e-Sentinel Security Advisory - Ref: Session Hijacking iPhone

看板Bugtraq作者時間16年前 (2010/02/13 02:01), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串1/1
Tested on iPhone firmware version 3.1.2 Facebook App version 3.1.2 Impact It is possible to usurp valid session IDs in order to gain unauthorised access to facebook profiles. At greatest risk are those handset that have been jailbroken. Description Using known vulnerabilities and exploits to gain remote or direct access to the handset's file system, it is possible to steal the files: /private/var/mobile/Applications/<install directory>/Library/Preferences/com.facebook.Facebook.plist /private/var/mobile/Applications/<install directory>/Library/Cookies/Cookies.plist Once these files are copied and installed on to a separate handset, the attacker is able to use the victim's Facebook account unhindered. Exploit Known vulnerabilities exist in order to gain access to the iPhone's file system, after which no exploit code is required. Workaround/Fix No known fix is known. To lessen the risk of this occurring, users should avoid Jailbreaking their handsets.
文章代碼(AID): #1BTPTXy1 (Bugtraq)