{"id":47687,"date":"2009-11-24T09:16:53","date_gmt":"2009-11-24T14:16:53","guid":{"rendered":"http:\/\/theappleblog.com\/?p=36244"},"modified":"2009-11-24T09:16:53","modified_gmt":"2009-11-24T14:16:53","slug":"the-worm-has-turned-iphone-exploit-gets-nasty","status":"publish","type":"post","link":"https:\/\/mereja.media\/index\/47687","title":{"rendered":"The Worm Has Turned: iPhone Exploit Gets Nasty"},"content":{"rendered":"<div class='snap_preview'><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignright size-full wp-image-36292\" title=\"wormcode\" src=\"http:\/\/gigapple.files.wordpress.com\/2009\/11\/wormcode.jpg?w=210&#038;h=140\" alt=\"\" width=\"210\" height=\"140\" \/><\/p>\n<p class=\"excerpt\">Last week the news about yet another <a href=\"http:\/\/theappleblog.com\/2009\/11\/09\/jailbreakers-first-iphone-worm-discovered-features-rick-astley\/\">non-belligerent iPhone worm<\/a> did the rounds and people responded by saying things like \u201cHow silly jailbreaker\u2019s are for not changing their SSH root passwords,\u201d and \u201cIt\u2019s only a matter of time until a worm appears that\u2019s not so friendly\u2026\u201d OK, yes, geeky people said those things. <em>Normals<\/em> will likely never know that jailbreaking is something you can do to a phone.<\/p>\n<p>Well, the predictions of gloom have proven true. Over the last few days, and <a href=\"http:\/\/www.macobserver.com\/tmo\/article\/jailbroken_iphones_hit_with_another_worm\/\">reported<\/a> by The Mac Observer, a new worm has been identified. This one, (so-far limited to iPhone owners in the Netherlands), takes advantage of the exact same SSH-exploit as the previous worm. Once on a user\u2019s iPhone, it circumvents Mobile Safari\u2019s anti-phishing technology to present a spoof of a popular banking website. Users are tricked into handing over their online banking authentication details. The worm spreads from iPhone to iPhone, but is limited to jailbroken handsets connected to the same Wi-Fi network. <span id=\"more-36244\"><\/span><\/p>\n<p>Apple has weighed-in with its own sage wisdom and advice on the matter. <a href=\"http:\/\/www.loopinsight.com\/2009\/11\/23\/apple-responds-to-reports-of-new-iphone-worm\/\">Speaking<\/a> to The Loop\u2019s Jim Dalrymple, Apple spokesperson Natalie Harrison said:<\/p>\n<blockquote>\n<p>The worm affects only a very specific set of iPhone users who have jail broken their iPhones and hacked it with unauthorized software. As we\u2019ve said before, the vast majority of customers do not jailbreak their iPhones, and for good reason. These hacks not only violate the warranty, they will also cause the iPhone to become unstable and not work reliably.<\/p>\n<\/blockquote>\n<p>If you live in the Netherlands and have jailbroken your iPhone and installed SSH, you need to change the default password to protect yourself from this particular exploit. Just don&#8217;t think you&#8217;ll be safe &#8212; Apple might keep the iPhone platform locked-down tight, but you can&#8217;t argue against the obvious security advantages of doing so. To date, there have been four confirmed worms &#8220;in the wild&#8221; on jailbroken iPhones. How many confirmed worms have appeared in the wild that affect non-jailbroken iPhones? There you have it.<\/p>\n<h3>The Real Question Is\u2026<\/h3>\n<p>But the real question, as I see it, is this; who jailbreaks any more? I mean, <em>really<\/em>\u2026 who? Why? The single biggest reason people originally went to the trouble of jailbreaking their iPhones was due to frustration at the lack of native apps. (Back in the early days of iPhone ownership, and before the app store existed, only Apple\u2019s own home-grown apps were locally installed on the device. Every third-party apps ran inside Mobile Safari and, therefore, required access to the Internet.) I did a lot of travel back then, usually by air and train, so I didn&#8217;t always have a reliable Internet connection; this rendered most of my web apps useless. That annoyed me, and I very nearly did the whole jailbreaking thing just so I could install applications locally that would work irrespective of an active Internet connection. (Ultimately I wussed-out, too afraid I\u2019d permanently mess-up my precious &#8212; and expensive &#8212; iPhone.)<\/p>\n<p>But that was then, and times have changed.. What other compelling reasons were there to void Apple\u2019s iPhone warranty? MMS, video recording, exchange server support, multitasking and Copy &amp; Paste were the \u201cmost missed\u201d features. Today we have more apps than you can shake an iPhone at. We have MMS and video recording, exchange support <em>and<\/em> copy &amp; paste.<\/p>\n<p>The only thing missing is \u201ctrue\u201d multitasking, but for the vast majority of iPhone owners (for whom multitasking is another way of saying \u201cI want instant messaging!\u201d), Apple\u2019s Push Notification Service does a decent job of balancing productive multitasking with preserving battery life.