Slashdot Mirror


Georgia Tech Researchers Jailbreak iOS 7.1.2

mikejuk writes The constant war to jailbreak and patch iOS has taken another step in favor of the jailbreakers. Georgia Tech researchers have found a way to jailbreak the current version of iOS. What the Georgia Tech team has discovered is a way to break in by a multi-step attack. After analysing the patches put in place to stop previous attacks, the team worked out a sequence that would jailbreak any modern iPhone. The team stresses the importance of patching all of the threats, and not just closing one vulnerability and assuming that it renders others unusable as an attack method. It is claimed that the hack works with any iOS 7.1.2 using device including the iPhone 5s.
It is worth noting that the The Device Freedom Prize for an open source jailbreak of iOS7 is still unclaimed and stands at just over $30,000. The details are to be revealed at the forthcoming Black Hat USA (August 6 & 7 Las Vegas) in a session titled Exploiting Unpatched iOS Vulnerabilities for Fun and Profit:

16 of 136 comments (clear)

  1. Why buy a product that you're going to jailbreak? by ottawanker · · Score: 2, Interesting

    When are people going to stop buying products that they feel the need to jailbreak instead of buying unlocked or open alternatives? Keep rewarding the bad behaviour that you don't like, and you'll just get more of the same, except locked down even better.

  2. Extremely Useful by macs4all · · Score: 2

    Considering iOS7 is about to be replaced any day now.
    In Other News, Exploit gives unlimited Lives in Doom.

  3. why? isn't 7.1.2 already jail broken... by blahbooboo · · Score: 2, Informative

    Congrats on jailbreaking an os which is already jail broken?

    1. Re:why? isn't 7.1.2 already jail broken... by 93+Escort+Wagon · · Score: 2

      Yup, the Pangu team jailbroke 7.1.2 several weeks ago (I'm typing this on a jailbroken iPad Mini, actually).

      --
      #DeleteChrome
  4. Why jailbreak? by Hecatonchires · · Score: 2

    A browser that supports userscript extensions (greasemonkey). Bookmarklet just aren't good enough.

    --

    Yay me!

  5. Comment removed by account_deleted · · Score: 3, Insightful

    Comment removed based on user account deletion

  6. Re: Why? by i_ate_god · · Score: 3, Informative

    I have an ipad. Full file system access is my number one reason for jail breaking. I can access any file on the device, share folders on a samba server, access any file on the sdcard reader.

    Now I can actually upload nef files from.my Nikon camera.

    --
    I'm god, but it's a bit of a drag really...
  7. Re: Why? by tysonedwards · · Score: 2

    And there's other apps like Flex that gets around these restrictions with ease.

    --
    Thirty four characters live here.
  8. Re:Why buy a product that you're going to jailbrea by MrEdofCourse · · Score: 2

    "Why?"

    Because I'd rather have an iPhone than any other phone and an iPad than any other tablet. If they have to be jailed, then so be it. On the other hand, once I get my device, it's just that much better when it's jailbroken. I'm not rewarding bad behavior. Apple made their choice of how they wanted the platform to be, and most people are perfectly fine with that choice. My personal protest to the contrary wouldn't change one thing.

  9. Re: Why? by Chewbacon · · Score: 4, Interesting

    Many of them evaluate the file system and determine the device is jailbroken. tsProtector fixes this by denying apps (you choose) file access. Makes apps that get cranky over jail breaking stfu and get back to work.

    --
    Chewbacon
    The Bible is like Wikipedia: written by a bunch of people and verifiable by questionable sources.
  10. Re:Why? by qpqp · · Score: 4, Informative

    I'll bite.
    First and foremost: firewall and SSHd, then: nginx, python, perl, java, haskell, adblocker, ... Also the ability to edit and customize (hidden) settings, hosts file, themes, go fuck yourself, it's my computer and I do what I want with it.

  11. Re:Why buy a product that you're going to jailbrea by pla · · Score: 3, Interesting

    When are people going to stop buying products that they feel the need to jailbreak instead of buying unlocked or open alternatives?

