iPhone Security Research
iPhone related weblog entries
iPhone SMS Vulnerability
This vulnerability is related to our (Charlie Miller and myself) talk at Black Hat USA 2009 titled
Fuzzing the Phone in your Phone
The slides of the talk can be found here:
SMS Security Research
Apple's security advisory:
CVE-2009-2204
As far as we know iPhone OS 3.0.1 mainly fixes this/our bug :-)
Safari Phone auto-dialer bug
www.sit.fraunhofer.de/pressedownloads/pressemitteilungen/iPhoneHack.jsp
Story in English on heise.co.uk
Apple's security advisories:
Original safari phone call bug:
CVE-2008-4233
(
advisory
)
Updated safari phone call bug:
CVE-2009-0961
Mail remote image/iframe loading:
CVE-2009-0960
Here is the
full disclosure
.
iPhone Software
my Cydia
repository
updated: Fri Aug 7 03:35:36 CEST 2009
-[
Home
]-[
Weblog
]-[
Bluetooth
]-[
Windows Mobile
]-[
Symbian
]-[
PalmOS
]-[
J2ME
]-[
Maemo
]-[
Security
]-[
Android
]-[
NFC
]-[
Contact
]-