Posted on 09/02/2015 5:12:09 AM PDT by Enlightened1
A recently discovered group of malware that infects jailbroken iPhones has gathered the login information for more than 225,000 Apple accounts, and is believed to be one of the largest breaches of Apple accounts ever.
The malware, dubbed KeyRaider by its discoverer, found its way to victims via websites that hosted repositories of Cydia software. Cydia is an app that allows users of jailbroken iOS devices to access software and apps locked phones cant normally access. The malware then steals Apple account information by intercepting iTunes traffic from the device.
Palo Alto Networks (PAN) and WeipTech, which found the vulnerability, estimates that the batch of stolen logins have been downloaded more than 20,000 times.
An analysis of the stolen accounts found that more than half of the email addresses were from a service provided by Tencent, suggesting that most of the affected users were Chinese, although the addresses contained region domains from 17 other countries including the United States, Canada, Israel, South Korea, and Japan.
Victims of the malware have reported irregular purchase histories on their accounts and their phones being held for ransom. One victim found his iPhone locked, with the display instructing him to contact an account on QQ, a popular Chinese chat service, to unlock the phone.
KeyRaider steals Apple push notification service certificates and private keys, steals and shares App Store purchasing information, and disables local and remote unlocking functionalities on iPhones and iPads, reads a PAN blog post.
(Excerpt) Read more at theepochtimes.com ...
Not Apples problem, since the user decided to bypass the in built protections by jail breaking.
Yep and its why I never jailbroke my iPhone and iPad.
Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.