<\/p>\n<p>So\u2026 <em>why<\/em> jailbreak? Is it a form of protest against Apple\u2019s broken application approval process? Is it because you absolutely <em>must<\/em> replace the default icons with something far less classy? Perhaps you can&#8217;t live without tethering? Tell us in the comments the (few) remaining reasons for jailbreaking an iPhone.<\/p>\n<p>Just please don\u2019t say it\u2019s for geek cred\u2026 I might cry!<\/p>\n<p>  <a rel=\"nofollow\" href=\"http:\/\/feeds.wordpress.com\/1.0\/gocomments\/gigapple.wordpress.com\/36244\/\"><img decoding=\"async\" alt=\"\" border=\"0\" src=\"http:\/\/feeds.wordpress.com\/1.0\/comments\/gigapple.wordpress.com\/36244\/\" \/><\/a> <a rel=\"nofollow\" href=\"http:\/\/feeds.wordpress.com\/1.0\/godelicious\/gigapple.wordpress.com\/36244\/\"><img decoding=\"async\" alt=\"\" border=\"0\" src=\"http:\/\/feeds.wordpress.com\/1.0\/delicious\/gigapple.wordpress.com\/36244\/\" \/><\/a> <a rel=\"nofollow\" href=\"http:\/\/feeds.wordpress.com\/1.0\/gostumble\/gigapple.wordpress.com\/36244\/\"><img decoding=\"async\" alt=\"\" border=\"0\" src=\"http:\/\/feeds.wordpress.com\/1.0\/stumble\/gigapple.wordpress.com\/36244\/\" \/><\/a> <a rel=\"nofollow\" href=\"http:\/\/feeds.wordpress.com\/1.0\/godigg\/gigapple.wordpress.com\/36244\/\"><img decoding=\"async\" alt=\"\" border=\"0\" src=\"http:\/\/feeds.wordpress.com\/1.0\/digg\/gigapple.wordpress.com\/36244\/\" \/><\/a> <a rel=\"nofollow\" href=\"http:\/\/feeds.wordpress.com\/1.0\/goreddit\/gigapple.wordpress.com\/36244\/\"><img decoding=\"async\" alt=\"\" border=\"0\" src=\"http:\/\/feeds.wordpress.com\/1.0\/reddit\/gigapple.wordpress.com\/36244\/\" \/><\/a> <img decoding=\"async\" alt=\"\" border=\"0\" src=\"http:\/\/stats.wordpress.com\/b.gif?host=theappleblog.com&#038;blog=5550580&#038;post=36244&#038;subd=gigapple&#038;ref=&#038;feed=1\" \/><\/div>\n<hr \/>\n<p><a href='http:\/\/ads.gigaom.com\/proxy.php?url=http%3A%2F%2Fads.gigaom.com%2Fopenx%2Fwww%2Fdelivery%2Fck.php%3Foaparams%3D2__bannerid%3D198__zoneid%3D6__cb%3D10141a2b27__oadest%3Dhttp%253A%252F%252Fsalesforce.com%252F' ><img src='http:\/\/ads.gigaom.com\/openx\/www\/images\/882338d114410ec8819c4fb6ad88103c.gif' width='300' height='250' alt='' title='' border='0' \/><\/a><\/p>\n<div id='beacon_10141a2b27' style='position: absolute; left: 0px; top: 0px; visibility: hidden;'><img src='http:\/\/ads.gigaom.com\/openx\/www\/delivery\/lg.php?bannerid=198&amp;campaignid=22&amp;zoneid=6&amp;loc=http%3A%2F%2Fads.gigaom.com%2F%3Furl%3Dhttp%253A%252F%252Ftheappleblog.com%252Ffeed%252F%253Fnoredirect%253D1&amp;cb=10141a2b27' width='0' height='0' alt='' style='width: 0px; height: 0px;' \/><\/div>\n<div class=\"feedflare\">\n<a href=\"http:\/\/feeds.feedburner.com\/~ff\/TheAppleBlog?a=lBbtU3fnBD0:9AxxQTISNeU:yIl2AUoC8zA\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/TheAppleBlog?d=yIl2AUoC8zA\" border=\"0\"><\/img><\/a> <a href=\"http:\/\/feeds.feedburner.com\/~ff\/TheAppleBlog?a=lBbtU3fnBD0:9AxxQTISNeU:D7DqB2pKExk\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/TheAppleBlog?i=lBbtU3fnBD0:9AxxQTISNeU:D7DqB2pKExk\" border=\"0\"><\/img><\/a> <a href=\"http:\/\/feeds.feedburner.com\/~ff\/TheAppleBlog?a=lBbtU3fnBD0:9AxxQTISNeU:V_sGLiPBpWU\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/TheAppleBlog?i=lBbtU3fnBD0:9AxxQTISNeU:V_sGLiPBpWU\" border=\"0\"><\/img><\/a> <a href=\"http:\/\/feeds.feedburner.com\/~ff\/TheAppleBlog?a=lBbtU3fnBD0:9AxxQTISNeU:F7zBnMyn0Lo\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/TheAppleBlog?i=lBbtU3fnBD0:9AxxQTISNeU:F7zBnMyn0Lo\" border=\"0\"><\/img><\/a> <a href=\"http:\/\/feeds.feedburner.com\/~ff\/TheAppleBlog?a=lBbtU3fnBD0:9AxxQTISNeU:guobEISWfyQ\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/TheAppleBlog?i=lBbtU3fnBD0:9AxxQTISNeU:guobEISWfyQ\" border=\"0\"><\/img><\/a>\n<\/div>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~r\/TheAppleBlog\/~4\/lBbtU3fnBD0\" height=\"1\" width=\"1\"\/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Last week the news about yet another non-belligerent iPhone worm did the rounds and people responded by saying things like \u201cHow silly jailbreaker\u2019s are for not changing their SSH root passwords,\u201d and \u201cIt\u2019s only a matter of time until a worm appears that\u2019s not so friendly\u2026\u201d OK, yes, geeky people said those things. Normals will [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[],"class_list":["post-47687","post","type-post","status-publish","format-standard","hentry","category-news"],"_links":{"self":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts\/47687","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/comments?post=47687"}],"version-history":[{"count":0,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts\/47687\/revisions"}],"wp:attachment":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/media?parent=47687"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/categories?post=47687"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/tags?post=47687"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}