{"id":2232,"date":"2009-11-03T14:52:48","date_gmt":"2009-11-03T22:52:48","guid":{"rendered":"http:\/\/www.perivision.net\/wordpress\/?p=2232"},"modified":"2009-11-03T18:04:25","modified_gmt":"2009-11-04T02:04:25","slug":"hackers-breaking-into-a-jailbroken-iphone-and-how-to-stop-them","status":"publish","type":"post","link":"https:\/\/www.perivision.net\/wordpress\/2009\/11\/hackers-breaking-into-a-jailbroken-iphone-and-how-to-stop-them\/","title":{"rendered":"Hackers breaking into a jailbroken iphones and how to stop them"},"content":{"rendered":"<div id=\"attachment_2233\" style=\"width: 210px\" class=\"wp-caption alignright\"><a href=\"https:\/\/www.perivision.net\/wordpress\/wp-content\/uploads\/2009\/11\/hackedIphone.png\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-2233\" class=\"size-medium wp-image-2233\" title=\"hackedIphone\" src=\"https:\/\/www.perivision.net\/wordpress\/wp-content\/uploads\/2009\/11\/hackedIphone-200x300.png\" alt=\"hackedIphone\" width=\"200\" height=\"300\" srcset=\"https:\/\/www.perivision.net\/wordpress\/wp-content\/uploads\/2009\/11\/hackedIphone-200x300.png 200w, https:\/\/www.perivision.net\/wordpress\/wp-content\/uploads\/2009\/11\/hackedIphone.png 320w\" sizes=\"auto, (max-width: 200px) 100vw, 200px\" \/><\/a><p id=\"caption-attachment-2233\" class=\"wp-caption-text\">(Credit: Tweakers.net)<\/p><\/div>\n<p>Saw this story via CNET.\u00a0 I was a bit concerned till I read how the hack was done.\u00a0 A bit of background information though, seems a hacker got in to a few jailbroken iphone running T-Mobile in the Netherlands.\u00a0 Basically, it puts a message on your phone saying you have been hacked and to learn how to fix the problem, you had to pay the guy 5 euros ($7.36), to get the fix. To get to the fix you had to go to a website after paying via paypal.<\/p>\n<p>The way this guy is getting in is pretty easy.\u00a0 He simply scans open ports looking for SSH running using the default password of &#8216;alpine&#8217;.\u00a0 Once he SSH&#8217;s in, he has pretty much full control of your phone.\u00a0 So how do you stop this?\u00a0 2 Ways.\u00a0 First CHANGE YOUR BLOODY PASSWORD!\u00a0 I mean really.\u00a0 Change it.\u00a0 Second, and what I do, turn SSH off.\u00a0 I never have it running unless I need to get into the phone and do something.\u00a0 But wait Chris, how do I do that?\u00a0 I do not even know how to put &#8216;putty&#8217; on my windows system. Putty is a SSH client for windows BTW.\u00a0 Turning off SSH is easy to do. Remember my top 10 jailbreak apps?\u00a0 Well, SBSetting is number 1 for a reason.\u00a0 There is a nice button there called SSH.\u00a0 Click on it.\u00a0 SSH is now off.\u00a0 Your welcome. \ud83d\ude42<\/p>\n<p>After the story broke, it seems the guy changed his mind because the fix has <a href=\"http:\/\/mr09.fileave.com\/\" target=\"_blank\">been posted here<\/a>.\u00a0 Here is the fix.<\/p>\n<p>1. Get an SSH program like putty for windows.<br \/>\n2. SSH to your iPhone. (If you haven&#8217;t done that before it may take a while, and after that there might come a warning about a key fingerprint. You can just accept that). Login using username &#8220;root&#8221; and password &#8220;alpine&#8221;. (this is the default password)<br \/>\n3. There&#8217;s a few commands you have to execute, best is to just copy them:<\/p>\n<p>rm \/System\/Library\/LaunchDaemons\/com.apple.syslog.plist<br \/>\nchown mobile \/private\/var\/mobile\/Library\/LockBackground.jpg<br \/>\nchmod 666 \/private\/var\/mobile\/Library\/LockBackground.jpg<br \/>\nmv \/private\/var\/mobile\/Documents\/LockBackground.backup.jpg \/private\/var\/mobile\/Library\/LockBackground.jpg<\/p>\n<p>4. That&#8217;s everything to remove my stuff. Now there&#8217;s one command left to make sure this won&#8217;t happen again! Again in putty or any ssh client type: &#8220;passwd&#8221;. You&#8217;ll then be asked for a new password, you can change this into anything you want. The safer the better of course (:<\/p>\n<p>The reason you have to change this password is that it&#8217;s default is alpine at ALL iPhones. So if anyone knows that (and all hackers do) they can access your iPhone. Now you&#8217;ve changed it this isn&#8217;t possible anymore!