<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://community.websense.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Websense Media Coverage : apple security</title><link>http://community.websense.com/blogs/websense-media-coverage/archive/tags/apple+security/default.aspx</link><description>Tags: apple security</description><dc:language>en</dc:language><generator>CommunityServer 2008.5 SP3 (Build: 66.8433)</generator><item><title>CIO: 4 Tips for keeping your iPhone and iPad safe</title><link>http://community.websense.com/blogs/websense-media-coverage/archive/2011/07/11/cio-4-tips-for-keeping-your-iphone-and-ipad-safe.aspx</link><pubDate>Mon, 11 Jul 2011 00:15:00 GMT</pubDate><guid isPermaLink="false">fce25e4e-8849-415b-9a49-b452c7b0e226:29215</guid><dc:creator>Talia James</dc:creator><slash:comments>0</slash:comments><description>&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;&lt;img style="border:0;float:left;margin:10px;" border="0" src="http://community.websense.com/resized-image.ashx/__size/550x0/__key/CommunityServer.Blogs.Components.WeblogFiles/websense-media-coverage/4353.CIO.bmp" width="188" height="111" alt="" /&gt;CIO just released an &lt;a href="http://www.cio.com/article/686031/iPhone_and_iPad_Security_4_Tips_to_Stay_Safe" target="_blank"&gt;article&lt;/a&gt; featuring Websense on best practices for securing your iPhone and iPad in light of the recent iOS vulnerability, Jailbreakme.com 3.0. &lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;Jailbreakme.com 3.0, operates by exploiting a vulnerability in the PDF reader. All users have to do to install the jailbreak is to click on an app-like button &amp;ndash; within a few seconds, their phones are opened up to apps outside of Apple&amp;rsquo;s approval.&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;Websense security research manager Stephan Chenette is featured in the article &amp;ndash;he argues that the danger lurking beneath this jailbreak is that a hacker could easily reverse engineer it to install malicious code through the browser or email attachment.&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;i style="mso-bidi-font-style:normal;"&gt;&lt;span style="font-size:small;"&gt;&lt;span style="font-family:Calibri;"&gt;&amp;ldquo;Then the attacker could gain full control of the iPhone, iPad or other iOS device and install everything from a keylogger to a full-blown bot&amp;hellip; This isn&amp;rsquo;t just limited to iPhones; iPad users need to be on the lookout, too.&amp;rdquo; &amp;ndash;Stephan Chenette, Websense Security Labs Research Manager&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;i style="mso-bidi-font-style:normal;"&gt;&lt;span style="font-size:small;"&gt;&lt;span style="font-family:Calibri;"&gt;&lt;img style="border:0;float:right;margin:10px;" border="0" src="http://community.websense.com/resized-image.ashx/__size/550x0/__key/CommunityServer.Blogs.Components.WeblogFiles/websense-media-coverage/1614.stephan.bmp" alt="" /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;Stephan&amp;rsquo;s four tips for iPhone and iPad users to stay safe are also highlighted in the article:&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;1. Don&amp;rsquo;t download files from suspicious or non-trustworthy websites.&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;2. Don&amp;rsquo;t click on links from unknown or untrusted Web sites or suspicious links from &lt;i&gt;trusted&lt;/i&gt; sources (including sites like Google Search).&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;3. Don&amp;rsquo;t open email attachments from unknown or suspicious emails from &lt;i&gt;trusted sources&lt;/i&gt;. Your friend&amp;#39;s email account may have been hacked.&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;4. As soon as Apple issues a patch, apply it! Many consumers don&amp;#39;t patch regularly or do so after it&amp;#39;s too late.&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;Read more about the latest iOS vulnerability at the Security Labs &lt;/span&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;&lt;a href="http://community.websense.com/blogs/securitylabs/archive/2010/08/04/jailbreakme-drivebys-limiting-potential-attacks.aspx?cmpid=prblog" target="_blank"&gt;blog&lt;/a&gt;&lt;/span&gt;&lt;span style="font-size:small;"&gt;&lt;span style="font-family:Calibri;"&gt;. &lt;span style="mso-spacerun:yes;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://community.websense.com/aggbug.aspx?PostID=29215" width="1" height="1"&gt;</description><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/Websense+Security+Labs/default.aspx">Websense Security Labs</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/iphone+security/default.aspx">iphone security</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/apple+security/default.aspx">apple security</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/iPad+security/default.aspx">iPad security</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/apple+vulnerability/default.aspx">apple vulnerability</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/Jailbreakme.com+3.0/default.aspx">Jailbreakme.com 3.0</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/iOS+vulnerability/default.aspx">iOS vulnerability</category></item><item><title>Reuters: Hackers reveal security bug in Apple iPad and iPhone software</title><link>http://community.websense.com/blogs/websense-media-coverage/archive/2011/07/07/reuters-hackers-reveal-security-bug-in-apple-ipad-and-iphone-software.aspx</link><pubDate>Wed, 06 Jul 2011 23:35:00 GMT</pubDate><guid isPermaLink="false">fce25e4e-8849-415b-9a49-b452c7b0e226:28144</guid><dc:creator>Talia James</dc:creator><slash:comments>0</slash:comments><description>&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;&lt;a href="http://community.websense.com/cfs-file.ashx/__key/CommunityServer.Blogs.Components.WeblogFiles/websense-media-coverage/6237.untitled.bmp"&gt;&lt;img style="border:0;float:left;margin:10px;" border="0" src="http://community.websense.com/resized-image.ashx/__size/550x0/__key/CommunityServer.Blogs.Components.WeblogFiles/websense-media-coverage/6237.untitled.bmp" width="281" height="104" alt="" /&gt;&lt;/a&gt;Today, &lt;/span&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;in a &lt;a href="http://www.reuters.com/article/2011/07/06/us-apple-hackers-idUSTRE76577420110706" target="_blank"&gt;Reuters article&lt;/a&gt;&lt;/span&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;, Websense Senior Security Research Manager Patrik Runald discusses how hackers have revealed a bug in Apple iOS software. The security flaw was discovered today when a popular jailbreaking site (www.jailbreakme.com) released code for Apple customers to modify their device&amp;rsquo;s operating system.&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;In the article, Runald warns that this code could be a major security downfall: cybercriminals could easily download the code, reverse engineer it to find a hole in iOS security and then quickly build malware in a matter of days. The creator of the jail-breaking code, Comex, agrees that the code would not be difficult to reverse engineer.&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;i style="mso-bidi-font-style:normal;"&gt;&lt;span style="font-size:small;"&gt;&lt;span style="font-family:Calibri;"&gt;&amp;quot;If you are a malicious attacker, it is fairly doable.&amp;rdquo; &amp;ndash;Patrik Runald, Senior Security Research Manager&lt;/span&gt;&lt;/span&gt;&lt;/i&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;Apple&amp;rsquo;s iOS software runs on the millions of iPhones, iPads, and iPod Touches sold around the world &amp;ndash; any security flaw to iOS holds the potential to create some major damage. Reuters quotes Runald warning that once the device is infected, hackers could do anything they want, including stealing passwords, documents and emails. &lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;Reuters reports that Apple is currently developing a software update to circumvent any potential threats.&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;In the meantime, learn how to protect your organization from mobile security threats &lt;/span&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;&lt;a href="http://www.websense.com/content/mobile-solutions.aspx/?cmpid=prblog" target="_blank"&gt;here&lt;/a&gt;&lt;/span&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;. &lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Calibri;font-size:small;"&gt;Read a Websense Security Labs&amp;trade; report on a past jailbreak-related security threat &lt;a href="http://community.websense.com/blogs/securitylabs/archive/2010/08/04/jailbreakme-drivebys-limiting-potential-attacks.aspx" target="_blank"&gt;here&lt;/a&gt;. &lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://community.websense.com/aggbug.aspx?PostID=28144" width="1" height="1"&gt;</description><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/Websense+Security+Labs/default.aspx">Websense Security Labs</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/websense/default.aspx">websense</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/mobile+security/default.aspx">mobile security</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/iphone+security/default.aspx">iphone security</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/apple+security/default.aspx">apple security</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/jailbreak/default.aspx">jailbreak</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/iPad+security/default.aspx">iPad security</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/Apple+malware/default.aspx">Apple malware</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/iPod+Touch+security/default.aspx">iPod Touch security</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/iOS+malware/default.aspx">iOS malware</category><category domain="http://community.websense.com/blogs/websense-media-coverage/archive/tags/jailbreaking/default.aspx">jailbreaking</category></item></channel></rss>