    As soon as my employer decides to offer a choice other than "windows or IOS", I'll take it.

    Until then, jailbreaking remains the only option.

  12. Re:Why? by qpqp · · Score: 2

    Obviously, you're only supposed to consume fakebook and buy apps and music through it. Didn't you know? ;)
    Don't ever try to use it as a portable ARM development board with multi-touch.

  13. Re:Why buy a product that you're going to jailbrea by tlhIngan · · Score: 3, Interesting

    When are people going to stop buying products that they feel the need to jailbreak instead of buying unlocked or open alternatives? Keep rewarding the bad behaviour that you don't like, and you'll just get more of the same, except locked down even better.

    Because the open alternatives well, suck. I've tried Android, and while ICS and JB are nice, they're also way too busy and don't work the way I want them to. Yes, I'm a geek, I love all the billion options it gives me to control it, but damn, I just want to use my phone as a phone. I don't want or care about themes, dynamic backgrounds, wallpapers, etc.

    Plus, I like the way iOS works. Android's got it's own UI, and I find I dislike it (it's gotten a lot better now, but the back button always throws me for a loop because I'm used to seeing back at the top left, while the back button is always at the bottom).

    Then there's whole Google thing. Sorry, Google's business plan involves gathering as much user information as possible.

    Finally - while iTunes sucks, there's a bunch of utility it provides, like backups. I can download IPA files on iTunes and install them on my iOS devices - even if the app gets banned or whatever, as long as I have a local copy, I can install it. Apple hasn't blocked any apps from running, nor have they force-removed apps. And iTunes backups DO work. Backing up on Android? Well, you have Ti Backup and other apps, but nothing by default. Hell, even iCloud backups work. Android backups for me just mean all my apps get reinstalled, but I lose all my data. Thanks, Google.

    Then there's the whole penis^H^H^H^H^Hscreen size thing. I find this enlarging screen size trend disappointing - I want a decent screen, decent CPU, decent RAM, and that entails buying flagships which are growing faster than the American waistline. I mean sure, 441dpi is a bit too much for me (I don't use the phone to my nose), so the 325-ish DPI of the "retina" display is perfectly adequate. Plus, I want real RGB, not pentile crap, and proper color calibration (AMOLED is impressive, but the colors generally oversaturate and are inaccurate). Android is rapidly moving away from being useful to me as an alternative.

    Sure if I wanted open I could use Linux, but Linux desktops are just plain old fugly to me. I develop on Linux, using Windows as a front end (X server for the odd X app, but otherwise a bunch of SSH windows and samba serving files for Gvim for Windows).

    Again, it's all personal preferences, and I know lots of people don't work that way.

    As for jailbreaking, well, the only must-have app I have on iOS is iP Firewall. It lets me control apps use of network - so I block ad servers and the like. (Yes, Android has the same functionality if you root).

    Estimates have around 10% of iOS users jailbreak, and unfortunately, it seems the largest use of jailbreaks are... installing pirated apps.

  14. Re:Why? by Lumpy · · Score: 2

    Are you being an uneducated tool and trying to say that Android is perfect.... because anyone that has any clue knows better.

    There is a reason I am running Cyanogenmod 11 DAILIES on my HTC ONE M8 and not the "perfect" android that HTC bastardized.

    Android is broken as hell, not by Google's design, but by their fault for letting carriers and handset makers BREAK android.

    --
    Do not look at laser with remaining good eye.
  15. Re:Why buy a product that you're going to jailbrea by Lumpy · · Score: 3, Insightful

    Because they dont exist.

    All android phones are locked you have to root them to unlock them, and it's pretty much a similar amount of work. And now you have the Bullshit of S-ON and S-OFF on most android phones that requires you to use exploits to set Security off.

    Even buying a 100% unlocked version of the phone.... S-ON is set and you STILL have to exploit it to unlock it.

    So please tell me what phone can I buy that I already have root, and there is no security at all on the phone to stop me from installing whatever I want or whatever OS I want. Because they just do not exist outside of developer edition short run.

    --
    Do not look at laser with remaining good eye.