This Week's Sponsor:

PowerPhotos

The Ultimate Toolbox for Photos on the Mac


New “antid0te” Jailbreak Hack to Bring ASLR to iOS Devices

While iOS devices are hardened with DEP (Data Execution Prevention) and application sandboxing to aid in preventing malicious code from touching running processes, you find it combination with ASLR (Address Space Layout Randomization) which makes it difficult for attackers to find where processes are located in the first place. ASLR isn’t currently implemented in iOS devices, but a German hacker has developed a new Jailbreaking method which may provide Jailbreakers with some additional peace of mind.

The Register reports that security consultant Stefan Esser of SektionEins will unveil the technique in Seoul, South Korea, during the Power of Community security conference on December 14. Last year’s Pwn2Own hacker contest made possible various exploits due to the lack of ASLR. Because addresses aren’t randomized, the same exploit can be used across iPhones.

While Jailbreaking itself doesn’t do security any favor by disabling aforementioned DEP and application sandboxing, Esser’s implementation of ASLR should provide additional security in preventing malicious payloads from executing on iOS devices. By reordering a file called dyld_shared_cache (which contains code that applications call upon to aid in various functions), Esser promises that his security implementation is stronger than what Apple provides in Snow Leopard, while also noting he’ll release a tool called antid0te that should simplify the install process for casual Jailbreakers.

[via The Register]

Access Extra Content and Perks

Founded in 2015, Club MacStories has delivered exclusive content every week for nearly a decade.

What started with weekly and monthly email newsletters has blossomed into a family of memberships designed every MacStories fan.

Learn more here and from our Club FAQs.

Club MacStories: Weekly and monthly newsletters via email and the web that are brimming with apps, tips, automation workflows, longform writing, early access to the MacStories Unwind podcast, periodic giveaways, and more;

Club MacStories+: Everything that Club MacStories offers, plus an active Discord community, advanced search and custom RSS features for exploring the Club’s entire back catalog, bonus columns, and dozens of app discounts;

Club Premier: All of the above and AppStories+, an extended version of our flagship podcast that’s delivered early, ad-free, and in high-bitrate audio.