April 19, 2024
Apple Responds to iPhone SMS Spoofing Threat, Suggests You Use iMessage Instead

Apple Responds to iPhone SMS Spoofing Threat, Suggests You Use iMessage Instead

Posted August 18, 2012 at 5:45pm by iClarified
Apple has responded to pod2g's discovery of a vulnerability in iOS that allows for spoofing of SMS messages, reports Engadget.

Here is Apple's official statement:

Apple takes security very seriously. When using iMessage instead of SMS, addresses are verified which protects against these kinds of spoofing attacks. One of the limitations of SMS is that it allows messages to be sent with spoofed addresses to any phone, so we urge customers to be extremely careful if they're directed to an unknown website or address over SMS.


While Apple is correct in noting that SMS does allow messages to be sent with a different reply-to address, it neglects to comment on why iOS does not let you see who you actually getting the message from.

Pod2g notes, "In a good implementation of this feature, the receiver would see the original phone number and the reply-to one. On iPhone, when you see the message, it seems to come from the reply-to number, and you loose track of the origin."

Read More


Apple Responds to iPhone SMS Spoofing Threat, Suggests You Use iMessage Instead


Add Comment
Would you like to be notified when someone replies or adds a new comment?
Yes (All Threads)
Yes (This Thread Only)
No
iClarified Icon
Notifications
Would you like to be notified when we post a new Apple news article or tutorial?
Yes
No
Comments (8)
You must login or register to add a comment...
Definitively
Definitively - August 19, 2012 at 6:06pm
I am moving to WP8, Tim Cook will destroy Apple :(
Thatcher
Thatcher - August 20, 2012 at 9:55am
I fail to see how this message is relevant, the bug which Pod2G found has been present since iOS 1.0.0. You can't blame Tim Cook for this.
Jayzee
Jayzee - August 18, 2012 at 11:29pm
SMS is a bit old school when having iMessage and other messaging options like Whatsapp which not only comes cheaper since it's an internet feature which does not per message, but it also overcomes many limitations SMS has. But Apple should not take this lightly, it is a security flaw no matter what they say, and a very stupid one to fix, as a developer, I don't see any complications in fixing something like this so there is no excuse.
Pedro
Pedro - August 18, 2012 at 7:00pm
Apple should fix this and not use it as an excuse to use iMessage. Not everyone has an iPhone to use iMessage. That's the most retarded response I've heard from Apple. Fix it please. I love universal SMS over any other substitute.
9e22d44
9e22d44 - August 18, 2012 at 9:03pm
Well if you don't have an iPhone how is apple supposed to fix it?
Quarter
Quarter - August 18, 2012 at 11:00pm
Thats not even the point of pedro's post. Comprehension much?
b05c55f
b05c55f - August 19, 2012 at 6:46pm
They are trying to promote their company I think I would be telling people that my product is safer and more people should use A.K.A buy more iPhones.
Brian
Brian - August 18, 2012 at 6:06pm
My personal suggestion is that everything we opened an SMS conversation, there'll be some bubble that floats out besides the contact name to show the actual phone number, but the moment we touch the keyboard or scroll through the list, the bubble fades away... This way, there'll still be information with regards to the contact, while not taking up too much screen estate space. While some might suggestion updating the software to screen away spoof messages, I'm worried that the update might also accidentally condemn real legitimate messages as spoof. And I don't agree that iMessages is the way to go. Not all of us have the luxury of accessing 3G wherever we go.
Recent. Read the latest Apple News.
RECENT
Tutorials. Help is here.
TUTORIALS
Where to Download macOS Monterey
Where to Download macOS Ventura
AppleTV Firmware Download Locations
Where To Download iPad Firmware Files From
Where To Download iPhone Firmware Files From
Deals. Save on Apple devices and accessories.
DEALS