RSA 2015 Vulnerability in iOS causes all devices to crash

At the RSA 2015 conference Adi Sharabani and Yair Amit ( Skycure) αποκάλυψαν μια ευπάθεια zero-day στο iOS 8 που όταν χρησιμοποιηθεί από ένα κακόβουλο ασύρματο , can repeatedly crash all Apple devices i.e. iPhones, iPads and iPods.rsa 2015

The they called the attack “No iOS Zone”, and it can make all iOS devices vulnerable and unstable or even completely useless by causing constant reboots.

“Anyone can from any router create a Wi-Fi hotspot and force you to connect to their network. He can then manipulate her για να προκαλέσει την κατάρρευση του λειτουργικού συστήματος,” ανέφερε ο Sharabani στο συνέδριο της RSA today in San Francisco.

"There is nothing you can do about it, except maybe to avoid raiders. It's not a common denial-of-service where you can not just use your Wi-Fi - it is a denial-of-service that you will not be able to use your device even offline.

Denial-of-service attack is enabled by handling SSL certificates sent to iOS devices via Wi-Fi, and specially crafted data will trigger the application or possibly the operating system itself.

"Since the vulnerability has not been fully confirmed, and has not yet been determined, we have decided not to provide additional technical details to ensure that iOS users will not be exposed to Exploit," the researchers said.

View the videos of the presentation

https://www.youtube.com/watch?v=PmgI0LaFYLA

https://www.youtube.com/watch?v=i2tYdmOQisA

You can download the presentation of the attack in format PDF, from its official page RSA 2015 .

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by Dimitris

Dimitris hates on Mondays .....

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).