trial     Mobiles News      BlackBerry To Offer New Mobile Device Management Tool, New Smartphones

Get RSS feed Easy Print E-Mail this Message

Related News
GT Advanced Technologies Reaches Settlement Agreement With Apple
Bonhams Sells Apple Computer For 905K USD
BofA Double-Charged Apple Pay Customers
Apple To Stop SSL 3.0 Support For Push Notifications
Strong iPhone, Mac And App Store Sales Drive Apple's Record September Quarter Revenue And Earnings
Apple iOS 8.1 Available For Download
Biostar Relases New iDEQ-T1 Compact Desktop
Apple Introduces New iPad Air 2, iPad mini 3 And iMac with Retina 5K Display
New iPads Leaked Ahead Of Official Launch Event
New iPhones Arrive in 36 More Countries This Month
GT To Stop Production In Sapphire Plant, Accuses Apple Of 'Oppressive" Contract Terms
Apple and Google Each worth more than USD $100

Most Popular News
 
Home | News | All News | Reviews | Articles | Guides | Download | Expert Area | Forum | Site Info
Site best viewed at 1024x768+ - CDRINFO.COM 1998-2014 - All rights reserved -
Privacy policy - Contact Us .