Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Another iPhone worm, but this one is serious
by Don Reisinger

Posted on 11/24/2009 1:27:56 AM PST by Swordmaker

Another iPhone worm has been spotted in the wild.

Unlike the previous exploitation, which merely changed a jailbroken iPhone's wallpaper to a picture of Rick Astley of "Rickrolling" fame, this new threat allows hackers to steal sensitive information.

According to security firm Sophos, which wrote about the exploitation after a Dutch ISP spotted it late last week, the worm attacks jailbroken iPhone and iPod Touch devices only.

The worm "uses command-and-control, like a traditional PC botnet," Sophos wrote in a blog post on Saturday to warn users about the exploit. "It configures two startup scripts, one to execute the worm on boot-up, and the other to create a connection to a Lithuanian server to upload stolen data and cede control to the bot master."

Jailbreaking, which has been around for about two years, is a hack that enables iPhone and iPod Touch users to download applications unavailable through Apple's App Store.

Sophos wrote that the worm attacks users on several ISPs, including UPC in the Netherlands, Optus in Australia, and T-Mobile in several countries worldwide. Worse, the worm spreads faster on a Wi-Fi connection than a 3G connection. Users with affected devices might notice extremely short battery life while on Wi-Fi. According to Sophos, that's mainly due to the worm engaging in "so much network activity."

When a device is infected, it's assigned a unique number so that the attackers can easily pinpoint a single device. It also looks for authentication systems that use SMS, better known as mTANs. mTANs are frequently used by banks that send an SMS message with a password to mobile phones, allowing people to log in to their online accounts, Sophos wrote.

In essence, this threat is serious.

Sophos recommends that people with infected iPhones and iPod Touch devices restore them back to Apple's most recent firmware update. For now, there is no other way to fix the problem.


TOPICS: Business/Economy; Computers/Internet; Conspiracy
KEYWORDS: ilovebillgates; iwanthim; iwanthimbad; microsoftfanboys
Note, this works only on jailbroken iphones only...
1 posted on 11/24/2009 1:27:57 AM PST by Swordmaker
[ Post Reply | Private Reply | View Replies]

To: ~Kim4VRWC's~; 1234; 50mm; 6SJ7; Abundy; Action-America; acoulterfan; Airwinger; Aliska; altair; ...
Jailbroken iPhones malware... malicious worm... PING!


iPhone Malware Ping!

If you want on or off the Mac Ping List, Freepmail me.

2 posted on 11/24/2009 1:29:37 AM PST by Swordmaker (Remember, the proper pronunciation of IE is "AAAAIIIIIEEEEEEE!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Swordmaker
Sophos recommends that people with infected iPhones and iPod Touch devices restore them back to Apple's most recent firmware update. For now, there is no other way to fix the problem.

So either leave your phone open to attack by the worm or have your jailbroke iphone bricked by Apple’s update.

Not a lot of good options here.

3 posted on 11/24/2009 1:39:43 AM PST by Pontiac
[ Post Reply | Private Reply | To 2 | View Replies]

To: Pontiac

The “restore” method doesn’t brick your phone. It resets everything back to factory settings and installs a fresh image copy of the Apple distribution of the iPhone OS and firmware.

But thanks for the Fear, Uncertainty, and Doubt.


4 posted on 11/24/2009 1:50:29 AM PST by coconutt2000 (NO MORE PEACE FOR OIL!!! DOWN WITH TYRANTS, TERRORISTS, AND TIMIDCRATS!!!! (3-T's For World Peace))
[ Post Reply | Private Reply | To 3 | View Replies]

To: coconutt2000
Have a look at this. .

iPhone owners demand to see Apple source code

5 posted on 11/24/2009 2:01:50 AM PST by Pontiac
[ Post Reply | Private Reply | To 4 | View Replies]

To: Pontiac

Yes. That’s the “upgrade”, not “restore” process that bricked those phones. It is also the first version of the iPhone OS 1.x, which is now into its third major iteration, 3.x.

That technicality of course ignores the fact that the affected users not only violated the terms of their usage agreements, but they stupidly ran the Apple update process on a hacked version of Apple’s (and third party) software.

If I recall, a “restore” was the first step in upgrading the early versions. First you restore, then you update, and then you add your data back on, and if by then a new hack was available you installed it and got on with your life.


6 posted on 11/24/2009 2:17:23 AM PST by coconutt2000 (NO MORE PEACE FOR OIL!!! DOWN WITH TYRANTS, TERRORISTS, AND TIMIDCRATS!!!! (3-T's For World Peace))
[ Post Reply | Private Reply | To 5 | View Replies]

To: Swordmaker
Hmmm.... who would DO such a thing?


7 posted on 11/24/2009 5:32:09 AM PST by dangus (Nah, I'm not really Jim Thompson, but I play him on FR.)
[ Post Reply | Private Reply | To 2 | View Replies]

To: Swordmaker

A little off-topic, has the battery heating problem been solved? I heard that the 3GS iPhone had a heating problem. Was that a true problem? I am delaying upgrading to the 3GS untill the fix has been made.


8 posted on 11/24/2009 6:23:17 AM PST by NCC-1701 (ON 1-19-09 GAS WAS, ON AVERAGE IN MEMPHIS, $1.43 A GALLON.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Swordmaker
Note, this works only on jailbroken iphones only...

Amazing!

It's like someone takes the locks off the doors of their house, opens the windows and then wonders why they had things stolen out of their house... LOL...

9 posted on 11/24/2009 6:40:42 AM PST by Star Traveler (The God of Abraham, Isaac and Jacob is a Zionist and Jerusalem is the apple of His eye.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Star Traveler; Swordmaker
>> Note, this works only on jailbroken iphones only...

> Amazing! It's like someone takes the locks off the doors of their house, opens the windows and then wonders why they had things stolen out of their house... LOL...

Moreover, only on jailbroken phones on which the user didn't change the default root password. Good lord, what do they use for brains?

So far these iPhone worms look like like natural selection in action on the users, weeding out the stupid ones. ;-)

10 posted on 11/24/2009 7:16:04 AM PST by dayglored (Listen, strange women lying in ponds distributing swords is no basis for a system of government!)
[ Post Reply | Private Reply | To 9 | View Replies]

To: Swordmaker
" Note, this works only on jailbroken iphones only..."

More specifically, Jailbroken + SSH enabled + clueless owner didn't change the user ("mobile") and root passwords from the factory defaults.

Just as youth is wasted on the young, jailbreaking is wasted on the clueless. The iPhone is a pretty powerful little Unix workstation with Pentium-class processing power and several network connectivity capabilities, and jailbreaking enables all sorts of wonderful things. But there are unintended consequences to most things in life, and walking around with it exposed to anyone who knows its password is pretty dumb.

Fortunately, at least in the U.S., ssh seems to be not possible over the Edge or 3G network connection.

It's very easy to change the jailbroken device's Unix user and root passwords. If anyone reading this hasn't done so, Freepmail me for instructions. It's a 30-second process. Or, don't jailbreak-- Apple has paid a lot of attention to security.
11 posted on 11/24/2009 10:02:18 AM PST by RightOnTheLeftCoast (Obama: running for re-election in '12 or running for Mahdi now? [http://en.wikipedia.org/wiki/Mahdi])
[ Post Reply | Private Reply | To 1 | View Replies]

To: Pontiac
"Not a lot of good options here."

Egad. How about "Change your passwords from the factory defaults of 'alpine'"?

Jeez Louise. Was that so hard?
12 posted on 11/24/2009 10:03:44 AM PST by RightOnTheLeftCoast (Obama: running for re-election in '12 or running for Mahdi now? [http://en.wikipedia.org/wiki/Mahdi])
[ Post Reply | Private Reply | To 3 | View Replies]

To: NCC-1701
A little off-topic, has the battery heating problem been solved? I heard that the 3GS iPhone had a heating problem. Was that a true problem? I am delaying upgrading to the 3GS untill the fix has been made.

My 3Gs gets mildly warm with prolonged use... but no more so than my wife's Verizon LG her work makes her use...

13 posted on 11/24/2009 11:02:31 AM PST by Swordmaker (Remember, the proper pronunciation of IE is "AAAAIIIIIEEEEEEE!)
[ Post Reply | Private Reply | To 8 | View Replies]

To: Swordmaker
the worm attacks jailbroken iPhone and iPod Touch devices only
Cue the Thin Lizzy...
14 posted on 11/24/2009 6:46:18 PM PST by SunkenCiv (https://secure.freerepublic.com/donate/__Since Jan 3, 2004__Profile updated Monday, January 12, 2009)
[ Post Reply | Private Reply | To 2 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson