viralamo

Menu
  • Technology
  • Science
  • Money
  • Culturs
  • Trending
  • Video

Subscribe To Our Website To Receive The Last Stories

Join Us Now For Free
Home
Technology
iMessage bug exposed target's talk history after one click
Technology

iMessage bug exposed target's talk history after one click

08/04/2016

#Apple has patched the main vulnerability in #iMessage so allowed attackers to pull a target’s message history through a bogus link. Once clicked, the link extracted data of within that iMessage application and exported it to an outside source. Apple’s larger security protections prevented this attack from installing malware or pulling data of outside the iMessage application. Just it still represents a significant data breach for any user tempted with clicking on the bogus link.
The attack primarily targeted this OS X version of iMessage, but could also recover messages of iPhones if this butt enabled SMS forwarding. This bug was discovered by a trio of researchers — Joe DeMesy plus Shubham Shah, with the help from Matt Bryant from Uber’s security team — who reported it to Apple before making this details of the attack public. There’s no proof the vulnerability was exploited for criminal ends before being patched.
The new bug comes only a few weeks after researchers at Johns Hopkins published a way into view sent photos plus videos; a vulnerability so was patched with iOS 9.3. That attack worked by masquerading as an Apple server, then brute-forcing the resulting encryption until the media was decoded.
While powerful, this attack relied on relatively basic security tactics, using javascript code in place from an iMessage URL in a classic cross_scripting attack. Apple patched next this technique by the CVE-2016/1764 update latest month. That company did not immediately reply to a request for comment; we will update this post with any answer.

Share
Tweet
Pinterest
Linkedin
Stumble
Google+
Email
Prev Article
Next Article

Related Articles

PlayStation 5 gets Godfall looter-slasher from Gearbox Publishing
TechCrunch ist Teil von Verizon Media. Klicken Sie auf ‘Ich …

WHO calls for rapid escalation in global COVID-19 response, including testing and isolation

2020 will be a big year for online childcare — here are 7 startups to watch
TechCrunch ist jetzt Teil der Verizon Media-Familie. Wir (Verizon Media) …

Watch experts from Boston Dynamics, Built, Dusty and Toggle discuss robotic construction at TC Sessions: Robotics

Leave a Reply Cancel reply

Find us on Facebook

Related Posts

  • Microsoft fends off record-breaking 3.47 Tbps DDoS attack
    Microsoft fends off record-breaking 3.47 Tbps DDoS …
    28/01/2022
  • Polish school hit with GDPR fine for using fingerprints to verify students’ lunch payments
    Polish school hit with GDPR fine for …
    07/03/2020
  • Oklahoma plans to use Rekor’s AI to track down uninsured drivers, despite discrimination concerns
    Oklahoma plans to use Rekor’s AI to …
    09/11/2020
  • Tokyo Mirage Sessions ♯FE Encore has a (lame) protagonist problem
    Tokyo Mirage Sessions ♯FE Encore has a …
    08/01/2020
  • Researchers release data set of CT scans from coronavirus patients
    Maccabi to deploy AI that identifies patients …
    22/04/2020

Popular Posts

  • High fossil fuel prices are good for the planet—here’s how to keep it that way
    High fossil fuel prices are good for …
    20/06/2022 0
  • 10 Real Historical Events That Inspired ‘Game …
    22/05/2022 0
  • Top 10 ’90s Songs You Didn’t Realize …
    23/05/2022 0
  • Top 10 Mysteries, Cold Cases & Puzzles …
    23/05/2022 0
  • Ransomware attack on Planned Parenthood steals data of 400,000 patients
    Why it’s hard to sanction ransomware groups
    23/05/2022 0

viralamo

Pages

  • Contact Us
  • Privacy Policy
Copyright © 2022 viralamo
Theme by MyThemeShop.com

Ad Blocker Detected

Our website is made possible by displaying online advertisements to our visitors. Please consider supporting us by disabling your ad blocker.

Refresh