It appears you have not yet registered with our community. To register please click here...

 
Go Back [M] > Madshrimps > WebNews
Researchers call NSO zero-click iPhone exploit 'incredible and terrifying' Researchers call NSO zero-click iPhone exploit 'incredible and terrifying'
FAQ Members List Calendar Search Today's Posts Mark Forums Read


Researchers call NSO zero-click iPhone exploit 'incredible and terrifying'
Reply
 
Thread Tools
Old 18th December 2021, 04:24   #1
[M] Reviewer
 
Stefan Mileschin's Avatar
 
Join Date: May 2010
Location: Romania
Posts: 148,812
Stefan Mileschin Freshly Registered
Default Researchers call NSO zero-click iPhone exploit 'incredible and terrifying'

Google researchers have described NSO Group's zero-click exploit used to hack Apple devices as "incredible and terrifying," Wired has reported. Project Zero researchers called it "one of the most technically sophisticated exploits we've ever seen" that's on par with attacks from elite nation-state spies.

The Project Zero team said it obtained one of NSO's Pegasus exploits from Citizen Lab, which managed to capture it via a targeted Saudi activist. It also worked with Apple's Security Engineering and Architecture (SEAR) group on the technical analysis.

NSO's original exploit required the user to click on a link, but the latest, most sophisticated exploits require no click at all. Called ForcedEntry, it takes advantage of the way iMessage interprets files like GIFs to open a malicious PDF file with no action required from the victim. It does so by using old code from the 1990s used to process text in scanner images.

Once inside a device, the malware can set up its own virtualized environment and run javascript-like code, with no need to connect to an outside server. From there, it gives an attacker access to a victim's passwords, microphone, audio and more. The exploit is extremely hard to detect and is "a weapon against which there is no defense," Project Zero researchers said.

https://www.engadget.com/google-rese...6.html?src=rss
Stefan Mileschin is offline   Reply With Quote
Reply


Similar Threads
Thread Thread Starter Forum Replies Last Post
Facebook sues Israeli firm over WhatsApp call exploit attacks Stefan Mileschin WebNews 0 30th October 2019 13:21
WhatsApp call exploit let attackers slip spyware on to phones Stefan Mileschin WebNews 0 14th May 2019 08:22
Chinese investigate the incredible popping iPhone 8 Stefan Mileschin WebNews 0 7th October 2017 08:07
How to Hold a Conference Call With Your iPhone Stefan Mileschin WebNews 0 23rd August 2016 07:05
Researchers find another terrifying iOS flaw Stefan Mileschin WebNews 0 23rd April 2015 13:16
Exploit lets attackers replace your iPhone's apps with malware Stefan Mileschin WebNews 0 12th November 2014 09:32
This 'Find My iPhone' exploit could be to blame for celebrity photo hacks Stefan Mileschin WebNews 0 2nd September 2014 09:00
‘Call of Duty: Ghosts’ update patches ‘god mode’ exploit, fixes multiplayer issues Stefan Mileschin WebNews 0 6th December 2013 08:07
iPhone 5 cases and realistic unibody dummy show off incredible slimness Stefan Mileschin WebNews 0 30th September 2011 08:56
iPhone iOS 4.1: Jailbreak and Unlock – Bootrom Exploit Confirmed jmke WebNews 0 9th September 2010 10:48

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


All times are GMT +1. The time now is 20:14.


Powered by vBulletin® - Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO