Download the
Tom's Guide App from the AppsStore
News and trends on internet
/ mobile / "sound & picture" / IT
Yes No

Hacker Takes Control of iPhones, Requests $

- By - Source : Tom's Guide US

A clever hacker seized jailbroken iPhones and requested money via PayPal.

A hacker in the Netherlands supposedly took control of several jailbroken iPhones on T-Mobile Netherlands and asked for ransom, according to a post in a Dutch forum. Users were unaware of the wireless siege until the hacker sent fake SMS text massages, claiming that the devices were unsecure. To solve the problem, the iPhone users were directed to a website and told to pay a fee via PayPal to restore security.

"Right now, I can access all your files," the warning read. "This message won't disappear until your iPhone's secure." According to a translation by Ars Technica, the hacker used port scanning to identify the jailbroken iPhones with SSH running. Apparently enabling SSH is a common practice with jailbroken iPhones, enabling users to log in via Terminal and execute UNIX commands. However, iPhones have a default root password that many jailbreakers forget to change.

Once the hacker gained access, he replaced the wallpaper with a fake SMS message. Upon visiting the website, frightened users are required to shell out €5 to a PayPal account and receive instructions on how to secure the device. Evidently, the instructions weren't exactly technical: it only required the end-user to restore the device to its original factory settings.

Currently the URL provided in the message leads to a page indicating that the site was reported for spam or phishing abuse, and has been deactivated. However, the original website offered a "scare tactic," saying it was fine if the end-user didn't pay, however thousands of other hackers would do the same thing.

Share:
18
Comments
X

Comments

mlopinto2k1 11/04/2009 10:18 PM
Hide
-0+

It takes all kinds.

ssalim 11/04/2009 10:25 PM
Show
Manos 11/04/2009 10:29 PM
Hide
-15+

If they were dumb enough to not change the root password of their jailbroken iPhones all it took was a dumb "hacker" for the apropriate audience. Next

daft 11/04/2009 10:41 PM
Hide
-1+

darn, the sites down for phishing/spam

cheepstuff 11/04/2009 11:05 PM
Hide
--2+

if some jerk was dumb enough to hack my iphone, the last thing i would do is pay them money. a huge problem is people decide that jailbreaking is a good idea use a simple internet guide. this is nice except they don't understand how their iphone works. this means somebody can go and scare some people into forking over a ton of money (collectively).

megamanx00 11/04/2009 11:58 PM
Hide
-2+

The dudes paypal account is already suspended and he posted an apology along with instructions on how to secure the iPhone. I'm honestly surprised it's taken this long as this particular vulnerability has been documented. What I'm worried about is when someone figures out why the iGrenade blows up and if they can trigger that behavior remotely.

PodSix 11/05/2009 12:24 PM
Hide
-0+

erm, plug into itunes, hit restore. problem solved.

rippleyhakd 11/05/2009 12:31 PM
Hide
--1+

CLAASSICCC.. The problem is, that if this guy, did it so easilyyyyyyy... What will be next?

david714 11/05/2009 12:36 PM
Hide
-0+

my man...

mavroxur 11/05/2009 12:50 PM
Hide
-3+

OH NOES! An Apple got hacked! Initating fanboy defense in 5...4...3...2...

Shadow703793 11/05/2009 1:05 AM
Hide
-7+

Wait a sec.... I thought iPhones/OSX was uncrackable!?!?!?
/sarcasm

:lol:

830hobbes 11/05/2009 1:13 AM
Hide
-1+

"...text massages..."

Do you even read your articles before publishing them?

koga73 11/05/2009 2:09 AM
Hide
--1+

clever!

cruiseoveride 11/05/2009 2:37 AM
Hide
--1+

Thats so lame. Not even a real hack. He just logged in using default passwords. This is like messing with someone's linksys router and then calling it "hacking".

bustapr 11/05/2009 3:16 AM
Hide
-0+

ssalim :
That's what you get from escaping jail.


WOW, that's a nice boulder you got over your head!

Kelavarus 11/05/2009 3:55 AM
Hide
-1+

830hobbes :
"...text massages..."Do you even read your articles before publishing them?



Is that like cyber with phones?

cruiseoveride :
Thats so lame. Not even a real hack. He just logged in using default passwords. This is like messing with someone's linksys router and then calling it "hacking".



You're just envious you didn't think of it first.

Athreex 11/05/2009 4:23 AM
Hide
-1+

830hobbes :
"...text massages..."Do you even read your articles before publishing them?



Aww...I thought the article was talking about a massage after securing the iPhone. Oh well.

dvanholland 11/05/2009 11:04 PM
Hide
-0+

rippleyhakd :
CLAASSICCC.. The problem is, that if this guy, did it so easilyyyyyyy... What will be next?



Shadow703793 :
Wait a sec.... I thought iPhones/OSX was uncrackable!?!?!? /sarcasm



You guys need to read the whole article. Apple's software wasn't hacked. It's only affecting iPhones that have been jailbroken. Not only that, it only affect jailbroken phones where the idiot users forgot to set the password from the default one provided...Some hack...just dumb users.