iOS 4.3.4 Prevents Hacking and Jailbreaking 281

Mightee writes "Apple has released a software update to iOS, version 4.3.4, for the iPhone 4, 3GS, iPad 2, 1, and iPod Touch. The main objective of this version is to prevent the hacking in Apple iOS devices which occurs through malicious PDF files. Another objective is to prevent the jailbreaking which occurs as a consequence of the previous effect. In previous versions, the iOS device is easily vulnerable to attacks. It happens because of mishandling of fonts embedded in the PDF file. Sometimes a downloaded PDF may be malicious, and there is a possibility that the file could inject malware into the iOS device, which gives a chance for the hackers to access the hardware of the iOS device."
  • by Anonymous Coward on Sunday July 17, 2011 @09:13PM (#36795970)

    At least it was, for once, honest about what's happening. "Your shiny new Apple device had a SECURITY FLAW which allows an ATTACKER to EXPLOIT it and install MALWARE! Oh, and it also can be used to jailbreak the device." Surprise surprise... Apple patched it.

    It's not very often that you hear jailbreaking expressed in such bluntly realistic terms. It's exploiting a security hole. You know... the ones that Macs supposedly don't have which is why you don't need to install any antivirus or be careful about what you download or install on them...

  • by Microlith ( 54737 ) on Sunday July 17, 2011 @09:15PM (#36795982)

    Yup! So keep making those hostile devices, Apple, we'll keep buying them (like fools!)

  • by Haedrian ( 1676506 ) on Sunday July 17, 2011 @09:27PM (#36796050)

    Its as if this update solved all problems and will solve all problems in the future.

    "iOS 4.3.4 solves known pdf exploits"

    Would have made sense.

    None of this "Prevents Hacking and Jailbreaking" nonsense.

  • by Anonymous Coward on Sunday July 17, 2011 @09:27PM (#36796056)

    Yeah, sure, I want any random website to be able to root my phone. That's exactly what jailbreakme.com does and it could do it without my permission just by visiting the site if the authors wanted to do it. Yes, this is a MAJOR security vulnerability, even if it is currently only being used for good and not evil.

  • by DanTheManMS ( 1039636 ) on Sunday July 17, 2011 @09:36PM (#36796118)
    Anyone with an iDevice reading this, please go backup your 4.3.3 SHSH file right now. Even if you don't think you'll ever jailbreak, please do it as an insurance measure. It's as simple as downloading a program (TinyUmbrella), connecting your phone to the computer, and clicking a button. Behind the scenes it's saving Apple's magic "approval" that allows you to restore your device to the fully-hacked 4.3.3 firmware. In the next few days, Apple is likely to stop signing restore requests for anything except 4.3.4.

    It's not that I expect most people to actively *want* to downgrade their firmware in the future. I just like having the *option* to do so. For instance, right now I could restore my iPhone to iOS version 3.1.3 if I wanted to, even though Apple stopped allowing restores to that version years ago.
  • Re:aaaand... (Score:4, Insightful)

    by smash ( 1351 ) on Sunday July 17, 2011 @09:41PM (#36796136) Homepage Journal
    iphone does everything i want in a phone and doesn't feel like it is made of cheese like all the samsung/htc devices i have encountered. so, as far as i'm concerned, apple deserve my money.
  • by grub ( 11606 ) <slashdot@grub.net> on Sunday July 17, 2011 @10:06PM (#36796284) Homepage Journal

    Hostile... like all those Blackberry and some Android devices?

    I love it when people conveniently forget the other guilty parties when engaging in AppleHate(tm)
  • Re:aaaand... (Score:2, Insightful)

    by grub ( 11606 ) <slashdot@grub.net> on Sunday July 17, 2011 @10:10PM (#36796302) Homepage Journal

    Ever own a Blackberry or Android phone with locked down bootloader?

    The fact is the bulk of devices we "own", we don't get the goods for. I didn't get the code for my microwave oven or TV set or HD set top box, et al. ad nauseum.
  • by Microlith ( 54737 ) on Sunday July 17, 2011 @10:10PM (#36796306)

    like all those Blackberry and some Android devices?
    Sure, not like I own one of those either.

    I love it when people conveniently forget the other guilty parties when engaging in AppleHate(tm)

    Apple is the biggest pusher of every concept that's ever been criticized on Slashdot. They're simply the easiest example, so stop whining.

  • by Microlith ( 54737 ) on Sunday July 17, 2011 @10:31PM (#36796408)

    Name one legitimate reason to want to jailbreak your phone now days.

    Ownership. No other reason is necessary.

  • by Dan667 ( 564390 ) on Sunday July 17, 2011 @10:36PM (#36796444)
    I regret buying an iphone and wish I had bought an Android Phone. It has become glaringly obvious that you just get a lot more for your money in comparison (including phone features and programs).
  • Re:aaaand... (Score:4, Insightful)

    by Anonymous Coward on Sunday July 17, 2011 @11:16PM (#36796688)

    Sorry mate but the tethering fee is NOT an iOS issue. I can tether my iPhone to any of my devices and not pay a fee and I haven't even jailbroken it and refuse to to do because there is no legitimate need to. The tethering fee seems to be an American and Canadian thing not a rest of world thing.

