NEWS
iOS 10.3 Fixes Flaw Used in Accidental DDoS Attack on 911 Call System
2524
2017-03-31
Posted by Reposted

Apple's latest iOS 10.3 release patches a flaw that can be used to repeatedly dial a phone number, accidentally exploited last year to redial 911 call centers, protecting emergency operators from potential cyberattacks.


iOS 10.3 Fixes Flaw Used in Accidental DDoS Attack on 911 Call System


As noted by The Wall Street Journal, the vulnerability was first discovered by an 18-year-old in Arizona who took advantage of a JavaScript flaw in a bid to collect a bug bounty last year. 


Last October, Meetkumar Hiteshbhai Desai, acting on a tip about a potential iOS flaw, wrote and shared code that caused target iPhones to continually dial 911 emergency call centers. After the code went live, the Surprise, Ariz., Police Department received more than 100 hang-up 911 calls within a few minutes, local publication AZ Central reported at the time. 


The Maricopa County Sheriff's Office traced the calls and discovered they originated from a link Desai posted to Twitter. Users who clicked the link would find their iPhone automatically dial emergency services. Due to the mass dissemination of the link, call volumes had the potential to shut down 911 services across Maricopa County, the Sheriff's Office said. 


Desai, when taken in for questioning, said the code was crafted to trigger pop-ups, open emails and dial phone numbers. The Twitter distribution was meant to be funny. He was also interested in proving the flaw could be exploited to collect a bug bounty from Apple.


In previous versions of iOS, users who clicked on a phone number linked to in apps like Twitter and Messages would automatically trigger a call. With iOS 10.3, Apple has instituted a secondary confirmation to alleviate the potential for erroneous dialing. The new feature also restricts nefarious users from using the exploit to conduct cyberattacks.


Source: appleinsider


Related Articles
iOS 10.3 Jailbreak / iOS 10.3.1 Jailbreak H3lix Jailbreak RC4 is Out with Fix for iOS 10.0.2 Apple Releases iOS 10.3Beta 5 for iPhone and iPad Apple Stops Signing iOS 10.2.1 & iOS 10.3 The State Of iOS 11 / 11.2 / 11.1.2 Jailbreak On iPhone And iPad Apple Releases Fifth iOS 10.3.3 + macOS 10.12.6 Betas iOS 11 Beta 1 vs iOS 10.3.2 Speed Test Apple Rolls Out iOS10.3 Beta, Brings Find AirPods Support to iPhone