<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" 
      xmlns:thr="http://purl.org/syndication/thread/1.0">
  <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php" />
  <link rel="self" type="application/atom+xml" href="http://www.readwriteweb.com/atom.xml" />
  <id>tag:www.readwriteweb.com,2011:/1/tag:www.readwriteweb.com,2009://1.17104-</id>
  <updated>2011-08-16T16:18:41Z</updated>
  <title>Comments for How to Secure Your Jailbroken iPhone</title>
  
  <generator uri="http://www.sixapart.com/movabletype/">Movable Type 4.35-en</generator>
  <entry>
    <id>tag:www.readwriteweb.com,2009://1.17104</id>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php" />
    <link rel="service.edit" type="application/atom+xml" href="http://www.readwriteweb.com/cgi-bin/mt/mt-atom.cgi/weblog/blog_id=1/entry_id=17104" title="How to Secure Your Jailbroken iPhone" />
    <published>2009-11-13T14:01:15Z</published>
    <updated>2009-11-16T17:00:05Z</updated>
    <title>How to Secure Your Jailbroken iPhone</title>
    <summary>Earlier this week, the news of the first iPhone worm made its way around the net. Since the worm only targeted jailbroken devices and then only those which had the SSH program installed, there wasn&apos;t a need for concern on the part of most iPhone users. However, a second hacker tool which uses the same...</summary>
    <author>
      <name>Sarah Perez</name>
      
    </author>
    
    <category term="Apple" />
    
    <category term="How To" />
    
    <category term="Mobile" />
    
    <category term="News" />
    
    <content type="html" xml:lang="en" xml:base="http://www.readwriteweb.com/">
      <![CDATA[<p><img src="http://www.readwriteweb.com/images/iphone_worm.jpg" />Earlier this week, <a href="http://www.readwriteweb.com/archives/new_iphone_worm_how_worried_should_we_be.php" target="_blank">the news of the first iPhone worm</a> made its way around the net. Since the worm only targeted jailbroken devices and then only those which had the SSH program installed, there wasn't a need for concern on the part of most iPhone users. However, a second hacker tool which uses the same security hole as the so-called iKee worm has reared its head and this one is far more dangerous. <a href="http://www.intego.com/news/hacker-tool-copies-personal-info-from-iphones.asp" target="_blank">According to security firm Intego</a>, the new hacker tool goes after personal data stored on the device including email, contacts, SMS messages, calendars, photos, music files, videos and any other data recorded by any iPhone app. </p>

<p>In other words, if you're the owner of a jailbroken phone, you should now be concerned. </p>]]>
      <![CDATA[

<h2>New iPhone Worm Discovered</h2>

<p>Unlike the relatively innocuous iKee worm which the creator designed more as a "public service" to alert users to the potential for malware on the iPhone, the new hacker tool, dubbed "iPhone/Privacy.A," is the real deal. Where iKee simply switched the iPhone wallpaper to display a photo of singer Rick Astley <em>(a nod to the internet meme of <a href="http://www.readwriteweb.com/archives/how_to_jailbreak_the_iphone_to_firmware_312.php" target="_blank">rickrolling</a>),</em> Privacy.A gives the user no indication that it is running on the device.</p>

<p>The new hacker tool also operates a bit differently than iKee does, as it doesn't have to sit on the iPhone itself in order to inflect its damage or spread. The hacker can either load the worm onto their personal device and then monitor the network for jailbroken devices to attack or they can load the malicious program onto a computer. As <a href="http://www.intego.com/news/hacker-tool-copies-personal-info-from-iphones.asp" target="_blank">Intego points out in their post</a>, this computer could be on a public network at an Internet cafe or retail store. In that scenario, the tool would then scan for any other jailbroken iPhones that came within range of the Wi-Fi network and attack them. </p>

<h2>How to Secure your iPhone</h2>

<p>Although many jailbreakers are tech-savvy enough to know how to lock down their devices to protect themselves from attack, there are quite a few who have simply followed online instructions <a href="http://www.readwriteweb.com/archives/how_to_jailbreak_your_iphone_to_os_30.php" target="_blank">such as</a> <a href="http://www.readwriteweb.com/archives/how_to_jailbreak_the_iphone_to_firmware_312.php" target="_blank">these</a> to perform the jailbreak. This group, while arguably somewhat tech-savvy, doesn't necessarily know all the nitty-gritty details about the iPhone filesystem or its security mechanisms.</p>

<p>To make it easy on these users, we've provided steps on how to change your iPhone's root password - the common denominator required in order for the malware to gain access to your device. </p>

