
@0xcharlie Discovers iOS Code Signing Security Flaw
Posted November 8, 2011 at 12:31am by
Shalom Levytam
Charlie Miller, a popular hacker known as 0xcharlie, has discovered a security flaw in the code signing of iOS apps and subsequently been terminated from the iOS developer program.
Forbes reports that at the SysCan conference in Taiwan next week, Miller plans to present a method that exploits a flaw in Apple's restrictions on code signing on iOS devices, the security measure that allows only Apple-approved commands to run in an iPhone or iPad's memory. Using his methodand Miller has already planted a sleeper app in Apple's App Store to demonstrate the trickan app can phone home to a remote computer that downloads new unapproved commands onto the device and executes them at will, including stealing the user's photos, reading contacts, making the phone vibrate or play sounds, or otherwise repurposing normal iOS app functions for malicious ends.
Miller demonstrates the bug in the video posted below. Two hours after linking the Forbes article, he tweeted that Apple had removed his sleeper app and kicked him out of the iOS developer program.
OMG, Apple just kicked me out of the iOS Developer program. That's so rude!
First they give researcher's access to developer programs, (although I paid for mine) then they kick them out.. for doing research. Me angry
dunno, letter of termination. Sounds permenant. feels heavy handed, I miss Steve.
Read More [via Josh]
Forbes reports that at the SysCan conference in Taiwan next week, Miller plans to present a method that exploits a flaw in Apple's restrictions on code signing on iOS devices, the security measure that allows only Apple-approved commands to run in an iPhone or iPad's memory. Using his methodand Miller has already planted a sleeper app in Apple's App Store to demonstrate the trickan app can phone home to a remote computer that downloads new unapproved commands onto the device and executes them at will, including stealing the user's photos, reading contacts, making the phone vibrate or play sounds, or otherwise repurposing normal iOS app functions for malicious ends.
Miller demonstrates the bug in the video posted below. Two hours after linking the Forbes article, he tweeted that Apple had removed his sleeper app and kicked him out of the iOS developer program.
OMG, Apple just kicked me out of the iOS Developer program. That's so rude!
First they give researcher's access to developer programs, (although I paid for mine) then they kick them out.. for doing research. Me angry
dunno, letter of termination. Sounds permenant. feels heavy handed, I miss Steve.
Read More [via Josh]

![Low-Cost MacBook Colors Were Originally Planned for M2 MacBook Air [Rumor] Low-Cost MacBook Colors Were Originally Planned for M2 MacBook Air [Rumor]](/images/news/99984/99984/99984-160.jpg)
![Apple Seeds Xcode 26.3 RC 2 With Claude 4.6 Support [Download] Apple Seeds Xcode 26.3 RC 2 With Claude 4.6 Support [Download]](/images/news/99980/99980/99980-160.jpg)







![Apple Watch Series 11 Now $299, 46mm Model Also at Record Low [Deal] Apple Watch Series 11 Now $299, 46mm Model Also at Record Low [Deal]](/images/news/99986/99986/99986-160.jpg)
![Expired: Save $900 on Apple's 11-Inch M4 iPad Pro 2TB With Nano-Texture Glass [Deal] Expired: Save $900 on Apple's 11-Inch M4 iPad Pro 2TB With Nano-Texture Glass [Deal]](/images/news/99982/99982/99982-160.jpg)
![11-Inch M5 iPad Pro Hits New All-Time Low at $799.91 [Deal] 11-Inch M5 iPad Pro Hits New All-Time Low at $799.91 [Deal]](/images/news/99962/99962/99962-160.jpg)
![11-inch M5 iPad Pro (1TB) Drops to All-Time Low of $1,449 [Deal] 11-inch M5 iPad Pro (1TB) Drops to All-Time Low of $1,449 [Deal]](/images/news/99924/99924/99924-160.jpg)
![Original AirTag Drops to All-Time Low Price of $17 [Deal] Original AirTag Drops to All-Time Low Price of $17 [Deal]](/images/news/99856/99856/99856-160.jpg)