Warning: Don’t Dial With iPhone Web Dialer
07.17.07 - 11:26am
The iPhone web dialer was designed to give users a simple way to dial phone numbers listed on Web pages, but for the moment anyway a warning has been put out: Don’t use the iPhone web dialer.
The warning comes from SPI labs saying there is a bug in the feature that can let hackers redirect calls to 900 numbers. They
can also monitor any calls you place - so if you do use the web dialer keep your conversation light enough that it’s okay if the world knows. (keep your secrets to yourself).
The iPhone could also be set so it will no longer let you dial out, or set to dial endlessly (now wouldn’t that be fun to deal with.)
“Because this vulnerability can be launched from Web sites, everybody who has an iPhone has the potential to get exploited,” said Bill Hoffman, lead researcher with SPI labs.
SPI is not releasing detailed information on how the exploitation can be done (sorry hackers you’ll have to figure it out yourself) and they are working with Apple on a fix.
Dave Aitel, cheif technology officer with Immunity Inc. downplayed the warning saying one should avoid making the calls via the web, “If they know a lot of hackers and are a special target.”




Speak Your Peace