Skip to Main Content
PCMag editors select and review products independently. If you buy through affiliate links, we may earn commissions, which help support our testing.

iOS Update Prevents Snooping Via Remote Jailbreaks

Cyber-security researchers said an Israeli snooping company appears to have already exploited the flaw.

By Tom Brant
August 25, 2016
via Tony Fischer

Apple's latest security update for its iOS mobile operating system patches a serious flaw that allowed malware to spy on a user's phone calls and text messages, according to a human rights watchdog.

Citizen Lab, a Canadian research group that analyzes cyber security, published a report this week claiming that a prominent human rights activist received a text message from a "cyber war" company with a link to malware that would have jailbroken his iPhone and installed surveillance software.

The activist, Ahmed Mansoor, did not tap on the link, and instead forwarded it to Citizen Lab. Working with a US mobile security company, researchers there identified it as an exploit connected to NSO Group, an Israeli company best known for selling a government-exclusive "lawful intercept" spyware product called Pegasus.

Had Mansoor activated the malware, it would have remotely jailbroken Mansoor's iPhone and allowed NSO to use the camera and microphone to snoop on his activity, according to Citizen Lab. His WhatsApp and Viber calls would have been vulnerable, in addition to the location recorded by the phone's GPS.

Highlighting the rare nature of the exploit, Citizen Lab wrote in its report that "[w]e are not aware of any previous instance of an iPhone remote jailbreak used in the wild as part of a targeted attack campaign."

Recommended by Our Editors

Apple on Thursday released the latest version of iOS, 9.3.5, which it described as fixing issues identified by Citizen Lab. The update includes two improvements to how iOS devices access memory, as well as a patch that prevents visits to a "maliciously crafted website" from remotely executing arbitrary code.

Like What You're Reading?

Sign up for Fully Mobilized newsletter to get our top mobile tech stories delivered right to your inbox.

This newsletter may contain advertising, deals, or affiliate links. Subscribing to a newsletter indicates your consent to our Terms of Use and Privacy Policy. You may unsubscribe from the newsletters at any time.


Thanks for signing up!

Your subscription has been confirmed. Keep an eye on your inbox!

Sign up for other newsletters

TRENDING

About Tom Brant

Deputy Managing Editor

I’m the deputy managing editor of the hardware team at PCMag.com. Reading this during the day? Then you've caught me testing gear and editing reviews of laptops, desktop PCs, and tons of other personal tech. (Reading this at night? Then I’m probably dreaming about all those cool products.) I’ve covered the consumer tech world as an editor, reporter, and analyst since 2015.

I’ve evaluated the performance, value, and features of hundreds of personal tech devices and services, from laptops to Wi-Fi hotspots and everything in between. I’ve also covered the launches of dozens of groundbreaking technologies, from hyperloop test tracks in the desert to the latest silicon from Apple and Intel.

I've appeared on CBS News, in USA Today, and at many other outlets to offer analysis on breaking technology news.

Before I joined the tech-journalism ranks, I wrote on topics as diverse as Borneo's rain forests, Middle Eastern airlines, and Big Data's role in presidential elections. A graduate of Middlebury College, I also have a master's degree in journalism and French Studies from New York University.

Read Tom's full bio

Read the latest from Tom Brant