iPhone's Bluetooth Bug Under Hackers' Microscope
Almost lost in the hubbub over Thursday's iPhone firmware update and whether it would "brick" unlocked phones was the fact that Apple Inc. patched 10 vulnerabilities -- twice the number of fixes issued since the phone's June debut.
The iPhone 1.1.1 update, which like previous upgrades is delivered through Apple's iTunes software, fixes seven flaws in the built-in Safari browser, two in the smart phone's Mail application and one in its use of Bluetooth, the short-range wireless technology.
The seven Safari vulnerabilities include several cross-site scripting (XSS) flaws, one that can disclose the URL of other viewed pages -- an online banking site, say -- and another that lets attackers execute malicious JavaScript in pages delivered by the SSL-encrypted HTTPS protocol. One of the Safari flaws, and an associated vulnerability in Mail, involve "tel:" links, which can be exploited by hackers to dial a number without the user confirming the call.
Get a Free iPhone! Yes, that is correct! Stay away from the hassles of earning enough to pay for it for you can get it the simple way .... straight to your doorstep! Free! Interested? Then find out how to get a Free iPhone!
Labels: apple, free iphone, free ipod touch, iphone, iphone firmware, itunes, pcworld, safari
0 Comments:
Post a Comment
<< Home