<\/p>\n<div class=\"SPOSTARBUST-Related-Posts\"><H3>Related Posts<\/H3><ul class=\"entry-meta\"><li class=\"SPOSTARBUST-Related-Post\"><a title=\"Jailbreak for iOS8 and 8.1 is out.  Overhead and battery issues addressed. DO NOT UPDATE TO 8.1.1\" href=\"https:\/\/www.perivision.net\/wordpress\/2014\/11\/jailbreak-for-ios8-and-8-1-is-out-overhead-and-battery-issues-addressed-do-not-update-to-8-1-1\/\" rel=\"bookmark\">Jailbreak for iOS8 and 8.1 is out.  Overhead and battery issues addressed. DO NOT UPDATE TO 8.1.1<\/a><\/li>\n<li class=\"SPOSTARBUST-Related-Post\"><a title=\"If you have not heard already, change your iphone password because of phishing hack\" href=\"https:\/\/www.perivision.net\/wordpress\/2014\/05\/iphone-password-phising-hack\/\" rel=\"bookmark\">If you have not heard already, change your iphone password because of phishing hack<\/a><\/li>\n<li class=\"SPOSTARBUST-Related-Post\"><a title=\"How to get iOS7 IU on your current iPhone via Jailbreak\" href=\"https:\/\/www.perivision.net\/wordpress\/2013\/06\/how-to-get-ios7-iu-on-your-current-iphone-via-jailbreak\/\" rel=\"bookmark\">How to get iOS7 IU on your current iPhone via Jailbreak<\/a><\/li>\n<li class=\"SPOSTARBUST-Related-Post\"><a title=\"Restore iphone without losing jailbreak using SemiRestore\" href=\"https:\/\/www.perivision.net\/wordpress\/2013\/05\/restore-iphone-without-losing-jailbreak-using-semirestore\/\" rel=\"bookmark\">Restore iphone without losing jailbreak using SemiRestore<\/a><\/li>\n<li class=\"SPOSTARBUST-Related-Post\"><a title=\"How to play Piano Passcode &#8211; jailbreak iphone hack\" href=\"https:\/\/www.perivision.net\/wordpress\/2013\/05\/how-to-play-piano-passcode-jailbreak-iphone-hack\/\" rel=\"bookmark\">How to play Piano Passcode &#8211; jailbreak iphone hack<\/a><\/li>\n<\/ul><\/div>","protected":false},"excerpt":{"rendered":"<p>Saw this story via CNET.\u00a0 I was a bit concerned till I read how the hack was done.\u00a0 A bit of background information though, seems a hacker got in to a few jailbroken iphone running T-Mobile in the Netherlands.\u00a0 Basically, it puts a message on your phone saying you have been hacked and to learn&hellip; <a class=\"read-more\" href=\"https:\/\/www.perivision.net\/wordpress\/2009\/11\/hackers-breaking-into-a-jailbroken-iphone-and-how-to-stop-them\/\">Read More<\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[3,4,59],"tags":[281,515,2340,516],"class_list":["post-2232","post","type-post","status-publish","format-standard","hentry","category-iphone","category-jailbreak","category-tips","tag-hack","tag-jailbr","tag-jailbreak","tag-ssh"],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/pjzQD-A0","_links":{"self":[{"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/posts\/2232","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/comments?post=2232"}],"version-history":[{"count":5,"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/posts\/2232\/revisions"}],"predecessor-version":[{"id":2244,"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/posts\/2232\/revisions\/2244"}],"wp:attachment":[{"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/media?parent=2232"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/categories?post=2232"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.perivision.net\/wordpress\/wp-json\/wp\/v2\/tags?post=2232"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}