Table of Contents
This step-by-step guide explains how to fix 5 common security threats on iPhone and iPad. It covers the required setup, the main actions, and the checks that help prevent common problems.
Unfortunately, the days when Apple devices were 'immune' from various security threats have been long gone.
Although it is true that they are still safer than Android devices, that distance is rapidly shrinking. Issues like hacking photos of celebrities on iCloud, Find My Phone hijacking scams and the number of threats from increasing malware have undermined the comprehensive protection of Apple devices. .
Today's article will tell you how to fix 5 common security threats on iPhone and iPad.
XcodeGhost was first discovered in the fall of 2015 in China. It is based on the malicious version of Xcode (Apple's official app development tool), and developers accidentally use XcodeGhost instead of the official version of Apple to compile the app.
Next, those apps are released into the App Store, undergoing a review process of Apple's code and eventually downloaded by the end user.
Fortunately for users in Europe and North America, most of the affected apps are only located in China - although some apps (such as the popular CamCard business card scanning tool) are available in the store globally. An estimated 40 to 350 apps have been affected, according to studies. One of these apps is the very famous Angry Birds 2, although Rovio quickly released a fix.
Apps infected with XcodeGhost can collect information about the device and then encrypt and upload that data to the attacker's server. Collected data includes the app's package identifiers, device name and type, language and country, device UUID and network type.
The study also found that malware could give fake warnings to steal user information, trick open URLs and write data to a user's clipboard.
After finding out, Apple made the following statement:
'We have removed the apps we know have been created with this counterfeit software from the App Store. We are working with developers to make sure they are using the appropriate Xcode version to rebuild their app. "
If you notice suspicious behavior when using your device, you should immediately check the list of affected apps online, then delete any compromised apps and change all your passwords.
Masque Attack was discovered by US-based security company FireEye in late 2014.
This attack works by simulating and replacing legitimate apps installed on the device, for users who have downloaded a seemingly legitimate app from outside the App Store. This scam can take the form of a link to an 'updated' app in text messages, WhatsApp messages or emails.
When the link is clicked, the malware will install the malicious version of the app on the original using the iOS profile provided to the business, so the average user is almost undetectable. Out it.
The detection becomes even more complicated, because both the real App Store version and the malicious version use the same package identifier.
According to FireEye, the risk is huge. Masque Attack can override email and banking apps, then steal bank information, local app's native data (such as cached emails and login tokens) and numbers The amount of confidential and private data has not been declared.
Apple's reaction is to claim that Masque Attack is not really a threat because very few users are affected:
'We designed OS X and iOS with integrated safety protections, to help protect customers and warn them before they install potential malware. We do not know if any customers are really affected by this attack. We encourage customers to download only from reliable sources such as the App Store and pay attention to any warnings when downloading apps. '
If you're lucky not to become a victim, simply deleting the malicious app and reinstalling the official version from the App Store will fix the problem.
Less than a month before the information about Masque Attack, Trojan Horse WireLurker was found.
Like XcodeGhost, the hacked version comes from China. It had been active for more than six months before it was discovered, and after it was discovered, it foretold "a new era of malware attacking Apple's mobile platforms and desktop computers. ", follow Palo Alto Networks.
The virus was inserted into pirated Mac OS X software and then transferred to Apple devices via a USB connection. But it cannot transfer Trojan directly from this iOS device to another iOS device.
After downloading more than 415, 000 times, it was noted as the biggest explosion of malware on iOS.
The attack can target both jailbroken (cracked) and non-jailbroken (not cracked).
If installed on jailbroken devices, WireLurker can use parts of the Cydia system to steal the victim's personal information, address book and phone number. It will then use Cydia to infect other apps and install additional malware.
- Secure iPhone after jailbreak
The good news is that if you run on a non-jailbroken device, this trojan is not harmful. Sadly, whether your device is jailbroken or not, the only way to eliminate the problem is to wipe your Apple device.
Before doing that, you need to make sure your Mac is not compromised, otherwise you will infect your iOS device again after reconnecting it to the computer. Thankfully, Palo Alto Networks has released a Python script to completely remove WireLurker. This script can be found on GitHub.
Link reference: HTTPS: //github. Com/PaloAltoNetworks/WireLurkerDetector
Once the download is complete, navigate to Settings> General> Reset On your iOS device. Select Erase All Content and Settings And restart the device. You will need to reset the device, but all WireLurker signs will disappear.
In early 2014, a flaw in Apple's SSL (Secure Sockets Layer) code was discovered. For those who are not yet familiar with SSL, SSL is one of the technologies used to create secure connections to websites.
The problem arises from a programming error, supposedly discovered before the release of iOS 6. 0. This error means that a key authentication step has been ignored, thus allowing unencrypted data to be sent over public Wi-Fi hotspots.
Because the data is not encrypted, it is easy for hackers to steal and read passwords, bank details, personal information and other important data. This information can then be used for nefarious purposes.
The problem is only apparent when using public Wi-Fi points, while Wi-Fi networks are secure, encrypted, such as home and business networks, are not affected.
If you belong to a group of people who never upgrade your operating system, you might be in trouble.
It's easy to check by navigating to Settings> General> Software Update . If you are using any version of iOS before 7. 0. 6, it will be a bit risky. If you have an old Apple device and can't update it to iOS 7 (eg iPhone 3GS or iPod tap 4G), you need to make sure you're running at least iOS 6. 1. 6.
The problem is also obvious on Mac. You need to run at least 10. 9. 2. If you are using any older operating system, avoid using Safari to browse the web.
Hack Lock Screen is nothing new. Android phones have been affected by past hacking Lock Screen and Apple devices have also discovered this in March 2013.
However, in September 2015, a new hacking method appeared on iOS devices. It will allow hackers to access your phone's iMessage app, contacts and photos without entering any verification.
Only four or six-digit password-protected devices are vulnerable to attack. If you use a longer alphanumeric password, you will not be affected.
Thankfully, access is partially limited and not all iOS systems are likely to be attacked. However, people often take screenshots of personal information such as bank statement screens, flight details and various personal accounts. All of this will probably be stolen by hackers.
There are three clear solutions.
Start by immediately change your current password to a password that is alphanumeric. Second, you can prevent Siri from accessing the lock screen ( Settings> tap ID & Passcode> Allow access when locked> Disable ). Finally, you should always ensure that you are running the latest version of the operating system, to fix the vulnerabilities as soon as the fixes are published.
Do you fall victim to any of the threats we mentioned in the article? Perhaps you know about some other dangerous threats other than those mentioned in the article? Let us know your opinion in the comment section below!
FAQ
What should I check before following these steps?
Confirm device and software compatibility, save important data, and make sure you have the required permissions, files, and account access.
Why might the process not work?
Common causes include outdated software, missing permissions, incompatible hardware, an unstable connection, or completing a step in the wrong order.
Can I undo the changes if necessary?
That depends on the tool or setting. Use built-in restore options when available, keep a backup, and record the original configuration first.
Reader Comments 0
Sign in with email or Google to join the discussion.