    Don't blame Apple blame your crappy cell companies.

  • Re:aaaand... (Score:4, Insightful)

    by MightyYar ( 622222 ) on Sunday July 17, 2011 @11:16PM (#36796690)

    Actual ownership of your device. Sorta like how your PC doesn't try and fight you.

    You betray your influence... :) You seem to see the iPhone as a PC in phone form. I think most see it as a phone with some extra features, or at least an appliance of some sort. People don't "own" their car software, dishwasher software, oven software, fridge software, TV software, etc. The PC is the exception to the rule. It's not necessarily "evil" for an appliance-style device to be locked down - it all depends on the end user. Some people still get pissed that they can't service their $5 FM radio...

  • by Heretic2 ( 117767 ) on Sunday July 17, 2011 @11:27PM (#36796750)

    iOS - Designed for intelligence gatherers:

    • Stores detailed location data.
    • geotags and timestamps picture metadata automagically.
    • Has a keychain that's crackable in minutes so get all stored passwords.
    • Has all kinds of other "hidden data" candy

    And yet, my business still uses it as the defacto standard because they're puuuuuuuurty.

    Personally, I like to show off to The Man, so I continue to not care that much myself, but if I actually had some important job that was life/death to people, yea I wouldn't use an iPhone for work business.

  • by hairyfeet ( 841228 ) <bassbeast1968 AT gmail DOT com> on Monday July 18, 2011 @12:00AM (#36796914) Journal

    "Sure, the boys in Steve's lab can make it hack-proof. But that don't mean we ain't gonna hack it.". All we need now is someone to come out with a jailbreak that depends on the success of a plumbing minigame and we're in business!

    Seriously why don't folks just accept if you want Steve's toys you have to play with them Steve's way? If you want freedom to do what you want with YOUR device you do NOT want an Apple iShiny, what you want is this little thing called an Android. Hell even the WinPhone is more open last I checked, as they made it butt simple to load third party apps.

    Not to say old Steve don't make good gear, hell the man is famous for cutting out the bullshit and making things simple that "just work". But surely by now everyone has to know Steve has always been a control freak, going back to that Apple that would overheat because Steve hated the sound of fans.

    Apple will ALWAYS be the most locked down walled garden approach, that is how Steve makes sure things are just the way he likes it, and as a side effect it'll make it so Apple doesn't have to worry about malware without actually hardening the OS, just make it so only pre-approved apps run and there you go. If that doesn't appeal to you? Get Android or WinPhone or WebOS devices, it isn't like there isn't plenty of choices out there.

    I just don't get why people would pay for the Apple markup only to turn right around and look for ways to break into the thing. it just seems like a lot of work when there are plenty of other choices. Vote with your wallets people, if design and simplicity matters? Buy Apple. If being able to control your device and do as you please matters to you? Get something else. Why is that so hard?

  • by Brannon ( 221550 ) on Monday July 18, 2011 @02:16AM (#36797364)

    You probably use 15 electronic devices a day which have microprocessors capable of running arbitrary code but which the manufacturer prevents you from easily running arbitrary code. Why is Apple the bad guy? They are not the first ones to ever make a locked down device.

  • by tuppe666 ( 904118 ) on Monday July 18, 2011 @03:00AM (#36797512)

    I find it difficult to believe that anyone is buying the iPhone has a better ui than Android. Where are the iPhone widgets? Seriously though there is little to nothing in it,

    I find it impossible to belive that as a hardware designer(sic) you even talk about the iPhone a device from a hardware perspective is a year and a half out of date, with a known hardware flaw.

    I find it incredible that you don't understand that both Android and iOS have FOSS origins, and have benefited in different ways. What is relevant perhaps is as a USER should Apple follow the spirit of the BSD License.

    Personally I'll be buying the phone with the best software/hardware/Open...and that isn't an iPhone

  • by Opportunist ( 166417 ) on Monday July 18, 2011 @04:12AM (#36797752)

    But these devices all can do everything I want to do with them, why bother modifying them? If you're happy with what your iPhone can do out of the box, the same applies to you and your iPhone. But I don't remember any washing machine manufacturer trying to keep the buyers of their machines from trying to "jailbreak" them and turn them into something the creator didn't intend them to be. If I think my washing machine should turn with more RPM, I doubt Siemens or Hoover are going to sue me over it, not even if I create a kit and sell it to others (not give it away. SELL it, for profit).

    What else is there that has a microprocessor with "locked down" code? Well, e.g. cars. And for cars there's chip tuning. Not only do people sell that service, but as far as I can tell car manufacturers don't even try to keep them from doing it. Why bother? If anything, it might make the car break faster and people need spare parts, so more power to them!

    Care to inform me about any device or appliance that has a microprocessor capable of running arbitrary code that has been locked down AND where the manufacturer is acting like you're a criminal if you try to change that? Aside of i$Devices and cellphones?

