- dotTech - http://dottech.org -

New Snapchat bug lets hackers crash your iPhone

Posted By Jeff Belanger On February 9, 2014 @ 10:53 AM In iOS | No Comments

snapchat [1]

According to a new report, Snapchat makes the iPhone vulnerable to denial of service attacks, essentially resulting in a crashed device.

The report, which was written by Jamie Sanchez [2], a cyber-security researcher, details how vulnerabilities within the recently popular app can allow hackers to launch a denial of service attack, which sends thousands of messages to a user and can cause their phone to crash.

“By reusing old tokens, hackers can send massive amounts of messages using powerful computers. This method could be used by spammers to send messages in mass quantities to numerous users, or it could be used to launch a cyber attack on specific individuals,” Sanchez said.

Sanchez also showed how it could be used, to the the Los Angeles Times, by sending one of their journalists a thousand messages in only a few seconds, and this froze the phone.

This marks yet another chapter in the ongoing saga of Snapchat and their security woes. Last year they were warned by Gibson Security that there were other vulnerabilities in their system. After being ignored Gibson Security released the details of Snapchat’s security weakness on Christmas and a week later the service was hacked and millions of user names and phone numbers were stolen.

“They warned Snapchat about issues — about the possible dump of database — and Snapchat didn’t care,” Sanchez said

When asked about this flaw in their security, Snapchat admitted that they were unaware of the problem. “We are interested in learning more and can be contacted at security@snapchat.com,” said a Snapchat spokeswoman via email.

In a weird twist, the only other action the company has taken was to ban Sanchez’ account.
[via The Los Angeles Times [3], MacRumors, [4] image via TaylaLyell1979’s flickr [5]]

Article printed from dotTech: http://dottech.org

URL to article: http://dottech.org/146763/new-snapchat-bug-lets-hackers-crash-your-iphone/

URLs in this post:

[1] Image: http://dottech.org/wp-content/uploads/2014/02/snapchat.jpg

[2] Jamie Sanchez: http://www.seguridadofensiva.com/

[3] The Los Angeles Times: http://www.latimes.com/business/technology/la-fi-tn-snapchat-shut-down-iphone-20140207,0,3127301.story#axzz2sqbuxnVe

[4] MacRumors,: http://www.macrumors.com/2014/02/07/snapchat-denial-of-service-vulnerability/

[5] TaylaLyell1979’s flickr: http://www.flickr.com/photos/taylalyell1979/11826214875/sizes/z/

© 2008-2012 dotTech.org | All content is the property of its rightful owner.