Monday, July 21, 2014

Got iPhone? Like Security? Fuggeddaboutit!

Charming.

Apple has endowed iPhones with undocumented functions that allow unauthorized people in privileged positions to wirelessly connect and harvest pictures, text messages, and other sensitive data without entering a password or PIN, a forensic scientist warned over the weekend.

...Zdziarski said the service that raises the most concern is known as com.apple.mobile.file_relay. It dishes out a staggering amount of data—including account data for e-mail, Twitter, iCloud, and other services, a full copy of the address book including deleted entries, the user cache folder, logs of geographic positions, and a complete dump of the user photo album—all without requiring a backup password to be entered. ...

By the way, when you "paired" your iPhone with your car, the data-thief who wants to can use the car as its mode-of-stealing.

HT:  Ticker

No comments: