Exploit that Caused iPhones To Repeatedly Dial 911 Reveals Grave Cybersecurity Threat, Say Experts (9to5mac.com)
Ben Lovejoy, writing for 9to5Mac: We reported back in October on an iOS exploit that caused iPhones to repeatedly dial 911 without user intervention. It was said then that the volume of calls meant one 911 center was in 'immediate danger' of losing service, while two other centers had been at risk -- but a full investigation has now concluded that the incident was much more serious than it appeared at the time. It was initially thought that a few hundred calls were generated in a short time, but investigators now believe that one tweeted link that activated the exploit was clicked on 117,502 times, each click triggering a 911 call. The WSJ reports that law-enforcement officials and 911 experts fear that a targeted attack using the same technique could prove devastating. Of the 6,500 911 call centers nationwide, just 420 are believed to have implemented a cybersecurity program designed to protect them from this kind of attack.
and since most IOS users are on the latest version how is this still a problem?
Ben Lovejoy, the article author, is known for sensationalist journalism. It's a click-bait piece, like everything else he writes.
This is not an exploit. It is an app that asks for the user to give it permission to make phone calls, which the user grants. Then the app calls 911.
There is nothing about iOS that is "exploited" to make this happen. The only thing that is exploited is user stupidity, which should come as no surprise given that education is the least important priority in the US.
What if christians or atheists did? After all they do kill more Americans than the muslims.
It's true that they inherited a good security design from BSD, but they did some of their own thinking and it was one example of where the engineers and architects actually convinced Steve Jobs he was wrong - having a protected Applications folder, and requiring privilege escalation to install software. He thought they were nuts at the time, but in an interview much later he recounted how Avie Tevanian convinced him that it was necessary, and that Jobs was immensely thankful that he did.
Slashdot still doesnâ(TM)t support Unicode after it was added to the HTML standard in 1997.