Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

That will always remain an issue: Even if someone manages to create a secure app, the software and hardware platform will never be secure.

Hijacking a smartphone by only knowing its number on the other hand does not seem realistic too me. So a source for this claim would be great …



It seems realistic to me. Just send a phishing SMS ("Your bill of $103.54 is due TODAY: http://payments-comcast.net/83954583"), hope the user clicks it, have the webpage exploit one of the numerous iOS Safari vulnerabilities, and you are done. There are tons of vulnerabilities in smartphone browsers: iOS 7.1.2 alone fixed 28 UNIQUE VULNERABILITIES in Webkit (http://support.apple.com/kb/HT6297) 7.1.2 was released merely 2 months after 7.1.1, so at least 3 vulnerabilities are discovered and fixed every week.



I don't doubt the existence of the company, I doubt the hijacking capabilities …




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: