May 6, 2024

@0xcharlie Discovers iOS Code Signing Security Flaw

Posted November 8, 2011 at 12:31am by iClarified · 19222 views
Charlie Miller, a popular hacker known as 0xcharlie, has discovered a security flaw in the code signing of iOS apps and subsequently been terminated from the iOS developer program.

Forbes reports that at the SysCan conference in Taiwan next week, Miller plans to present a method that exploits a flaw in Apple's restrictions on code signing on iOS devices, the security measure that allows only Apple-approved commands to run in an iPhone or iPad's memory. Using his method–and Miller has already planted a sleeper app in Apple's App Store to demonstrate the trick–an app can phone home to a remote computer that downloads new unapproved commands onto the device and executes them at will, including stealing the user's photos, reading contacts, making the phone vibrate or play sounds, or otherwise repurposing normal iOS app functions for malicious ends.

Miller demonstrates the bug in the video posted below. Two hours after linking the Forbes article, he tweeted that Apple had removed his sleeper app and kicked him out of the iOS developer program.

OMG, Apple just kicked me out of the iOS Developer program. That's so rude!

First they give researcher's access to developer programs, (although I paid for mine) then they kick them out.. for doing research. Me angry

dunno, letter of termination. Sounds permenant. feels heavy handed, I miss Steve.

Read More [via Josh]