The ModMyTM Family of Sites:
ModMyMotoModMyiModMyGphone





 
 
Register or Connect with Facebook

Discuss AppStore Apps | Browse / Search Cydia | MMi Cydia Stats




  Apple, iPhone & iPad Forums, Mods, Guides, News, Themes, Downloads, and more! | ModMyi.com > iPhone > iPhone News
Reply
 
LinkBack Thread Tools Display Modes
  #1  
Old 11-23-2009, 06:39 AM
Messany's Avatar
MMi Staff Writer
 
Join Date: Aug 2009
Device + Firmware: iPhone 3g 3.0 beta 4
Operating System: Mac OS X 10.6.2, XP, and Vista
Location: Valparaiso, Indiana
Posts: 335
Thanks: 5
Thanked 156 Times in 83 Posts
Malicious Worm Takes Aim at Jailbroken iPhones

Click the image to open in full size.


There's a new worm on the radar. And, this time, it's a bit more nefarious than anything Rick Astley could have ever imagined himself.

Quote:
The worm is the first malicious infestation to hit the iPhone, the first merely displaying a picture of 1980's crooner Rick Astley - although music lovers might claim that was pretty malicious as well.
According to a boatload of media outlets covering the news today, a second worm to hit the iPhone has been detected by security company F-Secure. And, says TG Daily, for now, the worm has set its sights on people in the Netherlands who use their iPhones for internet banking with Dutch online bank ING Direct.

In other words, this worm isn't just for "fun." There is an obvious financial motive behind this newly discovered attack.

The worm attacks jailbroken phones and sneakily redirects bank customers to a cloned, look-alike site prompting one to enter their username and password. Naturally, the bank is now frantically trying to get the word out to customers in a hurried fashion.

Unfortunately, it isn't yet clear just how many iPhones may be infected. Once thought to be merely in the hundreds, it's now more likely that the number has increased into the thousands. As warned by F-Secure, the aforementioned worm can recruit iPhones to a botnet and skip around among phones currently sharing the same wi-fi hotspot.

Quote:
"It's the second iPhone worm ever and the first that's clearly malicious - there's a clear financial motive behind it," says F-Secure research director Mikko Hyponen."It's fairly isolated and specific to Netherlands but it is capable of spreading."
For now, fending off the worm involves some pretty basic steps. For example, jailbroken phone owners are strongly encouraged to revise their SSH password from the default '"Alpine" to help evade the worm.

To help spread the word and not the worm, F-Secure is endeavoring to publish as many known details as possible of the worm. You can check out their official blog originating from Lithuania by clicking here.

Image via Mobile Castle

Last edited by Messany; 11-23-2009 at 01:40 PM..
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
The Following 6 Users Say Thank You to Messany For This Useful Post:
JailbrokeniPodKing (11-23-2009), LEVMAN (11-23-2009), louort3 (11-23-2009), matthew1111 (11-23-2009), micnchris (11-27-2009), reaves205 (11-23-2009)
  #2  
Old 11-23-2009, 06:51 AM
What's Jailbreak?
 
Join Date: Dec 2007
Device + Firmware: iPhone 3G 8GB 3.1.2
Operating System: Ubuntu 9.10 OS X
Location: Zürich
Posts: 24
Thanks: 2
Thanked 1 Time in 1 Post

lucky I dont live in the netherlands!
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
  #3  
Old 11-23-2009, 06:52 AM
Imahottguy's Avatar
Livin the iPhone Life
 
Join Date: Jul 2007
Device + Firmware: 3G[s] JB redsn0w 0.8
Operating System: Win XP
Location: Lansing, MI, USA
Posts: 1,239
Thanks: 43
Thanked 81 Times in 66 Posts
Send a message via MSN to Imahottguy

For the love of gawd! n00bs: Change your effing root password!!

@Meesany: You should put info on how to change the default password in the first post, n00bs need to be spoon fed.
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
The Following User Says Thank You to Imahottguy For This Useful Post:
wilsongeorge (11-23-2009)
  #4  
Old 11-23-2009, 06:57 AM
What's Jailbreak?
 
Join Date: Dec 2007
Device + Firmware: iPhone 3G 8GB 3.1.2
Operating System: Ubuntu 9.10 OS X
Location: Zürich
Posts: 24
Thanks: 2
Thanked 1 Time in 1 Post

Quote:
Originally Posted by Imahottguy View Post
For the love of gawd! n00bs: Change your effing root password!!

@Meesany: You should put info on how to change the default password in the first post, n00bs need to be spoon fed.
True that!

Or just uninstall openssh!!
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
  #5  
Old 11-23-2009, 06:58 AM
Messany's Avatar
MMi Staff Writer
 
Join Date: Aug 2009
Device + Firmware: iPhone 3g 3.0 beta 4
Operating System: Mac OS X 10.6.2, XP, and Vista
Location: Valparaiso, Indiana
Posts: 335
Thanks: 5
Thanked 156 Times in 83 Posts

@Imahottguy Thanks! I've put in a link.
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
The Following 2 Users Say Thank You to Messany For This Useful Post:
cbgaines (11-23-2009), mixi92 (11-23-2009)
  #6  
Old 11-23-2009, 07:01 AM
mixi92's Avatar
iPhone? More like MyPhone
 
Join Date: Sep 2007
Device + Firmware: 2G pwned 3.1.2 / 3G pwned 3.1.2
Operating System: XP Pro/Vista/iAtkosV7
Location: US/RP
Posts: 106
Thanks: 12
Thanked 32 Times in 25 Posts

Quote:
Originally Posted by Imahottguy View Post
For the love of gawd! n00bs: Change your effing root password!!

@Meesany: You should put info on how to change the default password in the first post, n00bs need to be spoon fed.
Got it on...see post...instruction also in cydia...

http://modmyi.com/forums/member-writ...n-iphones.html

Quote:
Originally Posted by Messany View Post
@Imahottguy Thanks! I've put in a link.
Thanks Messany...hope everyone would change their password.

Last edited by mixi92; 11-23-2009 at 07:01 AM.. Reason: Automerged Doublepost
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
  #7  
Old 11-23-2009, 07:09 AM
CaptainChaos's Avatar
Livin the iPhone Life
 
Join Date: Sep 2008
Device + Firmware: iPhone 3G[S] 3.0.1
Operating System: Window$ 7
Location: In a van down by ther river
Posts: 1,989
Thanks: 235
Thanked 153 Times in 143 Posts

Yet another convincing piece of evidence that Apple can use against jailbreaking in the upcoming hearings. Great.
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
The Following User Says Thank You to CaptainChaos For This Useful Post:
JailbrokeniPodKing (11-23-2009)
  #8  
Old 11-23-2009, 07:34 AM
What's Jailbreak?
 
Join Date: Jun 2009
Device + Firmware: iPhone 3G, 3.1.2
Operating System: Mac OS X 10.6.2
Posts: 6
Thanks: 1
Thanked 0 Times in 0 Posts

Noob question, But this work if you dont have SSH installed? or is the root and alpine set by default as soon as you jailbreak?
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
  #9  
Old 11-23-2009, 07:38 AM
CaptainChaos's Avatar
Livin the iPhone Life
 
Join Date: Sep 2008
Device + Firmware: iPhone 3G[S] 3.0.1
Operating System: Window$ 7
Location: In a van down by ther river
Posts: 1,989
Thanks: 235
Thanked 153 Times in 143 Posts

If you don't have ssh installed then you don't have to worry about it. The benefits of having it though are why it will always be on my phone.
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
The Following User Says Thank You to CaptainChaos For This Useful Post:
jalexis4192 (11-23-2009)
  #10  
Old 11-23-2009, 07:46 AM
Green Apple
 
Join Date: Oct 2007
Posts: 37
Thanks: 1
Thanked 1 Time in 1 Post
Send a message via AIM to chris4851

It's as simple as this.... if you know how to and have Jailbroken your phone you SHOULD know how to change your root password. Pure laziness and it's there fault to get infected.
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
  #11  
Old 11-23-2009, 07:49 AM
What's Jailbreak?
 
