Feeds

Teen hacker re-unlocks Apple's iPhone

Gets firm with firmware

Remote control for virtualized desktops

A teen hacker known for his deftness with iPhones has figured out how to unlock models running the latest firmware versions by cracking a protection that has frustrated hackers for weeks.

The breakthrough by George Hotz, aka Geohot, means people who have bought a recent iPhone will once again be able to use it on the phone network of their choice. Apple makes as much as $400 for every handset that's activated on an approved network, so its developers have worked hard to prevent the so-called unlocking of iPhones.

Last year, 17-year-old Geohot was among the first group of hackers to break Apple's iron-fisted grasp on the iPhone, a coup that won him a Nissan 350Z and 3 8GB iPhones. Apple promptly responded by issuing updated firmware that stymied such efforts. Not only did the updates disable modified phones, effectively turning them into $400 bricks, they also prevented unlocking software from working in many cases. The arms race has persisted ever since.

The latest salvo was fired late last week, following a 24-hour hacking spree by Geohot that was broken up by only three hours of sleep. It turns out the latest firmware contained modifications to the device's memory registers to prevent unlocking. Geohot worked around those changes by finding another, much higher register that was vulnerable.

"I guess Apple thought big numbers were harder to guess," he wrote.

He then found a way to install his custom-built code by exploiting a flaw that allowed him to erase a range of memory addresses where security software is stored.

"The technique was not one that I was familiar with at all," said Kevin Finisterre, a researcher who has spent a fair amount of time dissecting Apple devices. "From the read it sounds as though the gentleman has made some significant progress. More importantly he is sharing."

This latest unlocking is no small accomplishment because iPhones are programmed to accept only approved SIM cards. Geohot's technique appears to work around this limitation by writing to certain sections of the firmware.

The hack is highly technical and by no means for the faint of heart. Those iPhone owners in need of more hand-holding should check out step-by-step instructions here from iClarified. ModMyiPhone also offers a tutorial here.

Several weeks ago, analysts at Bernstein Research estimated that 1 million iPhones, or a full 27 per cent of the handsets sold to date, are running on unauthorized networks. At that rate, Apple could lose $1bn in revenue over the next two years. Rest assured that developer drones in Cupertino are already laboring to circumvent this latest workaround. ®

Secure remote control for conventional and virtual desktops

More from The Register

next story
Webcam hacker pervs in MASS HOME INVASION
You thought you were all alone? Nope – change your password, says ICO
You really need to do some tech support for Aunty Agnes
Free anti-virus software, expires, stops updating and p0wns the world
Meet OneRNG: a fully-open entropy generator for a paranoid age
Kiwis to seek random investors for crowd-funded randomiser
USB coding anarchy: Consider all sticks licked
Thumb drive design ruled by almighty buck
Attack reveals 81 percent of Tor users but admins call for calm
Cisco Netflow a handy tool for cheapskate attackers
Privacy bods offer GOV SPY VICTIMS a FREE SPYWARE SNIFFER
Looks for gov malware that evades most antivirus
Patch NOW! Microsoft slings emergency bug fix at Windows admins
Vulnerability promotes lusers to domain overlords ... oops
prev story

Whitepapers

Why cloud backup?
Combining the latest advancements in disk-based backup with secure, integrated, cloud technologies offer organizations fast and assured recovery of their critical enterprise data.
A strategic approach to identity relationship management
ForgeRock commissioned Forrester to evaluate companies’ IAM practices and requirements when it comes to customer-facing scenarios versus employee-facing ones.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Simplify SSL certificate management across the enterprise
Simple steps to take control of SSL across the enterprise, and recommendations for a management platform for full visibility and single-point of control for these Certificates.
Intelligent flash storage arrays
Tegile Intelligent Storage Arrays with IntelliFlash helps IT boost storage utilization and effciency while delivering unmatched storage savings and performance.