AfterDawn: Tech news

Team that posted iPad email details finds new exploit, in Safari

Written by Andre Yoskowitz @ 15 Jun 2010 5:13 User comments (4)

Team that posted iPad email details finds new exploit, in Safari Last week, AT&T confirmed that 114,067 iPad 3G owners had their email information leaked to the Web, with the data being stolen and exposed by a group called Goatse Security.
AT&T went as far as to call Goatse "malicious hackers" who attacked AT&T's servers, and the group is now under investigation by the FBI.

Today, the same group has exposed another security hole in the iPad, using the same ICC-IDs given out by using a script on the AT&T Website and determining the locations of iPad owners.

Additionally, the group says an unpatched Safari browser exploit will allow for targeted attacks on iPads. The exploit, reads DailyTech, "uses an integer overflow exploit, which gives access to proxy connections over banned ports, allowing all sorts of ill purposes including spewing spam and malware deliveries to locally networked machines."



Says Goatse of the new Safari exploit: "The potential for this sort of attack and the number of iPad users on the list we saw who were stewards of major public and commercial infrastructure necessitated our public disclosure. People in critical positions have a right to completely understand the scope of vulnerability immediately. Not days or weeks or months after potential intrusion."

Previous Next  

4 user comments

115.6.2010 20:11

HAHAHA! Don't say that I didn't tell you so. AT&T's network is embarrassing at best. Apple, what the hell were you thinking? Oh I forgot, they don't!! Whoops!!

215.6.2010 23:06

LOL I'm glad I can't wait for some coder to start noticing the weakness in Mac OS as well and start hitting them hard so these fan boys wont have anything to say.

316.6.2010 05:19

So it does not run anything...yet it still has security holes? There was a time when Apple was a good choice for someone who just wanted email and web browsing...but clearly Apple can't even get that right.

416.6.2010 09:32

Originally posted by KillerBug:
So it does not run anything...yet it still has security holes? There was a time when Apple was a good choice for someone who just wanted email and web browsing...but clearly Apple can't even get that right.
Yup a lot of people give apple praise because they think it is so more much secure than windows is. Its just like what the hacker Marc Maiffret said “Windows Is More Secure, Apple Community Is Ignorant” Its not because apple is so secure that it does have that much viruses its been the market is too small to waste time targeting them. Al thought sometimes I wish they would send some their way. I think Apple has noticed this with the pulling of their famous "pc vs mac" commercial.

Comments have been disabled for this article.

Latest news

VLC hits milestone: over 5 billion downloads VLC hits milestone: over 5 billion downloads (16 Mar 2024 4:31)
VLC Media Player, the versatile video-software powerhouse, has achieved a remarkable feat: it has been downloaded over 5 billion times.
2 user comments
Sideloading apps to Android gets easier, as Google settles its lawsuit Sideloading apps to Android gets easier, as Google settles its lawsuit (19 Dec 2023 11:09)
Google settled its lawsuit in September 2023, and one of the settlement terms was that the way applications are installed on Android from outside the Google Play Store must become simpler. In the future, installing APK files will be easier.
8 user comments
Roomba Combo j7+ review - Clever trick allows robot vacuum finally to tackle home with rugs and carpets Roomba Combo j7+ review - Clever trick allows robot vacuum finally to tackle home with rugs and carpets (06 Jun 2023 9:19)
Roomba Combo j7+ is the very first Roomba model to combine robot vacuum with mopping features. And Roomba Combo j7+ does all that with a very clever trick, which tackles the problem with mopping and carpets. But is it any good? We found out.
Neato, the robot vacuum company, ends its operations Neato, the robot vacuum company, ends its operations (02 May 2023 3:38)
Neato Robotics has ceased its operations. American robot vacuum pioneer founded in 2005 has finally called it quits and company will cease its operations and sales. Only a skeleton crew will remain who will keep the servers running until 2028.
5 user comments
How to Send Messages to Yourself on WhatsApp How to Send Messages to Yourself on WhatsApp (20 Mar 2023 1:25)
The world's most popular messaging platform, Meta-owned WhatsApp has enabled sending messages to yourself. While at first, this might seem like an odd feature, it can be very useful in a lot of situations. ....
18 user comments

News archive