Stories
Slash Boxes
Comments

SoylentNews is people

posted by Fnord666 on Sunday April 26 2020, @11:14PM   Printer-friendly
from the what's-old-is-new-again dept.

Latest Apple Text-Bomb Crashes iPhones via Message Notifications:

Apple devices are vulnerable to a “text bomb” attack where simply looking at messages or posts containing characters in the Sindhi language can crash devices.

[...] The problem occurs in a number of different scenarios, including if the character string shows up in a text message – in fact, just looking at a message notification containing a message preview will crash the system. Viewing messages within apps leads to the same outcome, as does reading social media posts on one's phone or Mac. As for the latter point, Threatpost editors were able to independently confirm that looking at tweets containing the characters will indeed shut down an iPhone.

Cluley noted that completely rebooting the device fixes the problem – until another booby-trapped message comes along.

[...] Apple has had similar linguistic issues in the past; in 2013, certain combinations of Arabic characters were found to crash Macs and iPhones; while in 2018, messages containing letters of the south Indian language of Telugu were discovered to do the same thing.

Other text-bomb attacks that don't relate to Unicode symbols have made the rounds in the past: The chaiOS bug in 2018 for instance allowed attackers to crash or freeze phones just by sending a text message containing a hyperlink to malicious code hosted on GitHub. Recipients only needed to receive the malicious messages for the flaw to work: Clicking on the link wasn't required.

And last year, an Apple iMessage bug made the rounds that allowed attackers to brick iPhones running older iOS versions, by sending a specially crafted message to a vulnerable device.

In this case, Apple hasn't yet issued a public statement on the problem, but according to Cluley, the latest beta version of iOS fixes the issue.

See Also:
An unusual character string is causing Apple devices to crash:


Original Submission

This discussion has been archived. No new comments can be posted.
Display Options Threshold/Breakthrough Mark All as Read Mark All as Unread
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
(1)
  • (Score: 2) by mmh on Sunday April 26 2020, @11:34PM (1 child)

    by mmh (721) on Sunday April 26 2020, @11:34PM (#987396)

    It appears to only work if it's show in a notification popup or as the subject of an email. As the body of an email it's fine.

    The actual text:

    برآ🇮🇹برآ🇮🇹برآ🇮🇹برآ🇮🇹برآ🇮🇹برآ🇮🇹برآ🇮🇹برآ🇮🇹
    • (Score: 2) by coolgopher on Monday April 27 2020, @01:07AM

      by coolgopher (1157) on Monday April 27 2020, @01:07AM (#987420)

      Well, that didn't crash my Mac when viewing that in Pale Moon, fwiw.

  • (Score: 0, Funny) by Anonymous Coward on Sunday April 26 2020, @11:49PM (5 children)

    by Anonymous Coward on Sunday April 26 2020, @11:49PM (#987399)

    As you all know, iphones are assembled in China.

    That means what? Chances are. apple fanboys and girls are mostly infected.

    So? It gives us high-impact tactic to contain and isolate the infected.

    How? Round up all iphone users, and put them in gitmo.

    That would do what? It would isolate and quarantine 98.864% of infected carriers. Trace and contain(tm).

    Huh. It would also make the world just - apple fanboys and girls had it coming for long time.

    Hm. Yep, we will have that rare thing, a happy planet.

    • (Score: 1, Informative) by Anonymous Coward on Monday April 27 2020, @12:01AM (2 children)

      by Anonymous Coward on Monday April 27 2020, @12:01AM (#987400)

      Reel in the optimism, buddy.

      iOS is more secure than Android any day.

      • (Score: 0) by Anonymous Coward on Monday April 27 2020, @12:17AM

        by Anonymous Coward on Monday April 27 2020, @12:17AM (#987406)

        Another apple fanboi detected. Round'm up, boys.

      • (Score: 0) by Anonymous Coward on Monday April 27 2020, @10:48AM

        by Anonymous Coward on Monday April 27 2020, @10:48AM (#987493)

        You know what's even more secure than iPhone or Android? https://www.punkt.ch/en/products/mp02-4g-mobile-phone/ [punkt.ch]

    • (Score: 2) by hendrikboom on Monday April 27 2020, @01:50AM (1 child)

      by hendrikboom (1125) on Monday April 27 2020, @01:50AM (#987429) Homepage Journal

      I'd say gitmo isn't big enough for that.

      • (Score: 0) by Anonymous Coward on Monday April 27 2020, @02:26AM

        by Anonymous Coward on Monday April 27 2020, @02:26AM (#987440)

        There is that place called maralago or something.

        Florida is ok, too. I mean, if you dump them down there, who would know the difference?

  • (Score: 0) by Anonymous Coward on Monday April 27 2020, @12:18AM

    by Anonymous Coward on Monday April 27 2020, @12:18AM (#987407)

    When the normally rock-solid iOS starts behaving like a flaky Microsoft operating system, you know that the end times are here.

  • (Score: 5, Funny) by Anonymous Coward on Monday April 27 2020, @12:29AM (1 child)

    by Anonymous Coward on Monday April 27 2020, @12:29AM (#987411)

    in 2013, certain combinations of Arabic characters were found to crash Macs and iPhones;

    Cerrtain combinations of Arabic characters have been causing problems worldwide for almost 1500 years.

    • (Score: 0) by Anonymous Coward on Monday April 27 2020, @01:21AM

      by Anonymous Coward on Monday April 27 2020, @01:21AM (#987423)

      While we are on the subject of causing problems ...

      Have you read The Protocols of the Learned Elders of Zion?

  • (Score: 1, Funny) by Anonymous Coward on Monday April 27 2020, @01:13AM (1 child)

    by Anonymous Coward on Monday April 27 2020, @01:13AM (#987421)

    Covid-19 take out boomers and apple fanbois.

    It exposed all the incompetent corrupt politicians for what they are.

    And it let us see clear sky and breath clean air in decades.

    Covid-19: a blessing in disguise.

    Of course, that don't excuse the cockesucker CCP China, xi the poo.

    Fuck China. Taiwan numbah wan.

    • (Score: 0) by Anonymous Coward on Monday April 27 2020, @01:18AM

      by Anonymous Coward on Monday April 27 2020, @01:18AM (#987422)

      You're not in the Will.

(1)