Discover Yahoo! With Your Friends

Explore news, videos, and much more based on what your friends are reading and watching. Publish your own activity and retain full control.

To get started, first

YOUR FRIENDS' ACTIVITY

    Security holes discovered in iPhones, iPads

    SAN FRANCISCO (AP) — A new security hole has opened up in Apple Inc.'s iPhone, iPad and iPod Touch devices, raising alarms about the susceptibility of some of the world's hottest tech gadgets to hacker attacks.

    Flaws in the software running those devices came to light after a German security agency warned that criminals could use them to steal confidential data off the devices. Apple, the world's largest technology company by market value, said Thursday that it is working on a fix that will be distributed in an upcoming software upgrade.

    With the security hole, an attacker can get malicious software onto a device by tricking its owner into clicking an infected PDF file. Germany's Federal Office for Information Security called the flaws "critical weaknesses" in Apple's iOS operating system.

    Internet-connected mobile devices are still subject to fewer attacks than personal computer, but they could eventually prove a juicy target for hackers because they are warehouses of confidential banking, e-mail, calendar, contact and other data.

    Software vulnerabilities are discovered all the time. What makes the latest discovery alarming is that the weaknesses are already being actively exploited — albeit in a consensual way.

    The latest concerns were prompted by the emergence of a new version of a program to allow Apple devices to run any software and circumvent the restrictions that Apple notoriously retains over software distributed through its online store. There are security risks of doing so, but many people find it liberating to install their own software.

    Although this program is something people would seek out, the weaknesses that its authors discovered could easily be used for malice, security experts say.

    There is an irony in the controversy: The site distributing the program offers a fix for the problem, but to get the fix, a user has to first install the program in question. So a user must defy Apple's restrictions to get the protection until Apple comes up with a fix of its own.

    Charlie Miller, a prominent hacker of Apple products, said it likely took months to develop the program to break Apple's restrictions, but a criminal might need only a day or two to modify it for nefarious purposes.

    Apple Inc. spokeswoman Bethan Lloyd said Thursday the company is "aware of this reported issue and developing a fix." She would not say when the update will be available.

    One reason for gadget owners to take heart: Attacks on smartphones and other Internet gadgets are still relatively rare. One reason is PC-based attacks are still highly lucrative. Still, vulnerabilities such as the ones Apple is confronting show that consumers should take care of securing their mobile devices as they would their home computer.

    "These things are computers — they're just small, portable computers that happen to have a phone tacked onto them," said Marc Fossi, manager of research and development for Symantec Security Response. "You've got to treat them more like a computer than a phone. You have to be aware of what's going on with these devices."

     

    66 comments

    • Michael  •  10 mths ago
      All these years, Apple picked on Microsoft for getting hacked while they were "safe". Now in phones, Apple is a dominant player and is getting hacked while puny Windows Phone is ignored. It's never been the security of the OS---it's about economics.
      • Don 10 mths ago
        It's actually about the numbers. If you want to hack computers, what OS would you go after? The one installed on 90% of all PC's in the world. With Apple and Android being the dominate player in mobile devices guess where the hackers are going next?
      • J.R. 10 mths ago
        EXACTLY!!
      • Manuel J 10 mths ago
        Two more points... 1) Apple was forced to allow non-Apple software to be downloaded onto its devices, 2) The non-Apple software was comprised/unsecure, and because of non-Apple software edicts, which allowed a portal into the Apple OS.
    • Jaq  •  10 mths ago
      I got a new ipad recently. In order to use it, I was asked to set up a Apple email account so that I can use the ipad features further. However it asked for my credit card details although I had no intention of doing any purchases at all. This pisses me and I tossed it away.
      • cleu 10 mths ago
        there is a way to configure that you will not input your credit card details.. try to search the net about it.. i configured my unit with that settings.. the only draw back is you cant buy apps cause there is no settings for mode of payment.. =)
      • Jessica 10 mths ago
        Buy a free app and set up the apple acount that way. You can choose none as the payment option and then use itune gift cards.
      • Max 10 mths ago
        You should have toss it my way ;-)
    • G  •  10 mths ago
      Hmm, what happened to Apple's nose-thumbing about Windows security?

      Karma is a *****.
      • LID 10 mths ago
        Its adobes issue
      • CafeenMan 10 mths ago
        No, Lid, it's an Apple product which makes it an Apple issue.

