Security flaw in QuickTime & iTunes ?

I just read that article:
http://www.betanews.com/article/iTunesQuickTime_FlawsDetailed/1135265943

No.
It's a heads up.
Until today I hadn't realised just how simple it is to recover the information from the iTunes account from a lost phone. I've certainly set the lock on my phone now, but realisticly, the overwhelming majority of people do not lock their phones. If you are in business or in the media, you tend to be more savy than the average user, and more conscious of such things.
People tend to lock their homes. People tend to not write their pin numbers on the backs of their credit cards. People do not tend to software lock their phones. In the past year or so I have found maybe half a dozen phones left on tables in restaurants, on seats on trains, at counters in shops etc. None of them particularly good examples of leading technology, but also none of them locked.
Personally, regardless of the software lock, I would feel safer if my iPhone did not display my account name in the Settings table in the first instance. Then at least I could phone Apple and ask them if I can change my Apple ID to something elso and know that the information was not present on my handset. Sure, it might still be hackable, but at least it wouldn't be displayed to anyone without the technical knowhow to search and recover data from the phone's flash memory.

Similar Messages

  • ITunes update fixes security flaw

    I don't usually rush to update iTunes since I have an "ancient" iPod that only plays music. When Software Update showed a new iTunes update I just ignored it. Then I read an article on pcmag.com saying that there was an important security update in the iTunes 7.4 update. In case you haven't seen it, it's at: http://blogs.pcmag.com/securitywatch/2007/09/bigsecret_itunespatch.php
    Apple outlines the security issue at: http://docs.info.apple.com/article.html?artnum=306404
    I'm posting this for anyone who is interested and maybe, like me, hasn't bothered to update.

    I've had no Logic issues after taking most recent iTunes and ProApps updates.
    But ... (for those who care)
    If you take the iTunes update, ProTools 7.3 will not boot.
    If you take the most recent Pro Apps Update (I think it was targeted to Final Cut users) Pro Tools 7.3 won't boot up either.
    However .... If you take both updates, ProTools 7.3 runs just fine regardless of the warnings on Digidesign's site. At least on my system.
    Cheers
    Dee

  • Can't get a secure connection to the iTunes store

    Hey, been trying to connect to iTunes store for 4 months now. It used to work on my computer but now it says there's a problem getting a secure connection to the iTunes store. Its not the firewall or the network. Have tried: removing AVG, flushing dns, emailing apple, updating iTunes, uninstalling and reinstalling iTunes, changing to a new wireless network, but nothing worked. Have looked at all the pages of possible errors for windows but can't find anything that works.
    Any ideas? My computer used to have Norton 360 on it but it was deleted. Could there possibly be some files remaining that are preventing a connection to the iTunes store?
    Here's the error message part..
    Firewall Information
    Windows Firewall is on.
    iTunes is enabled in Windows Firewall.
    Connection attempt to Apple web site was unsuccessful.
    The network connection timed out.
    Connection attempt to iTunes Store was unsuccessful.
    The network connection timed out.
    Secure connection attempt to iTunes Store was unsuccessful.
    An unknown error occurred (-28).
    Secure connection attempt to iPhone activation server unsuccessful.
    An unknown error occurred (-28).
    Last successful store access was 2009-03-22 00:06:15.

    here is the full message
    Microsoft Windows Vista Home Premium Edition Service Pack 1 (Build 6001)
    Sony Corporation VGN-SZ71E_B
    iTunes 8.2.0.23
    QuickTime 7.6.2
    FairPlay 1.4.10
    iPod Updater Library 8.1d19
    CD Driver 2.1.0.1
    CD Driver DLL 2.1.1.1
    Apple Mobile Device 2.5.1.3
    Apple Mobile Device Driver not found.
    Bonjour 1.0.6.2 (118.5)
    iTunes Serial Number 7ED07C9C624D1BE5
    Current user is not an administrator.
    The current local date and time is 2009-07-05 18:27:05.
    iTunes is not running in safe mode.
    Video Display Information
    NVIDIA, NVIDIA GeForce 8400M GS
    Intel Corporation, Mobile Intel(R) 965 Express Chipset Family
    Intel Corporation, Mobile Intel(R) 965 Express Chipset Family
    ** External Plug-ins Information **
    No external plug-ins installed.
    ** Network Connectivity Tests **
    Network Adapter Information
    Adapter Name: {A89A4327-224A-4BC2-A822-9B166AD2E714}
    Description: Intel(R) Wireless WiFi Link 4965AGN
    IP Address: 192.168.1.102
    Subnet Mask: 255.255.255.0
    Default Gateway: 192.168.1.1
    DHCP Enabled: Yes
    DHCP Server: 192.168.1.1
    Lease Obtained: Sun Jul 05 18:14:25 2009
    Lease Expires: Mon Jul 06 18:14:25 2009
    DNS Servers: 194.168.4.100
    194.168.4.100
    194.168.8.100
    Adapter Name: {5D4BDCCA-89C5-4C89-8547-1AAF8A41C56E}
    Description: Bluetooth Device (Personal Area Network)
    IP Address: 0.0.0.0
    Subnet Mask: 0.0.0.0
    Default Gateway: 0.0.0.0
    DHCP Enabled: Yes
    DHCP Server:
    Lease Obtained: Thu Jan 01 00:00:00 1970
    Lease Expires: Thu Jan 01 00:00:00 1970
    DNS Servers:
    Adapter Name: {687A0F17-3DBF-4EDA-8008-7FEA39063F42}
    Description: Marvell Yukon 88E8055 PCI-E Gigabit Ethernet Controller
    IP Address: 0.0.0.0
    Subnet Mask: 0.0.0.0
    Default Gateway: 0.0.0.0
    DHCP Enabled: Yes
    DHCP Server:
    Lease Obtained: Thu Jan 01 00:00:00 1970
    Lease Expires: Thu Jan 01 00:00:00 1970
    DNS Servers:
    Active Connection: LAN Connection
    Connected: Yes
    Online: Yes
    Using Modem: No
    Using LAN: Yes
    Using Proxy: Yes
    HTTP Proxy: 137.73.37.85:80
    SSL 3.0 Support: Enabled
    TLS 1.0 Support: Enabled
    Firewall Information
    Windows Firewall is on.
    iTunes is enabled in Windows Firewall.
    Connection attempt to Apple web site was unsuccessful.
    The network connection timed out.
    Connection attempt to iTunes Store was unsuccessful.
    An unknown error occurred (-28).
    Secure connection attempt to iTunes Store was unsuccessful.
    An unknown error occurred (-28).
    Secure connection attempt to iPhone activation server unsuccessful.
    An unknown error occurred (-28).
    Last successful store access was 2009-03-22 00:06:15.

  • Security Flaw - Push apps opens the home screen on sleep?

    I'm sure this is a security flaw. I have my iPhone on the sleep mode. I pressed the sleep button and placed it in my pants. So no way I'm pressing the button and sliding the finger to unlock.
    After playing Words with Friends as one of the apps in question, I press the lock button. Seconds later my iPhone goes directly to home with an alert. No lock screen at all. I get the alert that says my friend made a move on the scrabble board.
    Anyone know of any other apps that have this security flaw?

    One more thing before you take it back to the store - try a restore. You will do this from within iTunes. Since you really don't have app data to concern yourself with, do a "restore as new". This will wipe it clean and reinstall the firmware. You can then sync to add everything back to it.

  • How to load quicktime&itunes on windows 7 64 bit?

    How do I download quicktime  & itunes on windows 7, 64 bit? My computer doesn't want to except them.

    Do you get an error message when you try to install them, plane? If so, what does it say? (Precise text, please.)

  • Quicktime/iTunes prob

    i've downloaded and installed itunes with quicktime for my iPod on WinXP. i've done this AGAIN because my quicktime icon in quiklaunch disappears. or rather becomes 'generic'. same in start/programs. like the target of the exe is missing. (thought it's not). reinstalled. no joy. can anyone help? launching quicktime also makes errors popup often. and quiktime crashes. can i do something to COMPLETELY uninstall/reinstall quicktime?
    p.s. specifically pressing UPDATE makes quicktime crash.
    p.p.s. my sys is a 2.4GHz core two duo DELL with 8800GTX video and 2Gb RAM (an ok sys and quicktime ran before quite well.)

    i found how to fix this problem! listen:
    i searched on the internet and found that the part of my problem that includes the crash on updating quicktime could be solved by checking the Safe Mode GDI only box in preferences - quicktime preferences. so i took it one step further. seeing as this looks very much like a graphics issue (the crash on update and the icons' strange appearance and lack thereof) i thought of something.
    I UNINSTALLED MY nVidia nTune program/control panel. after that i reinstalled quicktime/iTunes anyway (although i probably didn't need to) and everything fell into place!
    since i have the 8800GTX video card i downloaded nTune but really it wasn't something i used - so why keep it? [though i don't use quicktime either, but it was nice to at least solve this issue.]
    Message was edited by: Crawlerz

  • I have the latest version of free Quicktime, Itunes  and unable to view video on my PC all i get is a pink screen the audio is OK i have uninstalled and installed several times same problem, i have a Iphone 4 and unable to view the content.

    i have the latest version of free Quicktime, Itunes  and unable to view video on my PC all i get is a pink screen the audio is OK i have uninstalled and installed several times same problem, i have a Iphone 4 and unable to view the content.

