Thursday, April 17, 2008

Original iPhone DoS vulnerability still around in iPhone firmware v1.1.4?

CLICK TO ZOOM.ORIGINAL IPHONE DOS VULNERABILITY STILL AROUND IN IPHONE FIRMWARE V1.1.4

Posted by dennis on March 27th, 2008 at 10:02pm

Recently we've decided to check up on a vulnerability originally discovered by Joshua Morin -- it was the sort of code that would send iPhone's Mobile Safari back to the Infinite Loop (for those that enjoy the puns).

Originally we've reported that the issue was present in v1.1.3 firmware and traced it as far back as to v1.0.2 firmware. It seems that Apple still did not fix this particular issue with the most recent v1.1.4 firmware update.
iphone vulnerability exploit

As a demonstration you may see the code of and try the exploit itself (note: trying the exploit below will crash your iPhone and possibly Safari browser. Shall you choose to proceed with it be ready to lose all unsaved information on your iPhone).

Upon clicking on a button after following the link to test page below your iPhone will crash. As such we do wonder how long it could take for Apple to patch each individual issue.

- download in a .txt file - safe to click.
- Crash-your-iPhone v1.1.4 test page! - unsafe to click on iPhone/iPod Touch/Safari

We could not get an Apple representative to comment, but one of our security expert sources stated "the problem could rely deeper than Apple, it might be the manufacture. Thus the physical memory tied to the iPhone's board..."

Labels:

Wednesday, April 16, 2008

WWDC iPhone sessions & labs, awards lists updated

CLICK TO ZOOM.WWDC IPHONE SESSIONS LABS, AWARDS LISTS UPDATED

Posted by dennis on April 16th, 2008 at 06:37pm

In preparations for the Worldwide Developers Conference 2008, due to take place in June, Apple updated its website with a more complete list of iPhone developer sessions and labs, and added two new iPhone developer awards.

Complete WWDC '08 iPhone sessions and labs list includes such topics as 3D Graphics for iPhone using OpenGL ES, Core Animation Techniques for iPhone and Mac, Integrating iPhone with IT, and much more.
wwdc 2008 iphone

The two iPhone developer awards are for iPhone Developer Showcase which "highlights innovative and compelling new iPhone applications built using the Beta iPhone SDK. Entries in this category must be pre-release, feature complete versions which run within the iPhone simulator or on an iPhone or iPod touch. Apple reserves the right to award more than one winning entry in this category," and for Best iPhone Web Application, which "highlights web applications designed specifically for Safari on iPhone, which offers iPhone users innovative, compelling, valuable, and highly desirable capabilities."


Winners in the iPhone category will receive two 15-inch MacBook Pro laptops, two 30-inch Apple Cinema Displays, one 16GB iPod touch, one 8GB iPhone, an ADC Premier Membership, reimbursement for one WWDC 2008 E-ticket including airfare and accommodations, and one 2009 ADC Macworld Expo Exclusive Marketing Package, while entries will be accepted beginning Tuesday, April 15 and ending at 5PM (PDT) Monday, May 12, 2008.

To participate one will need to complete the online Contest Entry Form and upload your iPhone application via FTP to Apple's server. See here for official rules.

Thanks: iLounge

Labels: