Technology news and Jobs
Information Technology News
Dialling web number could be bad for iPhone health
Information Technology News
Dialling web number could be bad for iPhone health | Dialling web number could be bad for iPhone health |
|
| by Stan Beer | |
| Wednesday, 18 July 2007 | |
iPhone owners should be wary of a feature that is available through the built-in Safari browser of Apple's new device because it could allow attackers to hack in to the phone and gain control of calls, according to a security alert.Featured Whitepaper
5 Best Practices for Smartphone Support
According to SPI Labs, an attack could be launched from a malicious website, from a legitimate website that has Cross-Site Scripting vulnerabilities, or as part of a payload of a web application worm. A serious possible consequence of inadvertently tapping a number on a hacked ste is described by SPI Labs in its advisory: "For example, an attacker could determine that a specific website visitor “Bob” has called an embarrassing number such as an escort service. An attacker can also trick or force Bob into dialing any other telephone number without his consent such a 900-number owned by the attacker or an international number. Finally, an attacker can lock Bob’s phone forcing Bob to either make the call or hard-reset his phone resulting in possible data loss." SPI Labs states that it reported the security vulnerability to Apple on July 6 and is working with the company to resolve the issue. However, to date Apple has neither acknowledged the alleged problem or issued a public advisory. SPI Labs is advising iPhone users not to dial numbers through Safari until the issues are resolved. |
| < Next story in category | Previous story in the category > |
|---|





Tags




