It appears you have not yet registered with our community. To register please click here...

 
Go Back [M] > Madshrimps > WebNews
Researchers call NSO zero-click iPhone exploit 'incredible and terrifying' Researchers call NSO zero-click iPhone exploit 'incredible and terrifying'
FAQ Members List Calendar Search Today's Posts Mark Forums Read


Researchers call NSO zero-click iPhone exploit 'incredible and terrifying'
Reply
 
Thread Tools
Old 18th December 2021, 05:24   #1
[M] Reviewer
 
Stefan Mileschin's Avatar
 
Join Date: May 2010
Location: Romania
Posts: 153,575
Stefan Mileschin Freshly Registered
Default Researchers call NSO zero-click iPhone exploit 'incredible and terrifying'

Google researchers have described NSO Group's zero-click exploit used to hack Apple devices as "incredible and terrifying," Wired has reported. Project Zero researchers called it "one of the most technically sophisticated exploits we've ever seen" that's on par with attacks from elite nation-state spies.

The Project Zero team said it obtained one of NSO's Pegasus exploits from Citizen Lab, which managed to capture it via a targeted Saudi activist. It also worked with Apple's Security Engineering and Architecture (SEAR) group on the technical analysis.

NSO's original exploit required the user to click on a link, but the latest, most sophisticated exploits require no click at all. Called ForcedEntry, it takes advantage of the way iMessage interprets files like GIFs to open a malicious PDF file with no action required from the victim. It does so by using old code from the 1990s used to process text in scanner images.

Once inside a device, the malware can set up its own virtualized environment and run javascript-like code, with no need to connect to an outside server. From there, it gives an attacker access to a victim's passwords, microphone, audio and more. The exploit is extremely hard to detect and is "a weapon against which there is no defense," Project Zero researchers said.

https://www.engadget.com/google-rese...6.html?src=rss
Stefan Mileschin is online now   Reply With Quote
Reply


Similar Threads
Thread Thread Starter Forum Replies Last Post
Facebook sues Israeli firm over WhatsApp call exploit attacks Stefan Mileschin WebNews 0 30th October 2019 14:21
WhatsApp call exploit let attackers slip spyware on to phones Stefan Mileschin WebNews 0 14th May 2019 09:22
Chinese investigate the incredible popping iPhone 8 Stefan Mileschin WebNews 0 7th October 2017 09:07
How to Hold a Conference Call With Your iPhone Stefan Mileschin WebNews 0 23rd August 2016 08:05
Researchers find another terrifying iOS flaw Stefan Mileschin WebNews 0 23rd April 2015 14:16
Exploit lets attackers replace your iPhone's apps with malware Stefan Mileschin WebNews 0 12th November 2014 10:32
This 'Find My iPhone' exploit could be to blame for celebrity photo hacks Stefan Mileschin WebNews 0 2nd September 2014 10:00
‘Call of Duty: Ghosts’ update patches ‘god mode’ exploit, fixes multiplayer issues Stefan Mileschin WebNews 0 6th December 2013 09:07
iPhone 5 cases and realistic unibody dummy show off incredible slimness Stefan Mileschin WebNews 0 30th September 2011 09:56
iPhone iOS 4.1: Jailbreak and Unlock – Bootrom Exploit Confirmed jmke WebNews 0 9th September 2010 11:48

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


All times are GMT +1. The time now is 09:04.


Powered by vBulletin® - Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
SEO by vBSEO