<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Technologizer &#187; iphone sms hack</title>
	<atom:link href="http://technologizer.com/tag/iphone-sms-hack/feed/" rel="self" type="application/rss+xml" />
	<link>http://technologizer.com</link>
	<description>Reviews, News, and Opinion About Personal Technology by Harry McCracken &#38; Friends</description>
	<lastBuildDate>Wed, 25 Apr 2012 02:50:30 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='technologizer.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Technologizer &#187; iphone sms hack</title>
		<link>http://technologizer.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://technologizer.com/osd.xml" title="Technologizer" />
	<atom:link rel='hub' href='http://technologizer.com/?pushpress=hub'/>
		<item>
		<title>Your GSM Phone is (Probably) Vulnerable to Malicious Text Messages</title>
		<link>http://technologizer.com/2009/07/30/your-phone-is-probably-vulnerable-to-malicious-text-messages/</link>
		<comments>http://technologizer.com/2009/07/30/your-phone-is-probably-vulnerable-to-malicious-text-messages/#comments</comments>
		<pubDate>Thu, 30 Jul 2009 18:47:06 +0000</pubDate>
		<dc:creator>Andrew Brandt</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[Apple. iPhone]]></category>
		<category><![CDATA[Google Android]]></category>
		<category><![CDATA[iphone exploit]]></category>
		<category><![CDATA[iphone sms hack]]></category>
		<category><![CDATA[Smartphones]]></category>
		<category><![CDATA[SwirlyMMS]]></category>
		<category><![CDATA[Swoopo]]></category>

		<guid isPermaLink="false">http://technologizer.com/?p=15053</guid>
		<description><![CDATA[Virtually all GSM phones (such as Apple&#8217;s iPhone) and GSM wireless operators (such as AT&#38;T and T-Mobile) on the planet appear to be vulnerable to attacks using specially crafted SMS text messages discovered by security researchers Zane Lackey and Luis Miras. At the Black Hat Briefings this morning, the two researchers demonstrated several different ways [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=technologizer.com&#038;blog=3849727&#038;post=15053&#038;subd=technologizer&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://technologizer.files.wordpress.com/2009/07/taft-screen-iphone-251.jpg"><img class="alignleft size-full wp-image-15052" style="margin:8px;" title="TAFT screen iphone 25" src="http://technologizer.files.wordpress.com/2009/07/taft-screen-iphone-251.jpg" alt="TAFT screen iphone 25" width="173" height="278" /></a>Virtually all GSM phones (such as Apple&#8217;s iPhone) and GSM wireless operators (such as AT&amp;T and T-Mobile) on the planet appear to be vulnerable to attacks using specially crafted SMS text messages discovered by security researchers Zane Lackey and Luis Miras. At the Black Hat Briefings this morning, the two researchers demonstrated several different ways they could bypass anti-spoofing protection in cellphones, and as a result, could send phones hidden commands, profile phones, or even exploit vulnerabilities that remotely disable a targeted phone&#8217;s ability to send and receive calls or text messages.</p>
<p>The researchers described how they set up test systems which could read the header data sent along with text messages, then used software to craft their own custom headers and messages and sent those messages to various types of GSM phones. Based on the behavior of the phones they tested, they were able to create several kinds of automated attacks for various phone models, and determined a method an attacker could use to silently connect to mobile phones and retrieve information that permits the attacker to identify the make and model of phone, and other profiling information.</p>
<p>One aspect of the vulnerability not well understood is how different models of phones will behave when they receive these specially-crafted messages. Some, like the Sony Ericsson model shown at right, provide the user no context as to whether information pushed down to the phone comes from a legitimate source.<a href="http://technologizer.files.wordpress.com/2009/07/taft-sony-settings-screen-med.jpg"><img class="alignright size-medium wp-image-15051" style="margin:8px;" title="taft sony settings screen med" src="http://technologizer.files.wordpress.com/2009/07/taft-sony-settings-screen-med.jpg?w=143&h=180" alt="taft sony settings screen med" width="143" height="180" /></a></p>
<p>In a final coup for the conference, Lackey and Miras demonstrated an iPhone app they call <a href="http://www.twitter.com/taftapp" target="_blank">TAFT</a> which can, at the click of a few buttons, transmit various types of attacks against specific, vulnerable phone models, including iPhones, and phones running the Windows Mobile 5 and pre-&#8221;cupcake&#8221; Android operating systems.</p>
<p>The researchers are currently working with all major carriers and phone manufacturers to fix the problems, but warn that it may take some time before the vulnerabilities have been patched.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/technologizer.wordpress.com/15053/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/technologizer.wordpress.com/15053/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/technologizer.wordpress.com/15053/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/technologizer.wordpress.com/15053/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/technologizer.wordpress.com/15053/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/technologizer.wordpress.com/15053/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/technologizer.wordpress.com/15053/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/technologizer.wordpress.com/15053/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/technologizer.wordpress.com/15053/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/technologizer.wordpress.com/15053/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/technologizer.wordpress.com/15053/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/technologizer.wordpress.com/15053/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/technologizer.wordpress.com/15053/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/technologizer.wordpress.com/15053/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=technologizer.com&#038;blog=3849727&#038;post=15053&#038;subd=technologizer&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://technologizer.com/2009/07/30/your-phone-is-probably-vulnerable-to-malicious-text-messages/feed/</wfw:commentRss>
		<slash:comments>35</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/005a84480dc330dade23d0a2f5c55c8e?s=96&#38;d=http%3A%2F%2Fs0.wp.com%2Fi%2Fmu.gif" medium="image">
			<media:title type="html">Spike</media:title>
		</media:content>

		<media:content url="http://technologizer.files.wordpress.com/2009/07/taft-screen-iphone-251.jpg" medium="image">
			<media:title type="html">TAFT screen iphone 25</media:title>
		</media:content>

		<media:content url="http://technologizer.files.wordpress.com/2009/07/taft-sony-settings-screen-med.jpg?w=239" medium="image">
			<media:title type="html">taft sony settings screen med</media:title>
		</media:content>
	</item>
	</channel>
</rss>
