Tag Archives: remote

APPLE iOS 4.0.2 Update for iPhone and iPod touch & 3.2.2 Update for iPad

0
Filed under Apple Updates, Exploits, iPad, iPhone, iTouch
Tagged as , , , , , ,

Apple has released an update to fix comex’s recent .pdf exploit used by jailbreakme.com to jailbreak iDevices.

You must use iTunes to update your device. This update is not available through Apple Software Update

For more information on the security update Apple Security Updates web site: http://support.apple.com/kb/HT1222

iPhone SSH worms making the rounds

0
Filed under Exploits, News, Vulnerabilities
Tagged as , , , , , ,

updated 9.11.09

More variants of iPhone malware are showing up, some claiming to gather personal data from phones. Don’t be surprised with the source code for ikee circulating that more nefarious malware will be coming soon.

JailBroken phone w/ alpine default pswd = pwned phone or a honeypot ;)

iPhone ikee Virus

iPhone ikee Virus

In the past week or so at least four variants of simple worms that look for default ssh passwords on Jail Broken iPhones and replace the backgrounds screens have turned up. The one in the Netherlands is asking users to paypal 5 € to have it fixed.

JD has an interview with the Australian writer ikee and two versions of the source code are available for research purposes. This variant scans a list of subnets for exploitable iPhones and pwns them replacing the background image with a custom one.

Affected users are iPhone users that have JailBroken their phones and NOT changed their default ssh password of alpine. Take a look here at Saurik’s page with detailed instructions on changing your ssh password.

Dino Dai Zovi presents Machiavelli – Another POC rootkit for Mac OS X

0
Filed under Exploits, News, Vulnerabilities
Tagged as , , , , , , , ,

At the Black Hat security conference on last week, security researcher Dino Dai Zovi presented a proof-of-concept rootkit that runs on Apple’s Mac OS X operating system, underscoring the fact that all software has flaws. Dai Zovi’s proof-of-concept rootkit is called Machiavelli, a reference to the Mach kernel that underpins Mac OS X.

“Machiavelli consists of a Mach proxy server on the local controlling host and a number of remote agent servers that run on remote compromised hosts,” Dai Zovi explains in a technical paper that describes his work. “On the controlling host, rootkit management utilities obtain a proxy Mach port from the proxy server and use it just as a normal application would use a local Mach port.”

With his presentation complete, Dai Zovi plans soon to release several Mac software tools related to his research on his Web site. These include: Inject Bundle, for data injection; iChatSpy, code for logging instant messages; SSLSpy, for logging SSL traffic; iSightSpy, for capturing a single frame from any Apple iSight camera; Machiavelli, for remotely controlling a compromised system; and Uncloak, a rootkit identification tool.

Apple Safari Remote code execution (CSS:Attr)

0
Filed under News, Vulnerabilities
Tagged as , , , ,

http://blog.zoller.lu/2009/05/advisory-apple-safari-remote-code.html

Mac OS X Java applet Remote Deserialization Remote PoC

0
Filed under Exploits, News, Vulnerabilities
Tagged as , , , , , , ,

info by Landon Fuller

http://landonf.bikemonkey.org/static/moab-tests/CVE-2008-5353/hello.htmlcompiled/decompiled:

http://milw0rm.com/sploits/2009-javax.tgz

Apple iTunes 8.1.1 (ITMS) Multiple Protocol Handler BOF Exploit (meta)

0
Filed under Exploits, News, Vulnerabilities
Tagged as , , , , ,
Metasploit Framework exploit module by Will Drewry

Apple Safari <= 3.2.x (XXE attack) Local File Theft Vulnerability

0
Filed under Exploits, News, Vulnerabilities
Tagged as , , , , , , ,

Safari prior to version 4 may permit an evil web page to steal files from the local system.

Full techinical details – http://scary.beasts.org/security/CESA-2009-006.html

Blogpost – http://scarybeastsecurity.blogspot.com/2009/06/apples-safari-4-fixes-local-file-theft.html
(includes 1-click demos)

Developing Mac OSX kernel rootkits

0
Filed under Exploits, News, Reading
Tagged as , , , , , , ,

Phrack #66 was released today with some always interesting articles - Developing Mac OS X kernel rootkits by wowie & ghalen

Memory Corruption Vulnerability in Apple Safari

0
Filed under News, Vulnerabilities
Tagged as , , ,

A memory corruption vulnerability exists in Apple Safari which allows a remote attacker to execute arbitrary code through a malicious webpage.

http://www.fortiguardcenter.com/advisory/FGA-2009-23.html