Providing Free and Editor Tested Downloads

< HOME | MAC | GEEK - WEAR | SHOPPING | SUPPORT FORUM | TOP DOWNLOADS | >
MajorGeeks.com - You want the Geek? You can't handle the Geek!

Admin Tools
All In One
Android
Anti-Spyware
Anti-Virus
Appearance
Back Up
Benchmarking
Bios
Browsers
CD\DVD\Blu-Ray
Covert Ops
Data Recovery
Diagnostics
Drive Cleaners
Drive Utilities
Driver Tools
Drivers
Ergonomics
Firewalls
Game Tweaks
Graphics
Input Device
Internet Tools
Mail Utilities
Memory
Messaging
Microsoft
Misc
Monitoring
Multimedia
Networking
Office Tools
ProcessManagement
Processor
Registry
Security
System Info
Toys
Video
Macintosh
Games
News Archive
- Off Base
- Way Off Base


· DomainHostingView 1.48
· CurrPorts 2.09
· Dropbox 2.0.16
· Tonido 4.67.0.23804
· Sleipnir for Windows 4.1.2.0
· Malwarebytes Secure Backup 1.0.0.0010
· Skitch 2.1.0.16
· Fiddler 2.4.4.3
· Wise Program Uninstaller 1.37
· Chasys Draw IES 4.06.02

There are currently 2649 user(s) online:
Google, Live Search, Yahoo

YouTube

FaceBook

Twitter

RSS / XML Feed

Pintrest



Follow @majorgeeks
· Google · Yahoo · MSN


1. K-Lite Codec Pack Update
2. IObit SmartDefrag
3. Malwarebytes Anti-Malware
4. Win7codecs
5. IObit Malware Fighter
6. SpywareBlaster
7. Windows 8 Codecs
8. x64 Components
9. JetClean
10. Start Menu 8
More >>


· New? Start Here
· Top Freeware Picks
· Malware Removal
· Compatibility Database
· Geektionary
· Geek Shopping
· Free Magazines
· Useful Links
· Top Freeware Picks
· Folding@Home
· About Us
· Copyright
· Privacy
· Terms Of Service
· Uninstall


MajorGeeks.com » News » September 2012 » Hacker group releases one million Apple UDIDs.

Hacker group releases one million Apple UDIDs.


Posted on: 09/04/2012 04:55 PM [ Comments ]


The loose collective of hacktivists operating under the name AntiSec has released a file of over one million Apple UDIDs. It claims that this is part of a haul of 12 million records of both UDIDs and personal information taken from an FBI agent's laptop. The group announced the release on its @anonymousirc Twitter account.

The list is said to have come from an FBI employee's laptop which was compromised in March using a Java "AtomicReferenceArray" vulnerability; this allowed the hackers to place a shell on the device allowing them to explore its contents. They discovered a file on the Desktop "NCFTA_iOS_devices_intel.csv" which contained a list of 12.3 million Apple iOS devices. There did not appear to be any other references on the laptop to the list or any information which would explain its presence.

Details of the information dump were placed on Pastebin where AntiSec says a number of the records in the original data contained zip codes, full names, addresses and cell numbers, while others contained none. However, they decided to trim the information down to the Apple Device's unique device identifier (UDID), APNS (Apple Push Notification Service) tokens for accessing the notification service, the device's name (e.g. "John Doe's iPhone") and device type (e.g. "iPad").

App developers and ad networks had previously used UDIDs to identify individual users in order to customize their app experience. Games networks also used the identifiers to simplify connecting users. But in September 2011, a security researcher succeeded in using the UDID to log into a variety of those networks and obtain information such as user name, friends, Facebook/Twitter IDs, location or email address.

Apple warned developers a year ago to not use the UDID as a personal identifier and to find alternative ways of uniquely identifying users. Since March 2012, Apple has been rejecting submissions of Apps to the iTunes App Store that make use of UDIDs and will be rolling out a new user tracking scheme based around two types of identifiers – one for app developers and one specifically for advertisers. In contrast with the UDID, both can be regenerated as needed by the user.

Fixed device IDs have always been considered "a really bad idea", said AntiSec, who suspect that the FBI uses such a list for monitoring. How the FBI came into possession of this UDID list is currently unclear though. The "NCFTA" part of the file name could indicate that the file came from the National Cyber Forensics & Training Alliance, but again, how that organisation would have obtained it is not known. Apple has sold some 400 million iOS devices since 2007 and has yet to make a statement on the publication of the dataset.








Like it? Share it....




Comments
comments powered by Disqus

« Google suspicious sign-in alert contains a trojan · Hacker group releases one million Apple UDIDs. · Windows Server 2012 Trial (180 Days) »

MajorGeeks.com » News » September 2012 » Hacker group releases one million Apple UDIDs.
© 2000-2013 MajorGeeks.com
Powered by Contentteller® Business Edition