<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:go='http://ns.gigaom.com/'
xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>GigaOM &#187; Apple</title>
	<atom:link href="http://gigaom.com/apple/tag/exploit/feed/" rel="self" type="application/rss+xml" />
	<link>http://gigaom.com</link>
	<description></description>
	<lastBuildDate>Fri, 10 Feb 2012 10:55:02 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='gigaom.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://0.gravatar.com/blavatar/0db8f6557d022075dbbf010c54d46d93?s=96&#038;d=http%3A%2F%2Fs2.wp.com%2Fi%2Fbuttonw-com.png</url>
		<title>GigaOM &#187; Apple</title>
		<link>http://gigaom.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://gigaom.com/osd.xml" title="GigaOM" />
	<atom:link rel='hub' href='http://gigaom.com/?pushpress=hub'/>
		<item>
		<title>If Apple can&#8217;t beat jailbreakers, it&#8217;ll recruit them</title>
		<link>http://gigaom.com/apple/if-apple-cant-beat-jailbreakers-itll-recruit-them/</link>
		<comments>http://gigaom.com/apple/if-apple-cant-beat-jailbreakers-itll-recruit-them/#comments</comments>
		<pubDate>Fri, 26 Aug 2011 12:21:59 +0000</pubDate>
		<dc:creator>Darrell Etherington</dc:creator>
				<category><![CDATA[@CNN]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[coding]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[iOS]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[iphone dev team]]></category>
		<category><![CDATA[jailbreak]]></category>
		<category><![CDATA[jailbreaking]]></category>

		<guid isPermaLink="false">http://gigaom.com/?p=397957</guid>
		<description><![CDATA[For Comex, a 19-year-old iPhone hacker whose real name is Nicholas Allegra, jailbreaking the iPhone comes easy. The iPhone Dev Team member may have hacked himself a golden ticket, since Apple has come calling and he now has an internship at the company.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=gigaom.com&amp;blog=14960843&amp;post=397957&amp;subd=gigaom2&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img  title="jailbreak" src="http://gigapple.files.wordpress.com/2009/04/jailbreak.png?w=300&#038;h=186" alt="" width="300" height="186" class="alignright size-medium wp-image-179145" />For Comex, a 19-year-old iPhone hacker whose real name is Nicholas Allegra, jailbreaking the iPhone comes easy. He&#8217;s a member of the iPhone Dev Team, the group responsible for continually frustrating Apple&#8217;s attempts to keep iOS a closed system. Apple must be tired of all this frustration, since the company has apparently <a href="https://twitter.com/#!/comex/status/106863873952448512">offered Allegra an internship</a> beginning in September.</p>
<p>Allegra is responsible for JailbreakMe 3.0, a web-based jailbreak tool released in July and designed to be used on iPhones, iPad and iPod touches running iOS 4.3.3. Before that, he created Spirit, which was an untethered jailbreak for iOS devices running iOS 3.1.2 to 3.2, and he was also a Nintendo Wii homebrew software developer.</p>
<p>Allegra has been described by other iPhone hackers and <em><a href="http://www.forbes.com/sites/andygreenberg/2011/08/01/meet-comex-the-iphone-uber-hacker-who-keeps-outsmarting-apple/">Forbes</a></em> as somewhat of a prodigy, and he&#8217;s been compared to some of the most advanced computer systems security experts in the world.</p>
<p>Apple probably thinks it&#8217;s better to have Allegra working with it rather than against it. In theory, his ability to quickly and easily locate exploits in iOS code will give Apple advance notice of problems before they arise, so that it can patch holes before software updates hit the public. In practice, it&#8217;s unlikely to stop the cat-and-mouse game of jailbreaking altogether, but kudos to Apple for trying a solution that doesn&#8217;t involve civil suits and generally draconian behavior.</p>
<p><strong>Related research and analysis from GigaOM Pro:</strong><br />Subscriber content. <a href="http://pro.gigaom.com/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=397957+if-apple-cant-beat-jailbreakers-itll-recruit-them&utm_content=etherin">Sign up for a free trial</a>.</p><ul><li><a href="http://pro.gigaom.com/2010/08/why-does-apple-continue-to-fight-iphone-jailbreaking/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=397957+if-apple-cant-beat-jailbreakers-itll-recruit-them&utm_content=etherin">Why Apple Should End Its Fight Against iPhone&nbsp;Jailbreaking</a></li><li><a href="http://pro.gigaom.com/2011/07/connected-consumer-q2-digital-music-meets-the-cloud-e-book-growth-explodes/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=397957+if-apple-cant-beat-jailbreakers-itll-recruit-them&utm_content=etherin">Connected Consumer Q2: Digital music meets the cloud; e-book growth&nbsp;explodes</a></li><li><a href="http://pro.gigaom.com/2011/07/mobile-q2-smartphone-growth-surges-ipads-rule-continues/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=397957+if-apple-cant-beat-jailbreakers-itll-recruit-them&utm_content=etherin">Mobile Q2: Smartphone growth surges; iPad&#8217;s rule&nbsp;continues</a></li></ul><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=gigaom.com&amp;blog=14960843&amp;post=397957&amp;subd=gigaom2&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://gigaom.com/apple/if-apple-cant-beat-jailbreakers-itll-recruit-them/feed/</wfw:commentRss>
		<slash:comments>9</slash:comments>
	 <go:thumbnail>http://gigapple.files.wordpress.com/2009/04/jailbreak.png?w=130</go:thumbnail> 
		<media:thumbnail url="http://gigapple.files.wordpress.com/2009/04/jailbreak.png?w=210" />
		<media:content url="http://gigapple.files.wordpress.com/2009/04/jailbreak.png?w=210" medium="image">
			<media:title type="html">jailbreak</media:title>
		</media:content>

		<media:content url="http://1.gravatar.com/avatar/188039e12983eb749171a75cfd01378d?s=96&#38;d=retro&#38;r=PG" medium="image">
			<media:title type="html">etherin</media:title>
		</media:content>

		<media:content url="http://gigapple.files.wordpress.com/2009/04/jailbreak.png?w=300" medium="image">
			<media:title type="html">jailbreak</media:title>
		</media:content>
	</item>
		<item>
		<title>Apple working on a fix for potential iOS security threat</title>
		<link>http://gigaom.com/apple/apple-working-on-a-fix-for-potential-ios-security-threat/</link>
		<comments>http://gigaom.com/apple/apple-working-on-a-fix-for-potential-ios-security-threat/#comments</comments>
		<pubDate>Thu, 07 Jul 2011 14:57:12 +0000</pubDate>
		<dc:creator>Darrell Etherington</dc:creator>
				<category><![CDATA[@CNN]]></category>
		<category><![CDATA[4.3.3]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[iOS]]></category>
		<category><![CDATA[jailbreak]]></category>
		<category><![CDATA[jailbreakme.com]]></category>
		<category><![CDATA[Mobile]]></category>
		<category><![CDATA[pdf]]></category>
		<category><![CDATA[safari]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://gigaom.com/?p=372917</guid>
		<description><![CDATA[Apple is already working on a fix for a security flaw reported by the German Federal Office for Information Security Wednesday. The Mac maker said in a statement that it is "developing a fix that will be available to customers in an upcoming software update."
