ExtraTorrent.cc - The Largest Bittorent SystemLogin   |   Register
Latest Articles
Most searched
Hot torrents
First Cams
View Torrent Info: Moana 2016 HD-TS XviD AC3-CPG
View Torrent Info: Shut.In.2016.HDCAM.x264 - Lesnar
View Torrent Info: Fantastic Beast and Where To Find Them 2016 HD-TS x264-CPG
View Torrent Info: Arrival 2016 HDCAM x264 AC3-TuttyFruity
Hot torrents
XVID DIVX
View Torrent Info: Santas.Boot.Camp.2016.HDRip.XviD.AC3-EVO
View Torrent Info: Rupture.2016.HDRip.XviD.AC3-EVO
View Torrent Info: Miss.Peregrines.Home.for.Peculiar.Children.2016.BRRip.XviD.AC3-ETRG
View Torrent Info: Storks.2016.BRRip.XViD-ETRG
Hot torrents
H264 X264
View Torrent Info: Sully.2016.720p.BRRip.x264.AAC-ETRG
View Torrent Info: Storks.2016.720p.BRRip.x264.AAC-ETRG
View Torrent Info: Eliminators.2016.720p.BRRip.x264.AAC-ETRG
View Torrent Info: Morgan.2016.720p.BRRip.x264.AAC-ETRG
Hot torrents
Television
View Torrent Info: UFC The Ultimate Fighter 24 Finale HDTV x264-Ebi [TJET]
View Torrent Info: Bellator 166 Dantas vs Warren 2 HDTV x264-Ebi [TJET]
View Torrent Info: Ghost.Adventures.S13E10.Dumas.Brothel.HDTV.x264-SPASM
View Torrent Info: Van.Helsing.S01E12.WEB-DL.x264-FUM[ettv]
View Torrent Info: Nenu Sailaja (2016)   EXTRAS 720p UNCUT HDRip x264 [Dual Audio] [Hindi DD 2.0 - Telugu 2.0] Exclusive By -=!Dr.STAR!=-
View Torrent Info: Morgan (2016) 1080p BDRip DUAL DD 5.1 x264 ~ PyZ
View Torrent Info: Kahaani 2 (2016) Hindi 1CD Desi Cam x264 AAC - Downloadhub
View Torrent Info: Air Bud (1997) 720p HDTVRip x264 Eng Subs [Dual Audio] [Hindi 2.0 - English 5.1] -=!Dr.STAR!=-
30s
Chat
To add new messages please Login or Register for FREE
Warning! Use a VPN When Downloading Torrents!
Your IP Address is 54.167.142.229.   Location is United States
Your Internet Provider and Government can track your torrent activity!  Hide your IP ADDRESS with a VPN!
ExtraTorrent strongly recommends using Trust.Zone VPN to anonymize your torrenting. It's FREE!

ExtraTorrent.cc > Articles > Apple Mobile Devices Vulnerable to Old Flaw

Apple Mobile Devices Vulnerable to Old Flaw

Apple Mobile Devices Vulnerable to Old Flaw

Added: Saturday, August 6th, 2011
Category: Bit Torrent Freedom > The Industries Of Records, Gaming, Software, Movies
Tags:ET, p2p, Torrent, Piracy, Peer To Peer, Network, Hackers, Internet, BitTorrent, Google, utorrent, bitcomet, extratorrent, 2010, www.extrattorrent.com
The industry experts warn that users of Apple mobile devices will need to upgrade the software of the devices in question (particularly on iPhones and iPads), unless they want to be vulnerable to a nine-year-old flaw that the company has just got around to fixing.

backtothemac.jpg

The flaw in question enables anyone to snoop the secure traffic of information from unpatched iPhones and iPads through a very simple tool. The reports are that it took 9 years for the insecurity experts at Apple to develop a patch for the bug. Meanwhile, the patch is released only for the iPhone 4, iPhone 3G and 3rd and 4th-generation iPod Touch. Those who don’t patch their devices or use older models of phones are warned that the hackers can effortlessly intercept and decrypt secure traffic.

The industry experts point out that all the user needs to do is to take their device into a public Wi-Fi hotspot to be targeted. Meanwhile, Apple really has little excuse for this security howler. As it was found out, a nine-year-old bug was discovered back in 2002. Microsoft consequently patched the bug in its Windows’ cryptographic component the same year, but Apple somehow failed to check SSL vulnerabilities when writing the code, and didn't release any patches afterwards. When the revision of a traffic sniffing tool was issued a while ago, it was noted that devices running iOS became wide open. Moreover, the snooping tool was so easy to use that a housewife could use it to crack unpatched iPhones.

It seems that when Jobs was releasing the mobile device, the developed software contained a feature where its SSL certificate parsing simply didn’t care to check the basic Constraints parameter of other certificates in the chain, so if an attacker signed a new certificate through a legitimate end entity certificate, it would mean that they could get a “valid” certificate for any domain. The bug was confirmed by using a legitimate certificate for one of the websites in order to make a valid certificate for Paypal. It appeared that the hackers could have intercepted others' iOS-generated traffic destined at the real PayPal website and simply stolen their usernames and passwords.

Meanwhile, insecurity experts point out that the flaw had been in iOS since its very beginning. Now, if intruders had tried to take an advantage of the flaw, they would have only caught iPhone users, because Windows users would have had browser notifications of invalid certificates.




By:
SaM
August 6th,2011

Posted by: 
SaM

Date:  Saturday, August 6th, 2011



Comments (1) (please add your comment »)

1
posted by (2011-08-06 20:41:58)
sabby2013 avatarinnovation at its best xD lmao



Articles Search
Most Popular Stories
Articles Categories
Articles Tags


Home - Browse Torrents - Upload Torrent - Stat - Forum - FAQ - Login
ExtraTorrent.cc is in compliance with copyrights
BitCoin: 12DiyqsWhENahDzdhdYsRrCw8FPQVcCkcm
Can't load ExtraTorrent? Try our official mirrors: etmirror.com - etproxy.com - extratorrentonline.com - extratorrentlive.com
2006-2016 ExtraTorrent.cc1