• Email Us: [email protected]
  • Contact Us: +1 718 874 1545
  • Skip to main content
  • Skip to primary sidebar

Medical Market Report

  • Home
  • All Reports
  • About Us
  • Contact Us

Cyber arms dealer exploits new iPhone software vulnerability, affecting most versions, say researchers

September 14, 2021 by David Barret Leave a Comment

September 14, 2021

By Joseph Menn and Christopher Bing

(Reuters) -A cyber surveillance company based in Israel developed a tool to break into Apple iPhones with a never-before-seen technique that has been in use since at least February, internet security watchdog group Citizen Lab said on Monday.

The discovery is important because of the critical nature of the vulnerability, which requires no user interaction and affects all versions of Apple’s iOS, OSX, and watchOS, except for those updated on Monday.

The tool developed by the Israeli firm, named NSO Group, defeats security systems designed by Apple in recent years.

Apple said it fixed the vulnerability in Monday’s software update, confirming Citizen Lab’s finding. https://ift.tt/2XglSz0

“After identifying the vulnerability used by this exploit for iMessage, Apple rapidly developed and deployed a fix in iOS 14.8 to protect our users,” said Ivan Krstić, head of Apple Security Engineering and Architecture, in a statement. “Attacks like the ones described are highly sophisticated, cost millions of dollars to develop, often have a short shelf life, and are used to target specific individuals.”

“While that means they are not a threat to the overwhelming majority of our users, we continue to work tirelessly to defend all our customers, and we are constantly adding new protections for their devices and data,” he added.

An Apple spokesperson declined to comment on whether the hacking technique came from NSO Group.

In a statement to Reuters, NSO did not confirm or deny that it was behind the technique, saying only that it would “continue to provide intelligence and law enforcement agencies around the world with life-saving technologies to fight terror and crime.”

‘SOFT UNDERBELLY OF DEVICE SECURITY’

Citizen Lab said it found the malware on the phone of an unnamed Saudi activist and that the phone had been infected with spyware in February. It is unknown how many other users may have been infected.

The intended targets would not have to click on anything for the attack to work. Researchers said they did not believe there would be any visible indication that a hack had occurred.

The vulnerability lies in how iMessage automatically renders images. IMessage has been repeatedly targeted by NSO and other cyber arms dealers, prompting Apple to update its architecture. But that upgrade has not fully protected the system.

“Popular chat apps are at risk of becoming the soft underbelly of device security. Securing them should be top priority,” said Citizen Lab researcher John Scott-Railton.

The U.S. Cybersecurity and Infrastructure Security Agency had no immediate comment.

Citizen Lab said multiple details in the malware overlapped with prior attacks by NSO, including some that were never publicly reported. One process within the hack’s code was named “setframed,” the same name given in a 2020 infection of a device used by a journalist at Al Jazeera, the researchers found.

“The security of devices is increasingly challenged by attackers,” said Citizen Lab researcher Bill Marczak.

A record number of previously unknown attack methods, which can be sold for $1 million or more, have been revealed this year. The attacks are labeled “zero-day” because software companies had zero days’ notice of the problem.

Along with a surge in ransomware attacks against critical infrastructure, the explosion in such attacks has stoked a new focus on cybersecurity in the White House as well as renewed calls for regulation and international agreements to rein in malicious hacking.

The FBI has been investigating NSO, and Israel has set up a senior inter-ministerial team to assess allegations that its spyware has been abused on a global scale.

Although NSO has said it vets the governments it sells to, its Pegasus spyware has been found on the phones of activists, journalists and opposition politicians in countries with poor human rights records.

(Reporting by Christopher Bing and Joseph Menn; Editing by Sonya Hepinstall and Karishma Singh)

Source Link Cyber arms dealer exploits new iPhone software vulnerability, affecting most versions, say researchers

David Barret
David Barret

Related posts:

  1. First trailer for Netflix’s Red Notice crams in massive star power and big action
  2. U.S. has no plans to release billions in Afghan assets, Treasury says
  3. Exclusive-Ericsson CEO to double down on China as 5G tussle rumbles on
  4. Cricket-Pope and Bairstow rebuild England innings after Yadav blows

Filed Under: News

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

  • The Race Back To The Moon: US Vs China, Will What Happens Next Change The Future?
  • NOAA Issues G3 Geomagnetic Storm Warning As 500,000 Kilometer Hole Sends Solar Wind At Earth
  • Lasting 776 Days, This Is The Longest Case Of COVID-19 Ever Recorded
  • Living Cement: The Microbes In Your Walls Could Power The Future
  • What Can Your Earwax Reveal About Your Health?
  • Ever Seen A Giraffe Use An Inhaler? Now You Can, And It’s Incredibly Wholesome
  • Martian Mudstone Has Features That Might Be Biosignatures, New Brain Implant Can Decode Your Internal Monologue, And Much More This Week
  • Crocodiles Weren’t All Blood-Thirsty Killers, Some Evolved To Be Plant-Eating Vegetarians
  • Stratospheric Warming Event May Be Unfolding In The Southern Polar Vortex, Shaking Up Global Weather Systems
  • 15 Years Ago, Bees In Brooklyn Appeared Red After Snacking Where They Shouldn’t
  • Carnian Pluvial Event: It Rained For 2 Million Years — And It Changed Planet Earth Forever
  • There’s Volcanic Unrest At The Campi Flegrei Caldera – Here’s What We Know
  • The “Rumpelstiltskin Effect”: When Just Getting A Diagnosis Is Enough To Start The Healing
  • In 1962, A Boy Found A Radioactive Capsule And Brought It Inside His House — With Tragic Results
  • This Cute Creature Has One Of The Largest Genomes Of Any Mammal, With 114 Chromosomes
  • Little Air And Dramatic Evolutionary Changes Await Future Humans On Mars
  • “Black Hole Stars” Might Solve Unexplained JWST Discovery
  • Pretty In Purple: Why Do Some Otters Have Purple Teeth And Bones? It’s All Down To Their Spiky Diets
  • The World’s Largest Carnivoran Is A 3,600-Kilogram Giant That Weighs More Than Your Car
  • Devastating “Rogue Waves” Finally Have An Explanation
  • Business
  • Health
  • News
  • Science
  • Technology
  • +1 718 874 1545
  • +91 78878 22626
  • [email protected]
Office Address
Prudour Pvt. Ltd. 420 Lexington Avenue Suite 300 New York City, NY 10170.

Powered by Prudour Network

Copyrights © 2025 · Medical Market Report. All Rights Reserved.

Go to mobile version