The 'chaiOS' bug lets an attacker freeze iPhones with a message

资讯 2024-09-22 01:12:04 955

A newly discovered iOS bug lets an attacker construct a simple text message which, when sent to an iPhone, immediately freezes and possibly restarts it.

Software developer Abraham Masri has identified the bug and christened it chaiOS (which we must admit is a pretty awesome name). Masri told BuzzFeed, who first wrote about the bug, that he found it while “fuzzing with the operating system.”

An Apple spokesperson confirmed to Mashable "a fix is coming in a software update next week."

SEE ALSO:When you absolutely should not upgrade your iPhone

The attack is quite nasty: According to Twitter user @aaronp613 who tested it out on an iPhone 5S and an iPhone X, not only does it render an iPhone unusable for a few minutes, but the recipient's Message app will stop loading messages and will keep crashing. It affects iOS versions 10 to 11.2.5 beta 5, but it hasn't been tested on the latest iOS beta, 11.2.5 beta 6. And Masri claims the same bug can also affects Macs.

Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!

On the other hand, some users say the text message did nothing to their iPhones.

Note that the link Masri originally used (as seen in the above tweet) no longer works, and Masri said he will not upload it, so we haven't been able to independently verify Masri's results. However, now that the vulnerability is out, it's a matter of time before someone else figures out how to exploit it.

That said, there's an easy way to protect yourself. As Twitter user Eric Ramírez points out, you can simply block the domain of the message in Safari -- in the case of the original message, github.io. If you're not a developer, that's a good idea anyway since GitHub links could contain malicious code.

This is just one of many simple text message based bugs that can wreak havoc on an iPhone. In Jan. 2017, it was discovered that a combination of three emoji can crash and freeze an iPhone. In Nov. 2016, it was a short video file that crashed iPhones, and in Mar. 2016 a simple link would crash iOS devices when tapped on in Safari. All these issues were subsequently fixed with software updates.


Featured Video For You
Apple admits that new updates slow older iPhones—but for a good reason
本文地址:http://o.zzzogryeb.bond/html/08b799932.html
版权声明

本文仅代表作者观点,不代表本站立场。
本文系作者授权发表,未经许可,不得转载。

全站热门

24 Museums Dedicated to Black History

春色怡人 茶香醉人 茶都迷人

The 1 thing that may kill Apple's new HomePod

Fall movie preview: What to watch if you're feeling offbeat

Spate of defections show Kim Jong

Umtiti suffers calf knock in second Barca training session

The Monday Slatest newsletter.

iOS 11 isn't coming to the iPhone 5

友情链接