<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=gigaom.com&amp;blog=14960843&amp;post=372917&amp;subd=gigaom2&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img  title="mobile-safari-feature" src="http://gigaom2.files.wordpress.com/2011/07/mobile-safari-feature.png?w=300&#038;h=200" alt="" width="300" height="200" class="alignright size-medium wp-image-372979" />Apple is <a href="http://finance.yahoo.com/news/Apple-vows-to-fix-security-apf-4013301284.html?x=0">already working on a fix for a security flaw</a> reported by the <a href="http://www.bizjournals.com/sanjose/news/2011/07/06/germany-warns-of-apple-security-hole.html">German Federal Office for Information Security</a> Wednesday. The Mac maker said in a statement that it &#8220;takes security very seriously,&#8221; and is &#8220;aware of this issue and developing a fix that will be available to customers in an upcoming software update.&#8221;</p>
<p>There isn&#8217;t a specific timeline for when the update will be released, but when it does arrive, it&#8217;ll also shut down the ability to jailbreak iOS devices using the most recent JailbreakMe browser-based method. The jailbreak takes advantage of the same exploit which poses a potential security threat and involves the way in which Safari and Mail manage PDF file downloads.</p>
<p>Apple will likely be quick with an update, considering the nature of the German IT agency&#8217;s warning. The organization called the flaw a &#8220;critical weakness,&#8221; and one which is &#8220;sufficient to infect the mobile device with malware without the user&#8217;s knowledge.&#8221; It affects users running iOS 4.3.3, and possibly older versions as well, according to the German agency.</p>
<p>While users await a software update to patch the hole, the best way to avoid any potential security threats is to avoid downloading PDF files from any untrusted sources, either via email or mobile Safari. As mobile web access becomes more popular, it&#8217;s generally a good idea for users to practice the same kind of safe browsing that helps avoid malicious attacks on desktop computers as well, part of which means not downloading content when its origin is at all suspect or hazy.</p>
<p>A <a href="http://news.cnet.com/8301-31021_3-20012694-260.html">similar flaw was discovered in August 2010</a> that also allowed for web-based jailbreak, and also caught the attention of the German government. Apple took <a href="http://gigaom.com/apple/apple-releases-ios-4-0-2-and-3-2-2-fixes-pdf-exploit/">about a week to issue an iOS update</a> to patch the problem at that time, so it&#8217;s reasonable to expect a similar timeline for release with a 4.3.4 update.</p>
<p><strong>Related research and analysis from GigaOM Pro:</strong><br />Subscriber content. <a href="http://pro.gigaom.com/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=372917+apple-working-on-a-fix-for-potential-ios-security-threat&utm_content=etherin">Sign up for a free trial</a>.</p><ul><li><a href="http://pro.gigaom.com/2011/04/mobile-q1-all-eyes-on-tablets-t-mobile-and-att/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=372917+apple-working-on-a-fix-for-potential-ios-security-threat&utm_content=etherin">Mobile Q1: All Eyes on Tablets, T-Mobile and&nbsp;AT&amp;T</a></li><li><a href="http://pro.gigaom.com/2011/04/a-media-tablet-forecast-2011-2015/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=372917+apple-working-on-a-fix-for-potential-ios-security-threat&utm_content=etherin">A Media Tablet Forecast, 2011 &#8211;&nbsp;2015</a></li><li><a href="http://pro.gigaom.com/2011/04/a-global-mobile-handset-platforms-forecast-2011-2015/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=372917+apple-working-on-a-fix-for-potential-ios-security-threat&utm_content=etherin">A Global Mobile Handset Platform Forecast, 2011 &#8211;&nbsp;2015</a></li></ul><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=gigaom.com&amp;blog=14960843&amp;post=372917&amp;subd=gigaom2&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://gigaom.com/apple/apple-working-on-a-fix-for-potential-ios-security-threat/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	 <go:thumbnail>http://gigaom2.files.wordpress.com/2011/07/mobile-safari-feature.png?w=130</go:thumbnail> 
		<media:thumbnail url="http://gigaom2.files.wordpress.com/2011/07/mobile-safari-feature.png?w=210" />
		<media:content url="http://gigaom2.files.wordpress.com/2011/07/mobile-safari-feature.png?w=210" medium="image">
			<media:title type="html">mobile-safari-feature</media:title>
		</media:content>

		<media:content url="http://1.gravatar.com/avatar/188039e12983eb749171a75cfd01378d?s=96&#38;d=retro&#38;r=PG" medium="image">
			<media:title type="html">etherin</media:title>
		</media:content>

		<media:content url="http://gigaom2.files.wordpress.com/2011/07/mobile-safari-feature.png?w=300" medium="image">
			<media:title type="html">mobile-safari-feature</media:title>
		</media:content>
	</item>
		<item>
		<title>Sponsor post: Jailbreakers: First iPhone Worm Discovered, Features Rick Astley</title>
		<link>http://gigaom.com/apple/jailbreakers-first-iphone-worm-discovered-features-rick-astley/</link>
		<comments>http://gigaom.com/apple/jailbreakers-first-iphone-worm-discovered-features-rick-astley/#comments</comments>
		<pubDate>Mon, 09 Nov 2009 19:16:09 +0000</pubDate>
		<dc:creator>Darrell Etherington</dc:creator>
				<category><![CDATA[CNN Mobile]]></category>
		<category><![CDATA[Commentary]]></category>
		<category><![CDATA[news]]></category>
		<category><![CDATA[NYT Company News]]></category>
		<category><![CDATA[SYN Analysis]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[jailbreak]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[sponsorthanks]]></category>
		<category><![CDATA[ssh]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://theappleblog.com/?p=35498</guid>
		<description><![CDATA[The first iPhone worm has been discovered. It comes to us via Australia, and appears to be limited to that country for now, although it has the potential to spread. It also stars Rick Astley, so to speak. The work changes the iPhone&#8217;s wallpaper to an [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=gigaom.com&amp;blog=14960843&amp;post=173604&amp;subd=gigaom2&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p class="excerpt"><img  title="ikee-170" src="http://gigapple.files.wordpress.com/2009/11/ikee-170.jpg?w=170&#038;h=194" alt="ikee-170" width="170" height="194" class=" alignleft" />The first iPhone worm has been discovered. It comes to us via Australia, and appears to be limited to that country for now, although it has the potential to spread. It also stars Rick Astley, so to speak. The work changes the iPhone&#8217;s wallpaper to an image of the 1980s pop singer, who&#8217;s enjoyed a recent resurgence thanks to the <a href="http://gigaom.com/video/rickrolling-a-timeline/" rel="nofollow">Rick-rolling Internet phenomenon</a>.</p>
<p>The worm has the ability to break into jailbroken iPhones only. Even if you&#8217;ve jailbroken, you still aren&#8217;t vulnerable unless you&#8217;ve also installed SSH, and not changed the default password after doing so. As a result, only a small fraction of the larger iPhone community is probably susceptible to the &#8220;ikee virus,&#8221; as it is called in its own source code. <span id="more-173604"></span></p>
<p>Still, it shows that as the platform matures and becomes more widespread, it also becomes the target of more malicious attacks. Most hackers, like any businesspeople, are interested in the bottom line, and part of that involves targeting the largest group of people possible. With millions of users worldwide, the iPhone is definitely an appealing mark. ikee&#8217;s creator, a hacker calling himself &#8220;ikex,&#8221; cites a different explanation for this particular worm&#8217;s creation:</p>
<blockquote><p>Why?: Boredom, because i found it so stupid the fact that on my initial scan of my 3G optus range i found 27 hosts running SSH daemons, i could access 26 of them with root:alpine. Doesn&#8217;t anyone RTFM anymore?</p></blockquote>
<p>In the case of this worm, which only changes the background wallpaper to the Astley photo with the slogan, &#8220;ikee is never going to give you up&#8221; across the top, <a href="http://www.sophos.com/blogs/gc/g/2009/11/08/iphone-worm-discovered-wallpaper-rick-astley-photo/" target="_self" rel="nofollow">Graham Cluley of SophosLabs</a> suggests it&#8217;s really only an experiment:</p>