        If the OS worked properly it wouldn't allow malware to work even with third party software.
      • AJ 10 mths ago
        LID, it's 3rd parties that make up the majority of Windows security problems as well, but then again, applefanboys don't know that.
    • Dave  •  10 mths ago
      Being a microsoft user all my life I never understood how ANY computer or software maker would be so foolish to believe "It cant happen here". All computers no matter which OS they are using can and will be hacked at some point. Mac users like their products for what ever reasons and microsoft users like microsoft for what ever reasons.
    • united  •  10 mths ago
      Love it when Apple fanboys always boast about how Apple products can have no breach in security and yet it happens all the time. The only reason hackers don't really target them is because Microsoft dominates the market by a huge percentage. Basically, everyone has Microsoft. But Apple security reports have been popping up more and more lately. Good luck, fanboys!
      • Cees 10 mths ago
        Good luck to you hatter!
      • jason g 10 mths ago
        whats his hat got to do with it?
      • AlexL 10 mths ago
        Maybe his hat is red?
    • MexicoMan  •  10 mths ago
      This "take heart" comfort is blatantly false:

      "One reason for gadget owners to take heart: Attacks on smartphones and other Internet gadgets are still relatively rare. One reason is PC-based attacks are still highly lucrative. Still, vulnerabilities such as the ones Apple is confronting show that consumers should take care of securing their mobile devices as they would their home computer."

      It is precisely BECAUSE mobile devices are overwhelmingly popular, regardless of hardware or platform, that the new era will be increasingly dangerous for users.

      Finding security holes happens routinely because so many hackers are actively investigating. Far more hackers work to break a program than programmers to create the program. The odds are that tens of thousands of seriously skilled and motivated hackers all over the world, who share exploits with each other, are always going to find ways in to do their dirty deeds.

      Perhaps someday when the hardware itself is smart enough to defend itself and to prevent by-passing certain access routines you might see a mobile device that is virtually unhackable.

      But, when you have a body of programmers who may work on a legitimate "day job" creating the software for your mobile phone who can turn around and Exploit the very programming they helped design, you are trusting the fox to guard the henhouse.

      And, when the mobile devices are not stand-alone, but require being open to "the cloud" which is hosted on computers all over the world, then it is IMPOSSIBLE to safeguard your phone.

      To go mobile is to be hacked sooner or later.
    • Jim  •  10 mths ago
      Apple Security Holes called "iHoles" !!!
    • hmmm  •  10 mths ago
      What else is new... Here's a clue Apple Zipperheads... your OS is not virus proof, it has just been largely ignored by the virus writing losers out there... But as Windows gets tougher to hack, they are going to go for the easy systems...
      • Jeffizzle 10 mths ago
        Except for the ad hominem part, good point
      • Chasten 10 mths ago
        Conveniently forgetting the fact its another exploit related to Adobe, which seems to be the way most computers get infected these days. Botnets are zombieing computers through flash applets on popular websites.

        Now you know why Apple banned Flash.
      • Mark Ellis 10 mths ago
        Its not a virus Einstein.
    • Laurie  •  10 mths ago
      I sometimes wonder if 'spying' is the real "oldest profession in the world"!
    • Robert  •  10 mths ago
      Will they ever make anything right without these jerky ahckers being able to pry into anyones business,I lost two ahrd drives cause of these jerks,um #%%%## as hell too!!!!!!
    • Ganesh  •  10 mths ago
      Apparently this exploit can be fixed if your iOS device is jailbroken. quite ironic.
    • Jason B  •  10 mths ago
      Oh come on, everybody knows only Microsoft has security flaws! Apple is immune to hackers because they are just soooo dreamy!
    • G  •  10 mths ago
      Apple, meet your "unsinkable" moment.
    • Glen  •  10 mths ago
      This article seems almost designed to bring out the goofy Apple haters/lovers. They're equally nuts in my mind. Criminals WILL exploit any weakness that seems profitable in any tech system. Apple, Android, Palm, whatever works. The hacking statistics are not 'proof' of anything except that criminals exist..
    • Chester Swimp  •  10 mths ago
      I know it was a matter of time when apple inc. would fell the heat from hackers .
    • Tech dude  •  10 mths ago
      Truth is, regardless of the OS, if people are given access to the web, bad people will find ways to hack in. The only foolproof way to avoid getting hacked on any platform is to disconnect.
    • Don  •  10 mths ago
      Guess Apple isn't all that great after all. They get hacked and get viruses like M$ products do..
    • Ricardo  •  10 mths ago
      People are way too relaxed about thinking these new devices are "safe".

      Hey, take a close look at you iPad. It doesn't even require the most basic of security features like a user login with password! Duh! It's a cyber disaster just waiting to happen.
    • Chris  •  10 mths ago
      what do the folk do who do not have a credit card?
    • J.R.  •  10 mths ago
      Apple has always been hackable, just no one bothered as Windows has all the market share. Hackers are all about big numbers, so why bother with Apple until the IPhone gained dominance?
    [ [ [['Connery is an experienced stuntman', 2]], 'http://yhoo.it/KeQd0p', '[Slideshow: See photos taken on the way down]', ' ', '630', ' ', ' ', ], [ [['Connery is an experienced stuntman', 7]], ' http://yhoo.it/KpUoHO', '[Slideshow: Death-defying daredevils]', ' ', '630', ' ', ' ', ], [ [['know that we have confidence in', 3]], 'http://yhoo.it/LqYjAX ', '[Related: The Secret Service guide to Cartagena]', ' ', '630', ' ', ' ', ], [ [['We picked up this other dog and', 5]], 'http://yhoo.it/JUSxvi', '[Related: 8 common dog fears, how to calm them]', ' ', '630', ' ', ' ', ], [ [['accused of running a fake hepatitis B', 5]], 'http://bit.ly/JnoJYN', '[Related: Did WH share raid details with filmmakers?]', ' ', '630', ' ', ' ', ], [ [['accused of running a fake hepatitis B', 3]], 'http://bit.ly/KoKiqJ', '[Factbox: AQAP, al-Qaeda in Yemen]', ' ', '630', ' ', ' ', ], [ [['have my contacts on or glasses', 3]], 'http://abcn.ws/KTE5AZ', '[Related: Should the murder charge be dropped?]', ' ', '630', ' ', ' ', ], [ [['have made this nation great as Sarah Palin', 5]], 'http://yhoo.it/JD7nlD', '[Related: Bristol Palin reality show debuts June 19]', ' ', '630', ' ', ' ', ], [ [['have made this nation great as Sarah Palin', 1]], 'http://bit.ly/JRPFRO', '[Related: McCain adviser who vetted Palin weighs in on VP race]', ' ', '630', ' ', ' ', ], [ [['A JetBlue flight from New York to Las Vegas', 3]], 'http://yhoo.it/GV9zpj', '[Related: View photos of the JetBlue plane in Amarillo]', ' ', '630', ' ', ' ', ], [ [['the 28-year-old neighborhood watchman who shot and killed', 15]], 'http://news.yahoo.com/photos/white-house-stays-out-of-teen-s-killing-slideshow/', 'Click image to see more photos', 'http://l.yimg.com/cv/ip/ap/default/120411/martinzimmermen.jpg', '630', ' ', 'AP', ], [ [['Titanic', 7]], 'http://news.yahoo.com/titanic-anniversary/', ' ', 'http://l.yimg.com/a/p/us/news/editorial/b/4e/b4e5ad9f00b5dfeeec2226d53e173569.jpeg', '550', ' ', ' ', ], [ [['He was in shock and still strapped to his seat', 6]], 'http://news.yahoo.com/photos/navy-jet-crashes-in-virginia-slideshow/', 'Click image to see more photos', 'http://l.yimg.com/cv/ip/ap/default/120406/jet_ap.jpg', '630', ' ', 'AP', ], [ [['xxxxxxxxxxxx', 11]], 'http://news.yahoo.com/photos/russian-grannies-win-bid-to-sing-at-eurovision-1331223625-slideshow/', 'Click image to see more photos', 'http://l.yimg.com/a/p/us/news/editorial/1/56/156d92f2760dcd3e75bcd649a8b85fcf.jpeg', '500', ' ', 'AP', ] ]
    [ [ [['did not go as far his colleague', 8]], '29438204', '0' ], [ [[' the 28-year-old neighborhood watchman who shot and killed', 4]], '28924649', '0' ], [ [['because I know God protects me', 14], ['Brian Snow was at a nearby credit union', 5]], '28811216', '0' ], [ [['The state news agency RIA-Novosti quoted Rosaviatsiya', 6]], '28805461', '0' ], [ [['measure all but certain to fail in the face of bipartisan', 4]], '28771014', '0' ], [ [['matter what you do in this case', 5]], '28759848', '0' ], [ [['presume laws are constitutional', 7]], '28747556', '0' ], [ [['has destroyed 15 to 25 houses', 7]], '28744868', '0' ], [ [['short answer is yes', 7]], '28746030', '0' ], [ [['opportunity to tell the real story', 7]], '28731764', '0' ], [ [['entirely respectable way to put off the searing constitutional controversy', 7]], '28723797', '0' ], [ [['point of my campaign is that big ideas matter', 9]], '28712293', '0' ], [ [['As the standoff dragged into a second day', 7]], '28687424', '0' ], [ [['French police stepped up the search', 17]], '28667224', '0' ], [ [['Seeking to elevate his candidacy back to a general', 8]], '28660934', '0' ], [ [['The tragic story of Trayvon Martin', 4]], '28647343', '0' ], [ [['Karzai will get a chance soon to express', 8]], '28630306', '0' ], [ [['powerful storms stretching', 8]], '28493546', '0' ], [ [['basic norm that death is private', 6]], '28413590', '0' ], [ [['songwriter also saw a surge in sales for her debut album', 6]], '28413590', '1', 'Watch music videos from Whitney Houston ', 'on Yahoo! Music', 'http://music.yahoo.com' ], [ [['keyword', 99999999999999999999999]], 'videoID', '1', 'overwrite-pre-description', 'overwrite-link-string', 'overwrite-link-url' ] ]
    Loading...