Got a tip for us? Share it...

Apple Investigating iOS Vulnerability Allowing Web-Based Jailbreak

Over the weekend, a new Web-based jailbreak became available for iOS devices, offering users a simple method to open their devices to installation of unauthorized third-party applications.

At the time, we noted potential security implications of the method, which involves a security hole in how the mobile Safari browser included on all iOS devices handles embedded fonts. Exploiting the hole allows a remote site to gain control over a user's device. In the case of the new JailbreakMe site, the exploit is offering a convenient delivery method for a service, but others could use the same method for malicious purposes.

Reuters reports that it has received an official response from Apple on the issue, which notes only that it is investigating the security hole.

Company spokeswoman Natalie Harrison said the company was aware of the report.

"We're investigating," she said.

There is no word yet on a timetable for a fix. While many users are no doubt appreciative of the simple jailbreak method, Apple will certainly want to close the security hole as quickly as possible to both prevent malicious exploitation of it and to thwart the simple jailbreak process, a system modification frowned upon by the company.

Top Rated Comments

(View all)

20 months ago
that certainly males sense!

Lets hope our friends who do all the hard work figuring this stuff out find another exploit when the new updates come out!
Rating: 0 Positives / 0 Negatives
20 months ago
they just figured this out?
Rating: 0 Positives / 0 Negatives
20 months ago
This jailbreak was way too easy. Bothers me a little.
Rating: 0 Positives / 0 Negatives
20 months ago
Well that didn't take long.
Rating: 0 Positives / 0 Negatives
20 months ago
All the more reason to stop allowing jailbroken phones. Lock them down. It only invites people to look for holes in the OS to try their mischief...
Rating: 0 Positives / 0 Negatives
20 months ago

All the more reason to stop allowing jailbroken phones. Lock them down. It only invites people to look for holes in the OS to try their mischief...

What do you think they've been doing? That's like saying after someone kicks in the door to rob an apartment, "well you shouldn't have had any doors, that just gives criminals a way in."
Rating: 0 Positives / 0 Negatives
20 months ago
Are you all jailbroken?
Rating: 0 Positives / 0 Negatives
20 months ago
Can't have users enjoying choice....now can we? Once upon a time Steve Jobs said that Apple believed in choice when talking about Internet Explorer. How times have changed :mad:

This jailbreak was way too easy. Bothers me a little.


Funny thing is, to fix the PDF exploit, you need to JB your phone and then get the update. Yes, right now, you need to JailBreak your phone to make it more secure.
Rating: 0 Positives / 0 Negatives
20 months ago

All the more reason to stop allowing jailbroken phones. Lock them down. It only invites people to look for holes in the OS to try their mischief...


Actually, all the more reason to allow jail-broken phones, or at least attempts to make them so.

This mischief will, in turn, enhance and accelerate security measures, by revealing any holes or vulnerabilities before they can be exploited by foul play.
Rating: 0 Positives / 0 Negatives
20 months ago

All the more reason to stop allowing jailbroken phones. Lock them down. It only invites people to look for holes in the OS to try their mischief...


You don't get it. Apple *is* trying to lock it down. No amount of law is going to stop people finding these vulnerabilities.

What it *might* do is dissuade _some_ people to stop using them.
Rating: 0 Positives / 0 Negatives

[ Read All Comments ]