security flaw in iPhone certs
![]()
Apparently there a new security flaw has been found in iPhone OS. According to Cryptopath’s blog there is a major flaw in the iPhone’s certificates. The hacker posted a description on how to exploit this issue. The new firmware version 3.1.3 is also affected.
Cryptopath says that it might be able to establish a proxy and control the iPhone using this leak.
According to the Register this hole can’t be used to execute malicious code but it could be used to stop executing applications or block websites.
Users should be careful with accepting profiles, especially root certificates.

No comments yet.