Apple’s Latest iOS Security Patch Still Left a Major Keylogging Vulnerability

iOS 7Researchers said they have identified a flaw in Apple’s iOS that makes it possible for attackers to surreptitiously log every touch a user makes, including characters typed into the keyboard, TouchID presses, and adjustments to the volume control. The vulnerability affects even non-jailbroken iPhones and iPads running iOS versions 7.0.4, 7.0.5, and 7.0.6, as well as those running on 6.1.x, researchers from security firm FireEye wrote in a blog post published Monday night. They said attackers could carry out the covert monitoring using an app that bypasses Apple’s stringent app review process. The app uses multitasking capabilities built into iOS to capture user inputs. The blog post explained: “We have created a proof-of-concept “monitoring” app on non-jailbroken iOS 7.0.x devices.”

Read the full story at Ars Technica.

Share/Bookmark

Author:

Speak Your Mind

*