11/14/2007, 11:20am, EST
Wednesday, November 14th
Security guru: iPhone malware highly likely
A malware attack against iPhone users is almost guaranteed, says Patrik Runald, the security response manager for F-Secure Security Labs. An attack is "80-90 percent likely," he comments, simply by virtue of how easily the iPhone can be hacked. "The 1.1.2 firmware was released last week and was supposed to prevent people from running third-party software," he adds, "but it took only a few hours for the hacking community to break so they could run their third party applications again."
While most hackers have had only positive intentions, such as wanting to install applications or unlock the phone for other carriers, Runald points out that the common technique of "jailbreaking" an iPhone is also what could allow serious damage. "What they're doing is they're breaking out of the iPhone's secure mode, [which] is that you're not allowed to venture outside of the UI." Once this stage is reached, Runald says, "you're out of the shield, you can do anything."
The decision to open up the iPhone to third-party applications in February may have both negative and positive ramifications, Runald observes. Distributing the SDK could in theory make it simpler to develop malware, but at the same time, it could make it possible to install security software, countering the threat. The principal advantage the iPhone will retain is that because it uses a stripped-down version of Mac OS X, there are still fewer avenues of attack than on a desktop system.
Filed under: Apple
,
, 17
,
,
,
,
,
,

subscribe to comments
for this article
He's speculating, nothing more, and it's not even informed speculation, apparently. If he had even a sliver of proof that such a vulnerability existed on the iPhone (again, updated to 1.1.2), I'm sure he would have shared it with us. Right?
I wonder, who will provide us this can't-live-without-it kind of software. Maybe some capable company called F-Secure? After all, they are experts...
It didn't and hopefully most phones upgrade to 1.1.2 -though bear in mind that many, many unlocked phones will continue running 1.1.1, and a great many if those are not fixed with jailbreakme.com - so they remain potentially vulnerable. Also, those improperly jailbroken and with ssh left on could potentially get hacked in over the air/wifi. Newer methods close these openings, but those running earlier hacks could pose (an ever shrinking) target.
Now, if nothing changed, and Apple would not work towards securing the phone more, he may have more of a point - but I have a feeling that by the time the SDK ships, the iPhone will be a hell of a lot more secure - I would hope that at one point it would stop operating everything in root mode.
Since this individual works for a company that sells anti-virus software, it is possible that his statements are biased. It is 80-90% sure that when third party apps are allowed for the iPhone, F-Secure will want to sell you their software for $$$.
Not really, it is also enough to *NOT UPGRADE* from 1.1.1, seeing as how plenty of phones will remain in the channel that come with 1.1.1 out of the box, and many phones that won't upgrade because they are unlocked one way or another.
These will remain vulnerable, though obviously their numbers are decreasing as more updates become available.
Seriously, what a piece of nonsense. If Mr. Runald knew how difficult the jailbreaking process on the iPhone really is, I'm sure he would realize that such an "infection" would hardly go unnoticed.
" LOK!11!1!!1 LOL WE R HOPNG TAHT W3 CAN R ENOUGH PEOPL3 IN2 THINKNG THEY MAY B AT RISK SO WA CAN ACTUALY HAEV SOME NU WORK OUT TH3RE!!11! OMG WTF WUT I DIDNT EXPLANE SI TEH SITUATION SI SO HIGHLEY UNLIEKLEY TAHT ONLEY A FOL WUD DO TH3M AND NO SACURITY R CAN PROTECT A COMPLATE IDIOT!!11!!1 OMG ALSO FOR THOS3 TAHT UESD HAX 2 UNLOK THEYRE PHONE MAY B VULN3RABLA BUT OF COURSA THEY R VULNERABL3 B/C THAY HAEVNT UPDAETD 2 DA MOST RECENT SACURITY PATCH NOR HAEV TH3Y MAED SUR3 TEH HAK TH3Y UESD DIDNT COMPROMIES DA SECURITY OF DA DEVIEC IN TEH FIRST PLAEC!111!1!!1 WTF BUT I HAEV A QUOTA 2 MET AND INSTEAD OF ACTUALY HAVNG 2 WORK FOR MAH PAYCHEK AND 3ARN IT I WUD RATH3R DRUM UP FUD F3AR AND SE IF TEH DROVES OF MINDLES GULIBL3 IDIOTS WIL COMA 2 M3 FOR TEH SOLUTION!1!!!!111 LOL "
Ironic that one that works for an "antivirus" company would make an announcement of the likes of this one. Lets see.
(1) Feed people useless fear. (2) Let the paranoia build. (3) Release a "security software app" in February. (4) Profit.
F-U-D