Jonathan Richards
Grab an Italian masterpiece for less
In what appears to be the first successful hack of Apple's iPhone, a group of security experts have shown how to take control of the device remotely using its internet connection.
The researchers at Independent Security Evaluators (ISE) demonstrated that by tricking the phone into accessing a particular website, or by using a rogue wi-fi connection, hackers could force the phone to forward on personal information, such as text messages and contact numbers.
By installing a piece of malicious code in the iPhone via its Safari internet browser, a hacker could take "complete control" of the device, Charles Miller, principal security analyst at ISE, said.
The firm said that it had spoken with Apple about the vulnerability, and suggested that a software patch could fix the problem.
An Apple spokeswoman told The New York Times: "Apple takes security very seriously and has a great track record of addressing potential vulnerabilities before they can affect users.
"We’re looking into the report submitted by ISE and always welcome feedback on how to improve our security," she said.
On a website detailing the hack, www.exploitingiphone.com, Dr Miller said that the most likely scenarios in which iPhone owners would fall victim were if they opened a link in an e-mail or text message, or if they connected to the internet via a rogue wi-fi access point controlled by hackers.
A piece of malicious code would initially read the phone's text messages, address book, call history and voicemail data and then forward this on to the attacker, "but this code could be replaced with code that does anything that the iPhone can do", he said.
Dr Miller advised iPhone users only to visit sites – and use wi-fi networks – that they trusted, and not to open web links in e-mails, even if they appear to come from trusted contacts.
Carole Theriault, a consultant at Sophos, a security firm, said the hack sounded "theoretically possible". She said: "All code runs the risk of vulnerabilities, and the more complex and lengthy the code, the more likely it is to have an error. I have no doubt that Apple are looking at this very closely."
Since the iPhone was released last month, hackers have been furiously trying to unlock its secrets, with the majority focused on how to free the device from AT&T, the sole carrier.
One hacker who goes by the name 'DVD Jon' claimed to have achieved this, but once the 'exploit' was activated, the iPhone could only be used as an iPod and an internet browser; it could not be connected to another phone network.
Last week another security firm warned that an iPhone feature which allows a user to automatically dial a phone number by clicking on a link on a website was also prone to abuse by hackers.
Industry sectors news at a glance. Interactive heatmap, video and podcast
Everything the Business Traveller needs to know to make a better trip
Get ready for the winter sports season, with our resort guides and snow reports
We are backing British business, what is the confidence of the nation and what businesses are succeeding?
Growing demand for energy, oil that is harder to reach and the rise of carbon dioxide emissions. We examine the energy challenge
With rail travel in Europe on the rise, we review the benefits of travelling by train
Enjoy further reading from Travel to Fashion, Business to Sport, discover more
Shortcuts to help you find sections and articles
1998
£47,955
12 months for the price of 11 and a 5% discount.
Offer ends 31/11/09
Check your free Experian credit report before applying
Car Insurance
to £60K + bonus (OTE £90k)
Lord Search & Selection
Location Flexible
PwC’s Consulting practice helps businesses of all shapes
and sizes work smarter and grow faster.
£85k
CPA
Highly Competitve
Specsavers
Whiteley, near Southampton
Moments from Battersea Park.
For sale with Winkworth
Find out about shared ownership.
See your free Experian credit report beforehand
Book now & save over £100pp.
11 cool resorts, lowest prices... Early Booking offers 15 Nov.
20% off selected Azores holidays taken in October with Sunvil Discovery
Get covered on your travels with a superb range of policies at great prices. Visit InsureandGo.com
World Class Golf, Spa and preferential Beach Club. Private estate overlooking West Coast
Villas from £275 per night inclusive of Golf
Contact our advertising team for advertising and sponsorship in Times Online, The Times and The Sunday Times, or place your advertisement.
Times Online Services: Dating | Jobs | Property Search | Used Cars | Holidays | Births, Marriages, Deaths | Subscriptions | E-paper
News International associated websites: Globrix Property Search | Milkround
Copyright 2009 Times Newspapers Ltd.
This service is provided on Times Newspapers' standard Terms and Conditions. Please read our Privacy Policy.To inquire about a licence to reproduce material from Times Online, The Times or The Sunday Times, click here.This website is published by a member of the News International Group. News International Limited, 1 Virginia St, London E98 1XY, is the holding company for the News International group and is registered in England No 81701. VAT number GB 243 8054 69.