Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Apple > Apple & Mac Blog

September 20th, 2012, 14:53 GMT · By

BLOG

Apple Credits Pod2g for Finding Not One, but Two SMS Flaws in iOS

SHARE:

Adjust text size:


Pod2g credited for discovering two nasty SMS flaws in iOS Enlarge picture - Pod2g credited for discovering two nasty SMS flaws in iOS
One notable takeaway from Apple’s iOS 6 security bulletin is that Pod2g’s SMS spoofing flaw is now fixed. The Cupertino giant has included an insane number of security patches in its latest iOS update, hackers note.

Confirmed by fellow jailbreaker Joshua Hill (@p0sixninja), the SMS bug originally discovered and documented by hacker Cyril (@Pod2g) is now patched in iOS 6.

According to Apple’s advisory, earlier versions of iOS could make an SMS message appear to have been sent by an arbitrary user, leading to a potential spoofing attack.

“Messages displayed the return address of an SMS message as the sender. Return addresses may be spoofed,” reads the advisory. Apple closed the hole “by always displaying the originating address instead of the return address.”

This is actually not the only SMS bug Apple patched in iOS 6. Another one, also discovered by Pod2g, could disrupt cellular connectivity. Apple’s engineers fixed it through improved bounds checking.

The iPhone makers didn't forget to credit the hacker while they were at it (screenshot above).

TELL US WHAT YOU THINK:

1,057 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


GarageBand 1.3 Lets You Make Ringtones for Your iPhone, iPad

iPhoto Gets the Biggest Update Ever on iOS, OS X

Aperture 3.4 on OS X 10.8 Gets Shared Photo Streams

Hackers Hijack iPhone 4S, Access Photos and Contacts at Pwn2Own

iOS 6 App Store Now Displays Passbook-Enabled Apps

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM