{"id":168,"date":"2008-08-27T23:38:14","date_gmt":"2008-08-28T07:38:14","guid":{"rendered":"http:\/\/perivision.wordpress.com\/?p=250"},"modified":"2008-08-27T23:38:14","modified_gmt":"2008-08-28T07:38:14","slug":"iphone-security-hole-and-how-to-fix-it","status":"publish","type":"post","link":"https:\/\/www.perivision.net\/wordpress\/2008\/08\/iphone-security-hole-and-how-to-fix-it\/","title":{"rendered":"iphone security hole and how to fix it."},"content":{"rendered":"<p>I heard about this today at a iphone meet up and now its on digg.\u00a0 I&#8217;ve already fixed the hole on my phone and I recommend everyone else do it too.\u00a0\u00a0 The following text is from <a href=\"http:\/\/gizmodo.com\/5042332\/huge-iphone-security-flaw-puts-all-private-information-at-risk\" target=\"_blank\">this article<\/a>.<\/p>\n<p>There&#8217;s a huge security problem in the latest iPhone 2.0.2: if you have your JesusPhone password protected, using a very simple trick gives anyone full access to your cellphone private information in Mail, SMS, Contacts, and even Safari. The two-step trick is even simpler to the one used in the past to gain access to the phone to <a href=\"http:\/\/gizmodo.com\/gadgets\/breaking\/turbo-sim-totally-unlocks-iphone-hackers-claim-289148.php\">install unlocking cards<\/a> or jailbreak. Fortunately, there&#8217;s a way to avoid this obvious security breach until Apple fixes it.<\/p>\n<p>First, password protect your phone and lock it. Then slide to unlock and do this:<\/p>\n<p>1. Tap emergency call.<br \/>\n2. Double tap the home button.<\/p>\n<p>Done. You are now in your favorites. This seems like a feature, because you may want to have emergency number in your favorites for quick dial. The security problem here is double. The first: anyone picking up your phone can make a call to <em>anyone<\/em> in your favorites. On top of that, this also opens access to your full Address Book, the dial keypad, and your voice mail.<\/p>\n<p>If that wasn&#8217;t bad enough, the second one is even worse: if you tap on the <em>blue arrows<\/em> next to the names, it will give you full access to the private information in a favorite entry. And it goes downhill from there:<\/p>\n<p>\u2022 If you click in a mail address, it will give you full access to the Mail application. All your mail will be exposed.<br \/>\n\u2022 If there&#8217;s a URL in your contact (or in a mail message) you can click on it and have full access to Safari.<br \/>\n\u2022 If you click on send text message in a contact, it will give you full access to all your SMS.<\/p>\n<p>Hopefully, this major security break that fully exposes your most private information will be solved as soon as possible. Until then, you can avoid any potential breach doing the following:<\/p>\n<p>1. In the iPhone home, go to Settings.<br \/>\n2. Click on General.<br \/>\n3. Click on Home Button.<br \/>\n4. Click on either &#8220;Home&#8221; or &#8220;iPod&#8221;.<\/p>\n<p>This way, the double-click on the home button will take the user back to the unlock screen (if you use &#8220;Home&#8221;) or the iPod screen. I recommend using Home. You will lose the ability to quickly access your favorites for a quick call\u2014which is one of my favorite features\u2014but that&#8217;s better than having all your private mails, contacts, and SMS database compromised. UPDATE: Evidently Apple has a fix coming in their next firmware update, but we&#8217;ve got no word on when that release is planned. [<a href=\"http:\/\/forums.macrumors.com\/showthread.php?t=551617\">Tip from Mac Rumors forums member<\/a>]\n<div class=\"SPOSTARBUST-Related-Posts\"><H3>Related Posts<\/H3><ul class=\"entry-meta\"><li class=\"SPOSTARBUST-Related-Post\"><a title=\"Why my Tesla M3 feels like my first iPhone and my M3day plus 30.\" href=\"https:\/\/www.perivision.net\/wordpress\/2018\/05\/why-my-tesla-m3-feels-like-my-first-iphone-and-my-m3day-plus-30\/\" rel=\"bookmark\">Why my Tesla M3 feels like my first iPhone and my M3day plus 30.<\/a><\/li>\n<li class=\"SPOSTARBUST-Related-Post\"><a title=\"Bought a Black Friday cheap tablet?  Better step up security on that thing\" href=\"https:\/\/www.perivision.net\/wordpress\/2014\/11\/bought-a-black-friday-cheap-tablet-better-step-up-security-on-that-thing\/\" rel=\"bookmark\">Bought a Black Friday cheap tablet?  Better step up security on that thing<\/a><\/li>\n<li class=\"SPOSTARBUST-Related-Post\"><a title=\"The Bidding For An iPhone 6 Prototype On eBay Is Up To $94,000\" href=\"https:\/\/www.perivision.net\/wordpress\/2014\/10\/the-bidding-for-an-iphone-6-prototype-on-ebay-is-up-to-94000\/\" rel=\"bookmark\">The Bidding For An iPhone 6 Prototype On eBay Is Up To $94,000<\/a><\/li>\n<li class=\"SPOSTARBUST-Related-Post\"><a title=\"Apple patent application reinvents remote control for the smartphone age\" href=\"https:\/\/www.perivision.net\/wordpress\/2014\/10\/apple-patent-application-reinvents-remote-control-for-the-smartphone-age\/\" rel=\"bookmark\">Apple patent application reinvents remote control for the smartphone age<\/a><\/li>\n<li class=\"SPOSTARBUST-Related-Post\"><a title=\"iOS 8.0.1 May Have A Link To Apple Maps Fail From 2012\" href=\"https:\/\/www.perivision.net\/wordpress\/2014\/09\/ios-8-0-1-may-have-a-link-to-apple-maps-fail-from-2012\/\" rel=\"bookmark\">iOS 8.0.1 May Have A Link To Apple Maps Fail From 2012<\/a><\/li>\n<\/ul><\/div>","protected":false},"excerpt":{"rendered":"<p>I heard about this today at a iphone meet up and now its on digg.\u00a0 I&#8217;ve already fixed the hole on my phone and I recommend everyone else do it too.\u00a0\u00a0 The following text is from this article. There&#8217;s a huge security problem in the latest iPhone 2.0.2: if you have your JesusPhone password protected,&hellip; <a class=\"read-more\" href=\"https:\/\/www.perivision.net\/wordpress\/2008\/08\/iphone-security-hole-and-how-to-fix-it\/\">Read More<\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[3],"tags":[2339,46],"class_list":["post-168","post","type-post","status-publish","format-standard","hentry","category-iphone","tag-iphone","tag-security"],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/pjzQD-2I","_links":{"self":[{"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/posts\/168","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/comments?post=168"}],"version-history":[{"count":1,"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/posts\/168\/revisions"}],"predecessor-version":[{"id":167,"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/posts\/168\/revisions\/167"}],"wp:attachment":[{"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/media?parent=168"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/categories?post=168"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/tags?post=168"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}