Another iOS 7 lockscreen vulnerability - this time in 7.0.2
56 replies, posted
[URL="http://www.todaysiphone.com/2013/09/ios-lock-screen-vulnerability-discovered-again-this-time-on-7-0-2-video/?utm_source=twitterfeed&utm_medium=twitter&utm_campaign=Feed%3A+TodaysIphone+%28Todays+iPhone +-+latest+posts%29"]Source[/URL]
[QUOTE=Today's iPhone]
1. Activate a notification on the iPhone by sending a message to the device or ejecting the SIM.
2. Swipe the notification to the right while also swiping the camera icon up at the same time.
3. Without taking you finger of the camera icon, press the emergency call button.
4. Type a number in and then tap on the call button quickly two or three time, causing the SpringBoard to crash.
5. When the SpringBoard relaunches you’ll be able to make any calls on the phone, not just emergency numbers.
The steps, as you can see in the video, allow you to make a phone call to any number simply by using the emergency call screen. I tried this out, and was able to successfully replicate the glitch on my first try. Afterwards I was able to do so consistently a few more times without issue, so it isn’t hard to do at all. It is likely that the next iOS update will include a patch for this, and it probably will come sooner than Apple had hoped to release another update.
[/QUOTE]
[video=youtube;7DbdRChmFFg]http://www.youtube.com/watch?v=7DbdRChmFFg[/video]
iOS 7 is worse than hitler
[QUOTE=Str4t0s;42360169]iOS 7 is worse than hitler[/QUOTE]
Yeah, good job I saved my 5.1.1 / 6.0 / 6.1.3 SHSH blobs so I can downgrade my 4. (Currently running 5.1.1)
And next update there will be yet another odd vulnerability with the lockscreen that takes like 20 presses to complete.
[QUOTE=cubis;42360406]And next update there will be yet another odd vulnerability with the lockscreen that takes like 20 presses to complete.[/QUOTE]
iOS 7 was the worst mistake Apple ever made.
[sp]Yes, even worse than Apple maps.[/sp]
I wonder what kind of people sit and find iOS lockscreen vulnerabilities
At least this one is just "call whoever you want" and not an actual bypass
[QUOTE=Protocol7;42360456]I wonder what kind of people sit and find iOS lockscreen vulnerabilities
At least this one is just "call whoever you want" and not an actual bypass[/QUOTE]
True, but it's still a vulnerability.
iOS 7 is so slow on my regular 4, is there any way to downgrade back to how it was before? Or am I screwed.
[QUOTE=Killer900;42360488]iOS 7 is so slow on my regular 4, is there any way to downgrade back to how it was before? Or am I screwed.[/QUOTE]
Did you back up your SHSH blobs from previous iOS versions?
If you didn't, then you are screwed.
I've noticed ever since the iOS7 update every time I lock/unlock my iPad it disconnects from my wifi.
Anybody else getting this problem as well?
[QUOTE=Mors Quaedam;42360502]Did you back up your SHSH blobs from previous iOS versions?
If you didn't, then you are screwed.[/QUOTE]I don't think so :S
What are the SHSH blobs and how exactly would would one go about backing them up.
[QUOTE=Killer900;42360541]I don't think so :S
What are the SHSH blobs and how exactly would would one go about backing them up.[/QUOTE]
If you have to ask, you're screwed.
They're files that sign the version of iOS you are trying to flash. Apple signs the newest iOS / iOS 7 remotely. If you backed up your SHSH blobs you can sign any iOS version you have blobs for.
[QUOTE=Protocol7;42360562]If you have to ask, you're screwed.
They're files that sign the version of iOS you are trying to flash. Apple signs the newest iOS / iOS 7 remotely. If you backed up your SHSH blobs you can sign any iOS version you have blobs for.[/QUOTE]Aw damn, well that sucks :/
[QUOTE=Killer900;42360541]I don't think so :S
What are the SHSH blobs and how exactly would would one go about backing them up.[/QUOTE]
SHSH blobs are the files devices (iPhone 4 / 3GS / 3G / 2G, and equivalent iPod Touch generations) used to sign firmware when updating. You have to back them up when you have the firmware on the device (e.g. I have 5.1.1 now, and I used TinyUmbrella to back the SHSH blobs up when I originally ran 5.1.1).
Then you use Redsn0w to stitch the .shsh file to the .ipsw, and use iTunes to restore (downgrade) while you're in DFU mode.
This all changed with the iPhone 4S+ so they can't downgrade anyway.
Although it won't do you any good now, you should google this for more information, what I've said here may not even be accurate.
[editline]30th September 2013[/editline]
Ninja'd :v:
whats happening and how is this bad??
[QUOTE=notlabbet;42360734]whats happening and how is this bad??[/QUOTE]
While it's not necessarily [I]bad[/I], it's not very good publicity for Apple's new software update. No lockscreen "bypass" is a good thing, but this one isn't as serious as the one in iOS 7.0
i dont even have a lock on my phone...
[editline]30th September 2013[/editline]
i have ios 7.0 as well
[QUOTE=notlabbet;42360837]i dont even have a lock on my phone...
[editline]30th September 2013[/editline]
i have ios 7.0 as well[/QUOTE]
so insecure
[sp]i don't either[/sp] :v:
really tho, what are they gonna do with a iphone 4 with a broken camera and flashlight
I seriously doubt the average person won't even know how to do this.
Software vulnerabilities on launch are quite common and normal, this will be patched quickly most likely, like it happens on Android and other OS.
[QUOTE=ExTek;42361901]I seriously doubt the average person won't even know how to do this.[/QUOTE]
I think you just used a double negative.
But yeah, its not really a huge vulnerability. Its pretty obscure unless you've read about it and all it does is let you call any number you want. I'm sure it will be patched in the next update.
[editline]30th September 2013[/editline]
[QUOTE=notlabbet;42360837]i dont even have a lock on my phone...
[editline]30th September 2013[/editline]
i have ios 7.0 as well[/QUOTE]
I don't have a choice. My school email uses MS Exchange and you are forced to have a lock code on both Android and iOS devices to receive email. I'm not giving up the convenience for the sake of no lockscreen. Keeps people from messing with my devices anyway.
[QUOTE=Killer900;42360488]iOS 7 is so slow on my regular 4, is there any way to downgrade back to how it was before? Or am I screwed.[/QUOTE]
Back up all your stuff to iCloud and DFU restore iOS 7, setting up as a new device
iOS 6 cache files slow the 4 and 4s down big time, and an iTunes backup saves and restores them too, but the phones aren't so bad on iOS 7 when fresh - and iCloud doesn't backup any device cache or metadata or whatnot.
[QUOTE=Killer900;42360488]iOS 7 is so slow on my regular 4, is there any way to downgrade back to how it was before? Or am I screwed.[/QUOTE]
well they do that intentionally.
[editline]30th September 2013[/editline]
"oh my old phone is so old better buy a new one"
I heard you can't even downgrade once you've upgraded to iOS7 too, reason for this was for security reasons... haha
This really is only an iPhone thing, I don't think there's anything to worry about on the iPad and iPod
I still find it really dumb how Apple doesnt allow you to downgrade iOS7 anyway. I like iOS7 and all but it's pretty dumb to not allow it incase you have serious issues with it
[QUOTE=.apex;42366276]I still find it really dumb how Apple doesnt allow you to downgrade iOS7 anyway. I like iOS7 and all but it's pretty dumb to not allow it incase you have serious issues with it[/QUOTE]
You can't downgrade with Android updates either unless you go through the trouble of using toolkits or adb or whatever
[QUOTE=fruxodaily;42366347]You can't downgrade with Android updates either unless you go through the trouble of using toolkits or adb or whatever[/QUOTE]
atleast you CAN
Apparently there is no way to downgrade ios 7 unless you had a backup of the old one or something. Wouldnt be surprised if they add in something to prevent downgrading even if you have backups
[QUOTE=.apex;42366276]I like iOS7 and all but it's pretty dumb to not allow it incase you have serious issues with it[/QUOTE]
That's what BETA testing is for. But I don't know anyone who has had [B]serious[/B] issues with it, the worst issue is that it is sluggish on the iPhone 4
Sorry, you need to Log In to post a reply to this thread.