<p>While some may argue there's no need to change your root password if you haven't also installed the SSH program, another necessary element for these attacks to work, we think that's a little short-sighted. It would be easy enough for a malicious hacker to trick jailbreakers into installing SSH by bundling it with some other third-party application offered through underground App Stores like Cydida or Icy. By masquerading as something innocent like a wallpaper-changer or ringtone bundle, a hacker could easily set up a number of jailbreakers with SSH without the victims even being aware that it has been installed. Although we haven't heard of anything like this happening yet, if we thought of it then you can bet that the hackers out there have thought of it too. </p>

<p><strong><u>Changing the Root Password</u></strong></p>

<p>The best protection is to simply change your iPhone root password. That will keep you safe from the current iPhone malware...as least for now. Here's how:</p>

<ol>
  <li>Install the MobileTerminal application from Cydia. </li>

  <li>Reboot your iPhone. </li>

  <li>Launch MobileTerminal and type in the command: <em>passwd</em> </li>

  <li>At the prompt which asks for the "Old Password," type in: <em>alpine</em> </li>

  <li>At the new password prompt, type in a new password of your choosing, making sure to pick something strong. </li>

  <li>Re-enter the password to confirm. </li>

  <li>You'll then be returned to the Mobile$ prompt which means the change was successful. </li>

  <li>Now you'll need to change the password for the secondary admin. Type in the command <em>login root.</em> </li>

  <li>Again, you're prompted for the old password. Type in <em>alpine.</em> </li>

  <li>Now type in the command <em>passwd</em> </li>

  <li>You'll then go through the change password routine a second time, entering in <em>alpine </em>as the old password, creating a new password and then re-entering it to confirm. </li>

  <li>When you are finished, close the application. </li>
</ol>

<p><em>Note: these instructions assume you are running iPhone OS 3.0 or higher.</em></p>

<em><p>Update 11/16: Intego requested that the new attack be described as a "hacker tool," not a worm. </p></em>]]>
    </content>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.17104-comment:298066</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.17104" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php#c298066" />
    <title>Comment from Custom Writing Essays  on 2011-01-15</title>
    <author>
        <name>Custom Writing Essays </name>
        <uri>http://www.rapidwriters.net/</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.rapidwriters.net/">
        <![CDATA[<p>Thanks a lot for a bunch of good tips. I look forward to reading more on the topic in the future. Keep up the good work! This blog is going to be great resource. Love reading it</p>]]>
    </content>
    <published>2011-01-15T17:35:11Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.17104-comment:294085</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.17104" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php#c294085" />
    <title>Comment from facebook app developer on 2010-12-24</title>
    <author>
        <name>facebook app developer</name>
        <uri>http://www.cygnismedia.com/</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.cygnismedia.com/">
        <![CDATA[<p>It is really nice for me to see you and your great hardwork again.Every piece of your work look excellent.Looking forward to hearing more from you!</p>]]>
    </content>
    <published>2010-12-24T10:24:12Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.17104-comment:291683</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.17104" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php#c291683" />
    <title>Comment from Rolex Sweep  on 2010-12-15</title>
    <author>
        <name>Rolex Sweep </name>
        <uri>http://www.worldoftrade.com/sell/rolex-sweep.htm</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.worldoftrade.com/sell/rolex-sweep.htm">
        <![CDATA[<p>Nice information provided here which is very useful to everyone...I am not a huge fan of this side, there do seem to be a lot these days...thanks for posting...Let me know more about this one</p>]]>
    </content>
    <published>2010-12-15T12:47:35Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.17104-comment:212445</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.17104" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php#c212445" />
    <title>Comment from Luke on 2010-05-19</title>
    <author>
        <name>Luke</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>i did that now am i 100% safe?<br />
</p>]]>
    </content>
    <published>2010-05-19T22:31:55Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.17104-comment:187118</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.17104" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php#c187118" />
    <title>Comment from aumar on 2010-02-09</title>
    <author>
        <name>aumar</name>
        <uri>http://www.thermologic.eu</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.thermologic.eu">
        <![CDATA[<p>it was very complicated thanks for help<br /><a href="http://www.thermologic.eu" rel="nofollow"> mantolama </a></p>]]>
    </content>
    <published>2010-02-09T10:10:52Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.17104-comment:168512</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.17104" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_secure_your_jailbroken_iphone.php#c168512" />
    <title>Comment from Publisher on 2009-11-13</title>
    <author>
        <name>Publisher</name>
        <uri>http://www.MedicalBillingTrainingInfo.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.MedicalBillingTrainingInfo.com">
        <![CDATA[<p>Thanks for taking the time to help us combat this worm.  Most people I know do not realize they can get infected on their iPhone!</p>

<p><a href="http://www.twinpeakspress.com" rel="nofollow">Publisher</a></p>

<p><a href="http://www.SinusCureReport.com" rel="nofollow">sinus infections</a></p>]]>
    </content>
    <published>2009-11-13T16:10:14Z</published>
  </entry>

</feed>
