29.10.2013 14:50 Uhr, Quelle: Macworld UK

Apple iOS apps subject to man-in-the-middle attacks

Many Apple iOS applications are vulnerable to a man-in-the-middle attack that can result in permanent manipulation by the attacker, according to start-up Skycure, which released its research findings on this today during the RSA Europe conference.Skycure CTO Yair Amit says many mobile iOS apps are vulnerable to a "very simple attack that relies on the 301 HTTP Response, a permanent re-direction." If an Apple iOS app can cache these so-called 301 HTTP Re-Direct Response requests -- and many popular iOS apps do, according to Skycure -- then the app is vulnerable to being repeatedly hijacked via re-direction to the attacker's server.RELATED:Apple iPhones, iPads get intrusion-detection and prevention from start-upWhile this general type of man-in-the-middle attack has been known on the Web for many years, for mobile applications the result is w

Weiterlesen bei Macworld UK

Digg del.icio.us Facebook email MySpace Technorati Twitter

JustMac.info © Thomas Lohner - Impressum - Datenschutz