Apple fixing bug that allows fake charging stations to 'hack' iPhones and iPads

Advertisement
By Reuters | Updated: 1 August 2013 16:16 IST
Apple Inc's next software update for its iPhones and iPads will fix a security flaw that allows hackers to engage in spying and cyber crimes when the victim connects the device to a fake charging station, the company said on Wednesday.

Apple's devices are vulnerable to attacks until the company releases its iOS 7 software update, which is slated for this fall.

Three computer scientists, who alerted Apple to the problem earlier this year, demonstrated the security vulnerability at the Black Hat hacking convention in Las Vegas on Wednesday where some 7,000 security professionals are learning about the latest threats posed by computer hacking.

Apple said the issue had been fixed in the latest beta of iOS 7, which has already been released to software developers.

"We would like to thank the researchers for their valuable input," Apple spokesman Tom Neumayr said.

The work was done by Billy Lau, a research scientist at the Georgia Institute of Technology, and graduate students Yeongjin Jang and Chengyu Song.

In a demonstration at the hacking conference, they plugged an iPhone into a custom-built charger they equipped with a tiny Linux computer that was programmed to attack iOS devices. They said it cost about $45 to buy and a week to design.

It infected the phone with a computer virus designed to dial the phone of one of the researchers, which it did.

They said that real-world cyber criminals might build viruses that would give them remote control of the devices. That would enable them to take screen shots for stealing banking passwords and credit card numbers. They could also access emails, texts and contact information or track the location of the phone's owner, Lau said.

"It can become a spying tool," said Lau.

Lau said they were publicizing the issue in the spirit of "white hat" hacking, which is finding security bugs so that manufacturers can fix them before criminals exploit them.

"Security doesn't work if you bury problems," he told Reuters on the sidelines of the press conference.

Lau said that devices running Google Inc's Android operating system are not vulnerable to the same types of attack because they warn users if they plug devices into a computer, even one posing as a charging station.

After Apple's iOS 7 software update, a message will pop up to alert the user that they are connecting to a computer, not an ordinary charger, he said.

Copyright Thomson Reuters 2013

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Apple, iPad, iPhone
Advertisement

Related Stories

Popular Mobile Brands
  1. Instagram Lets Some Users 'Tune' Their Reels Algorithm
  2. Vivo X300 Series Launching Today: Everything You Need to Know
  3. Amazon Fire TV Stick 4K Select Launched in India With Vega OS
  4. Top OTT Releases of the Week: Kantara Chapter 1, Lokah Chapter 1, Idli Kadai, and More
  5. Gemini 3 AI Model Will Be Released Soon, Says Google CEO Sundar Pichai
  6. Stray is Coming to PS Plus Essential Tier in November
  7. Realme C85 Pro Hands-On Images Allegedly Leak Ahead of Launch
  8. Oppo Find X9 Series Confirmed to Be Available in India via Flipkart
  9. Nothing Phone 3a Lite Launched With Glyph Light At This Price
  10. Vivo S50 Pro Mini Key Specifications Tipped Ahead of Launch
  1. Bitcoin’s Price Continues to Fall as Markets React to US Fed Rate Cut
  2. PS Plus Monthly Games for November Include Stray, EA Sports WRC 24 and Totally Accurate Battle Simulator
  3. Vivo S50 Pro Mini Key Specifications Tipped Ahead of China Launch; Could Debut Globally as Vivo X300 FE
  4. Google Confirms Gemini 3 AI Model Release Timeline: Tipped to Offer Improved Reasoning
  5. Google Brings Major Changes to Play Store Operations in the US After Epic Games Ruling
  6. Grammarly Rebrands to Superhuman, Introduces New Agentic AI Assistant
  7. Microsoft Azure Services Restored After Global Outage: What Caused the Issue, How It Was Resolved
  8. Microsoft CEO Satya Nadella Will Reportedly Visit India in December; Could Address Two AI Conferences
  9. Gemini for Home Voice Assistant Early Access Rollout Begins: Check Compatible Speakers, Displays
  10. Instagram Tests New Feature That Lets Users Customise Their Reels Algorithm
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.