vendredi 30 août 2019

iOS vulnerabilities

Guardian newspaper report link



Google blog with much detail link


Quote:

Impact

The implant has access to almost all of the personal information available on the device, which it is able to upload, unencrypted, to the attacker's server. The implant binary does not persist on the device; if the phone is rebooted then the implant will not run until the device is re-exploited when the user visits a compromised site again. Given the breadth of information stolen, the attackers may nevertheless be able to maintain persistent access to various accounts and services by using the stolen authentication tokens from the keychain, even after they lose access to the device.


via International Skeptics Forum https://ift.tt/2MLX22Q

Aucun commentaire:

Enregistrer un commentaire