Jump to content

Strange iPhone behaviour


Findthepin1

Recommended Posts

My iPhone has been acting strange as of late. I received a text from a friend that they had no recollection of sending. Later my iPhone sent the same text to someone else while supposedly turned off. Safari has been crashing randomly since I got the text and the phone is draining more power than it should.

The text was as follows:

effective.

Power

Ù„ÙÂÙ„ÙÂصّبÙÂÙ„ÙÂلصّبÙÂررً ॣ ॣh ॣ ॣ

冗

I am using an iPhone 5 with iOS 7.1.2 and/or version 11D257. Is this iPhone activity a virus?

Link to comment
Share on other sites

The text message is one that can cause your phone to reboot after receiving and/or sending it due to a glitch in iOS unicode handling. The glitch shouldn't cause long-term issues or cause your phone to send the message itself, so it seems you have a virus set up to exploit it.

Link to comment
Share on other sites

The text message is one that can cause your phone to reboot after receiving and/or sending it due to a glitch in iOS unicode handling. The glitch shouldn't cause long-term issues or cause your phone to send the message itself, so it seems you have a virus set up to exploit it.

A small part of that text message is the issue, but it is very possible that the rest of it could have dirty code. The "ل ॣ ॣ" is said to be the only code needed, so why the rest? Unless it actually is an assembly command and is using the crash to gain higher permissions.

Remember, overflow attacks are the strongest tool in a virus maker's arsenal.

Link to comment
Share on other sites

That whole message up there is the one that went viral, if it lead to these kind of issues on it's own it'd be well documented.

"Many Eyes" has been disproved a million times over. People have determined that it causes a crash, and they've determined that the key factor in causing the crash is a particular string in the unicode. They did NOT verify it was not malicious code. The problem is, "Many Eyes" is false security because it really is about removing the necessity for you to act securely from the picture. You believe that there are "Many Eyes" checking something and thus you don't check it, you put faith in others and then we go from "Many Eyes" to "few eyes".... even on the whole "Many Eyes" being done as intended, you assume people actually are verifying in a rigorous manner, especially with the use of a debugger. The underhanded C contest is enough to show how "Many Eyes" are easily blinded.

The only testing being done is to discover how it worked, not what else it did. Apple wouldn't be one to admit they had a virus when they can cover it up and save face in PR; the people figuring it out don't even describe using a professional environment and are throwing mud and seeing what sticks.

I say again, overflows are extremely powerful tools in a virus maker's arsenal. Yes the overflow caused the crash, but did it cause anything else?

Edited by Fel
Link to comment
Share on other sites

What I mean is that nobody else is reporting the subsequent battery issues or the message being sent on, at least in large enough numbers to show up in the first few pages of Google.

It could be a sleeper that just activated; or only fully work under a unique set of conditions.

These things really are more dangerous than people treat them.

Link to comment
Share on other sites

There were several articles on this a few weeks back which fully documented what was happening and why, it's entirely due to the way unicode was being handled and nothing more... people have been sending it out all over the place in light of playing jokes on friends. Go further back in Google and you will find the articles - this is actually old news.

Link to comment
Share on other sites

This thread is quite old. Please consider starting a new thread rather than reviving this one.

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...