    Open your QuickTime control panel (either via the Control panels, or by going "Edit > Preferences > QuickTime Preferences" in the Quicktime Player). In the Advanced tab, uncheck Enable Direct3D video acceleration:
    ... and click OK. Quit and restart the QuickTime Player prior to checking to see if the settings change has had any effect.

  • My i pad is not responding. I have a security copy in my iTunes. But my iTunes is not updated

    My i pad is not responding. I have a security copy in my iTunes. But my iTunes is not updated. Will i lose my Security copy?

    I have an iPad 1 as well that I updated when the iOS was first released a few weeks ago and I think that the new update really sparked my iPad into "new life" again. It's so hard to tell what will happen when you update - ideally the performance of the device should improve - and not fall off.
    Have you tried closing any/all open/running apps in the recents tray? Close them all and restart - see what happens.
    Go to the home screen first by tapping the home button. Quit/close open apps by double tapping the home button and the task bar will appear with all of you recent/open apps displayed at the bottom. Tap and hold down on any app icon until it begins to wiggle. Tap the minus sign in the upper left corner to close the apps. Restart the iPad. Restart the iPad by holding down on the sleep button until the red slider appears and then slide to shut off. To power up hold the sleep button until the Apple logo appears and let go of the button.

  • I need help with quicktime/itunes it wint run

    Every SINGLE time I try to download itunes it says I need quick time. So i go back and try to download quicktime first and its telling me I cant because I need quicktime. I try to download quicktime& itunes at the same time but it still shows that i need quick time and i cant complete the download.In addition when its installing i gets to removing some kind of quicktime files under status and thats when it says it failed.
    and i tried doing this....
    Quicktime has fragmented itself and wont work it happens to me a lot!
    Here are the steps to fixing your Quicktime..
    1) restart your computer
    2) when the computer boots press the f12 key
    3) there will be a few options choose "safe mode" and press enter
    4) now it'll go on to your desktop SAFE MODE IS VERY RISKY it may look like your cpu's graphics have changed but it's not
    5)go to "my computer" and go to "program files"
    6)scroll down to the quicktime folder and delete from your computer that way. (dont forget to empty your recycle bin before you restart)
    7)restart the computer and reinstall Quicktime
    There you have it you fixed quicktime!
    But that didnt work either so now im still stuck,ive tried over and over to delete it out of my computer(the addd and remove programs thing) but every thime i did that and reinstalled it then tried to use it the program gave me an error report! You know the kind that says the whole "send or "don't send" thing. Big problem please help!

    www.pabsungenis.livejournal.com/94683.html Use it and follow EACH DIRECTION. it should work.

  • HT201303 How do you change your security questions for your iTunes accout?

    How can I change my security questions for my iTunes account?

    Frequently asked questions about Apple ID - http://support.apple.com/kb/HE37 --> Can I change the answers to the security questions for my Apple ID?  --> Yes. You can change the answers to the security questions provided when you originally signed up for your Apple ID. Go to My Apple ID (http://appleid.apple.com/) and click Manage your account.
    Forgotten security questions - https://discussions.apple.com/message/18402551  and https://discussions.apple.com/message/18625296
    More involved forgotten question issues - https://discussions.apple.com/thread/3961813

  • Acrobat 9.2.0 Update Breaks Text Box Tool, Possibly Introduces a New Security Flaw.

    Anyone have any ideas for this one?
    Once we upgraded to version 9.2.0 (This is a major security release that fixes a Javascript security flaw) our text box tool no longer works the way we want it and crashes the program.
    Try this:
    1. Open any PDF document on a  Windows XP SP3 computer with Adobe Acrobat 9.2.0.
    2. Add the 'Text Box Tool'  to the toolbar by right-clicking the toolbar and selecting 'MoreTools' then placing a checkbox next to the 'Text Box Tool'.
    3. Click the 'Text Box Tool' on the toolbar and draw a new textbox anywhere on the PDF document.
    4. