Linked by Thom Holwerda on Mon 30th Aug 2010 22:47 UTC
Thread beginning with comment 438835
To view parent comment, click here.
To read all comments associated with this story, please click here.
To view parent comment, click here.
To read all comments associated with this story, please click here.
Some Jailbrakers may know what they are doing its the rest that are at risk, the ones that do it just to be cool or to say ner ner to Apple.
Any programmatic API to give root access is a security hole waiting to be exploited by the next trojan and its not just jailbrakers that will be hit, it'll be anyonewho downloads an App that abuses it before it gets spotted and pulled.




Member since:
2010-03-08
This just makes my head hurt.
Root access must be available on the iDevices with or withoug jailbreaking. It is used by iTunes and the App store application, among other things.
Legit jailbreaking just means letting the user run a root terminal app on his phone, in a controlled fashion (ie no rogue app can exploit this terminal app).
Why do you all seem to consider that as a security flaw ? Guys who jailbreak their phone are supposed to know what they are doing and not execute some random script shell in a root terminal. And this kind of user-related security flaw is the *sole* new vulnerability added by jailbreaking.
If jailbreaking didn't exist (which essentially means suppressing the root terminal icon in the phone application panel), root access would still be there for Apple apps. Anyone hacking Apple servers could still remotely shut down all iOS devices in the fashion Apple remotely killed the iPhone 4 prototype. No security flaw would be removed.
How is it hard to understand ?
Edited 2010-08-31 20:38 UTC