Join Date: Jun 2009
Device + Firmware: iPhone 3G, 3.1.2
Operating System: Mac OS X 10.6.2
Posts: 6
Thanks: 1
Thanked 0 Times in 0 Posts

Quote:
Originally Posted by CaptainChaos View Post
If you don't have ssh installed then you don't have to worry about it. The benefits of having it though are why it will always be on my phone.
I know, but i just use it maybe once to get my theme on phone, and to get the tethering hack, after that, its pretty much useless to me, Since i dont switch themes every 5 seconds like some people do, dont use dTunes or anything either so yeah.
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
  #12  
Old 11-23-2009, 07:51 AM
CaptainChaos's Avatar
Livin the iPhone Life
 
Join Date: Sep 2008
Device + Firmware: iPhone 3G[S] 3.0.1
Operating System: Window$ 7
Location: In a van down by ther river
Posts: 1,989
Thanks: 235
Thanked 153 Times in 143 Posts

True, but if your phone gets stuck at the bootlogo and you don't have ssh then your only option is to restore.
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
  #13  
Old 11-23-2009, 07:54 AM
My iPhone is a Part of Me
 
Join Date: Aug 2008
Device + Firmware: 16GB White iPhone 3G + 3.0b4
Operating System: Windows 7 / Ubuntu 8.10 dual boot
Location: New York
Posts: 695
Thanks: 1
Thanked 47 Times in 37 Posts

These aren't that complex of "Worms". Any basic programmer can write a walking script that simply:

1) Try SSH to IP
2) Login as root/alpine
3) Replace hosts file with bad one
4) Try SSH to next IP.
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
  #14  
Old 11-23-2009, 08:39 AM
iPhoneaholic
 
Join Date: Sep 2007
Device + Firmware: Iphone 3GS jailbreak 3.1.2
Operating System: Mac OS X 10.6.2
Location: Foco, Colorado
Posts: 408
Thanks: 1
Thanked 10 Times in 9 Posts

MTF. leave other people **** alone.
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
  #15  
Old 11-23-2009, 08:45 AM
What's Jailbreak?
 
Join Date: Jun 2009
Device + Firmware: iPhone 3gs 3.1.2
Operating System: windowns vista home edition
Location: Brooklyn NY
Posts: 18
Thanks: 1
Thanked 7 Times in 2 Posts

TO ALL : Please just change the root password and thats it its not that hard just click on this link and it will show you step by step on how to do it ..

How To Change the iPhone’s Root Password | Just Another iPhone Blog

Dont forget to hitt the " thanks " if it helped you .
Digg StumbleUpon Delicious Reddit Newsvine Google Yahoo Thanks Reply With Quote
The Following 5 Users Say Thank You to marko911 For This Useful Post:
asidrave (11-23-2009), cbgaines (11-23-2009), darwina (11-23-2009), fidosam (11-23-2009), Messany (11-23-2009)
Reply

  Apple, iPhone & iPad Forums, Mods, Guides, News, Themes, Downloads, and more! | ModMyi.com > iPhone > iPhone News

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



Go to Top
ModMyI

All times are GMT -6. The time now is 08:04 AM. Powered by vBulletin® Version 3.8.4
If you need Dedicated Server Hosting, you should check out SingleHop. | Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.3.0
Copyright © 2007-10 by ModMy, LLC. All rights reserved.

iPhone News / iPhone Forums / Apple News / Apple Forums / iPad News / iPad Forums / Cydia Hosting /
RSS / Contact Us / / Top