lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Date: Mon, 07 Mar 2011 12:41:51 +0100
From: Laurent OUDOT at TEHTRI-Security <laurent.oudot-ml@...tri-security.com>
To: full-disclosure@...ts.grok.org.uk, 
	Laurent OUDOT at TEHTRI-Security <laurent.oudot-ml@...tri-security.com>
Subject: [TEHTRI-Security] Security and iPhone IOS4.3
	Personal Hotspot feature


Gents,

Here is a tiny blog entry dealing with the new feature of the iPhone 4
with iOS 4.3, which turns it into a Wireless Hotspot in order to share
your 3G session through a WLAN.

We wanted to propose a quick geeky and security overview of this awesome
functionality.

We only found one tiny vulnerability which is related to the passphrase
used to protect the wireless. This can easily be patched by Apple.

The security advisory and explanations are available here:

http://blog.tehtri-security.com/2011/03/about-iphone-ios43-personal-hotspot.html

Happy update this week for lucky owners of iPhone / http://apple.com/ios

Best regards,

Laurent Oudot, CEO TEHTRI-Security
Web: http://www.tehtri-security.com
twt: @tehtris

Join us for more tricks:

- Asia - April 2011 -> SyScan Singapore Conference
  Training "Advanced PHP Hacking"  ( http://www.syscan.org )

- Europe - May 2011 -> HITB Amsterdam Conference
  Training "Hunting Web Attackers" ( http://conference.hitb.org )

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