<blockquote><p>The source code is littered with comments from the author suggesting the worm has been written as an experiment. One of the comments berates affected users for not following instructions when installing SSH, because if they had changed the default password the worm would not have been able to infect them.</p></blockquote>
<p>While not dangerous in and of itself (it actually sort of provides a service by reminding users to take precautions), it could open the door for similar programs with less innocuous payloads. Hopefully, jailbreak users will learn from the experience and be prepared if someone more sinister tries to do the same thing again.</p>
<p>It&#8217;ll be interesting to see whether Apple latches onto this as a means to further decry the evils of jailbreak. If it leads to more serious exploits, it definitely would constitute a good reason to stay on the straight and narrow. In either case, expect to see more security concerns surrounding the iPhone as it continues its commercial success.</p>
<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=gigaom.com&amp;blog=14960843&amp;post=173604&amp;subd=gigaom2&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://gigaom.com/apple/jailbreakers-first-iphone-worm-discovered-features-rick-astley/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/188039e12983eb749171a75cfd01378d?s=96&#38;d=retro&#38;r=PG" medium="image">
			<media:title type="html">etherin</media:title>
		</media:content>

		<media:content url="http://gigapple.files.wordpress.com/2009/11/ikee-170.jpg" medium="image">
			<media:title type="html">ikee-170</media:title>
		</media:content>
	</item>
		<item>
		<title>Remote Denial of Service For OS X (Leopard)</title>
		<link>http://gigaom.com/apple/remote-denial-of-service-for-os-x-leopard/</link>
		<comments>http://gigaom.com/apple/remote-denial-of-service-for-os-x-leopard/#comments</comments>
		<pubDate>Wed, 27 Feb 2008 19:40:57 +0000</pubDate>
		<dc:creator>Bob Rudis</dc:creator>
				<category><![CDATA[Commentary]]></category>
		<category><![CDATA[Locations & Services]]></category>
		<category><![CDATA[Quickies]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[Leopard]]></category>
		<category><![CDATA[networking]]></category>
		<category><![CDATA[os x]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://theappleblog.com/2008/02/27/remote-denial-of-service-for-os-x-leopard/</guid>
		<description><![CDATA[Given the large amount of &#8220;feedback&#8221; I receive from many venues on why I&#8217;m crazy for suggesting that OS X users employ some type of client-side security software, I wanted to point out a very recent exploit that I saw over at Joel Esler&#8217;s blog. The [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=gigaom.com&amp;blog=14960843&amp;post=171309&amp;subd=gigaom2&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Given the large amount of &#8220;feedback&#8221; I receive from many venues on why I&#8217;m crazy for suggesting that OS X users employ some type of client-side security software, I wanted to point out a very recent exploit that I saw over at <a href="http://www.joelesler.net/2008/02/apple-macos-x-xnu-1228313-ipv6-ipcomp.html">Joel Esler&#8217;s blog</a>. The vulnerability is around the IPv6 networking layer of the underlying BSD operating system. Here&#8217;s the code:</p>
<blockquote><p><b>ORIGINAL</b><br />
<span style="font-family: Monaco, Courier">md = m_pulldown(m, off, sizeof(*ipcomp), NULL);</span><br />
<span style="font-family: Monaco, Courier">if <span style="color:red; font-weight:bold">(!m)</span> {</span></p>
<p><b>WHAT IT SHOULD HAVE BEEN</b><br />
<span style="font-family: Monaco, Courier">md = m_pulldown(m, off, sizeof(*ipcomp), NULL);</span><br />
<span style="font-family: Monaco, Courier">if <span style="color:red; font-weight:bold">(!m<u>d</u>)</span> {</span></p></blockquote>
<p>A <i>one character</i> difference in source code in an open source component trickled it&#8217;s way up to our shiny new operating system.</p>
<p>Anti-virus software won&#8217;t help you on this one (and I&#8217;m sure someone will point that out and continue to defend the lack of need for client security), but it provides a clear example of how coding errors in the operating system can – and will – be exploited, which is a strong enough reason to put up defenses in other areas. Again, it&#8217;s completely based on your risk appetite and there is a contingent of OS X users that swear by the notion of not investing in security until there is overt reason to. This example should prod some of those folks to start thinking more about how vulnerable their invulnerable systems really are.</p>
<p>The problem exists only in the IPv6 networking layer, and – since most folks do not need IPv6 enabled – you can disable IPv6 in each of the network interfaces in your Network System Preferences to give yourself a bit of protection. Here&#8217;s an example of that via the Airport configuration panel:</p>
<p><center><img src='http://gigapple.files.wordpress.com/2008/02/ipv6off.png?w=604' alt='Disable IPv6 in Aiport configuration'  class=" alignleft" /></center></p>
<p>Apple should be fixing this in the next security update.</p>
<p>More info on the exploit: <a href="http://secunia.com/advisories/29130/">Secunia</a>, <a href="http://www.informationweek.com/story/showArticle.jhtml?articleID=206900323&#038;cid=RSSfeed_IWK_All">InformationWeek</a>, <a href="http://www.digit-labs.org/files/exploits/xnu-ipv6-ipcomp.c">digit labs</a></p>
<p><strong>Related research and analysis from GigaOM Pro:</strong><br />Subscriber content. <a href="http://pro.gigaom.com/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=171309+remote-denial-of-service-for-os-x-leopard&utm_content=hrbrmstr">Sign up for a free trial</a>.</p><ul><li><a href="http://pro.gigaom.com/2011/03/why-ipad-2-will-lead-consumers-into-the-post-pc-era/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=171309+remote-denial-of-service-for-os-x-leopard&utm_content=hrbrmstr">Why iPad 2 Will Lead Consumers Into the Post-PC&nbsp;Era</a></li><li><a href="http://pro.gigaom.com/2011/03/the-near-term-evolution-of-social-commerce/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=171309+remote-denial-of-service-for-os-x-leopard&utm_content=hrbrmstr">The Near-Term Evolution of Social&nbsp;Commerce</a></li><li><a href="http://pro.gigaom.com/2011/02/content-farms-the-players-the-benefits-the-risks/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=171309+remote-denial-of-service-for-os-x-leopard&utm_content=hrbrmstr">Content Farms: The Players, The Benefits, The&nbsp;Risks</a></li></ul><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=gigaom.com&amp;blog=14960843&amp;post=171309&amp;subd=gigaom2&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://gigaom.com/apple/remote-denial-of-service-for-os-x-leopard/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a08d08f6b541441fccf36bc6392a0784?s=96&#38;d=retro&#38;r=PG" medium="image">
			<media:title type="html">hrbrmstr</media:title>
		</media:content>

		<media:content url="http://gigapple.files.wordpress.com/2008/02/ipv6off.png" medium="image">
			<media:title type="html">Disable IPv6 in Aiport configuration</media:title>
		</media:content>
	</item>
		<item>
		<title>Zero Day Exploit For QuickTime Flaw</title>
		<link>http://gigaom.com/apple/zero-day-exploit-for-quicktime-flaw/</link>
		<comments>http://gigaom.com/apple/zero-day-exploit-for-quicktime-flaw/#comments</comments>
		<pubDate>Fri, 11 Jan 2008 11:00:48 +0000</pubDate>
		<dc:creator>Bob Rudis</dc:creator>
				<category><![CDATA[Locations & Services]]></category>
		<category><![CDATA[Quickies]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[os x]]></category>
		<category><![CDATA[QuickTime]]></category>
		<category><![CDATA[rtsp]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://theappleblog.com/2008/01/11/zero-day-exploit-for-quicktime-flaw/</guid>
		<description><![CDATA[InformationWeek is reporting that an Italian security researcher has posted a exploit for a zero-day vulnerability in QuickTime 7.3.1 that impacts both OS X and Windows versions of the software. This exploit will allow an attacker to execute malicious code on the target system. The &#8220;researcher&#8221;, Luigi Auriemma, describes [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=gigaom.com&amp;blog=14960843&amp;post=171246&amp;subd=gigaom2&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p class="excerpt">InformationWeek is <a href="http://www.informationweek.com/story/showArticle.jhtml?articleID=205602310&amp;cid=RSSfeed_IWK_All" title="Information Week - QuickTime Flaw">reporting</a> that an Italian security researcher has posted a exploit for a zero-day vulnerability in QuickTime 7.3.1 that impacts both OS X and Windows versions of the software. This exploit will allow an attacker to execute malicious code on the target system.</p>
<p>The &#8220;researcher&#8221;, Luigi Auriemma, describes the exploit as being based on a flaw in QuickTime&#8217;s parsing of HTTP error messages and has not provided Apple with advance notice before publishing the proof-of-concept code. Symantec has confirmed that the flaw can produce a Denial of Service, but has not confirmed the remote code execution claim.</p>
<p>As of this post, Apple has not posted a fix to this issue, but here are some steps you can take to protect yourself (via <a href="http://www.kb.cert.org/vuls/id/112179">US-CERT</a>):</p>
<ul>
<li>Uninstall QuickTime <em>(OK, kinda extreme)</em></li>
<li>Block the <code>rtsp://</code> protocol <em>(given how much we love streaming media, not likely either)</em></li>
<li>Disable the RTSP protocol handler <em>(reasonable, depending on your risk tolerance)</em> Mac OS X users can disable the RTSP protocol handler by editing the <code>~/Library/Preferences/com.apple.LaunchServices.plist</code> file with Property List Editor. Change the <code>LSHandlerRoleAll</code> value associated with the <code>rtsp LSHanlderURLScheme</code> to something other than <code>com.apple.quicktimeplayer</code>. This process can be simplified by using an application such as <a href="http://www.rubicode.com/Software/RCDefaultApp/">RCDefaultApp</a>.</li>
<li>Disable QuickTime as the RTSP protocol handler on OS X <em>(reasonable&#8230;you can pick RealPlayer as an alternative)</em>. To disable the RTSP registered protocol handler in OS X open <code>~/Library/Preferences/com.apple.LaunchServices.plist</code> and look through ahundred or more entries to find RTSP and change it to something else.</li>
<li>Do not access QuickTime files from untrusted sources <em>(duh)</em>. Attackers may host malicious QuickTime files on web sites. In order to convince users to visit their sites, those attackers often use a variety of techniques to create misleading links including URL encoding, IP address variations, long URLs, and intentional misspellings. Do not click on unsolicited links received in email, instant messages, web forums, or internet relay chat (IRC) channels. Type URLs directly into the browser to avoid these misleading links. While these are generally good security practices, following these behaviors will not prevent exploitation of this vulnerability in all cases, particularly if a trusted site has been compromised or allows cross-site scripting.</li>
<p> </ul>
<p><strong>Related research and analysis from GigaOM Pro:</strong><br />Subscriber content. <a href="http://pro.gigaom.com/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=171246+zero-day-exploit-for-quicktime-flaw&utm_content=hrbrmstr">Sign up for a free trial</a>.</p><ul><li><a href="http://pro.gigaom.com/2010/11/report-the-live-stream-video-market/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=171246+zero-day-exploit-for-quicktime-flaw&utm_content=hrbrmstr">Report: The Live-Stream Video&nbsp;Market</a></li><li><a href="http://pro.gigaom.com/2011/03/why-ipad-2-will-lead-consumers-into-the-post-pc-era/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=171246+zero-day-exploit-for-quicktime-flaw&utm_content=hrbrmstr">Why iPad 2 Will Lead Consumers Into the Post-PC&nbsp;Era</a></li><li><a href="http://pro.gigaom.com/2011/03/the-near-term-evolution-of-social-commerce/?utm_source=apple&utm_medium=editorial&utm_campaign=auto3&utm_term=171246+zero-day-exploit-for-quicktime-flaw&utm_content=hrbrmstr">The Near-Term Evolution of Social&nbsp;Commerce</a></li></ul><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=gigaom.com&amp;blog=14960843&amp;post=171246&amp;subd=gigaom2&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://gigaom.com/apple/zero-day-exploit-for-quicktime-flaw/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a08d08f6b541441fccf36bc6392a0784?s=96&#38;d=retro&#38;r=PG" medium="image">
			<media:title type="html">hrbrmstr</media:title>
		</media:content>
	</item>
	</channel>
</rss>
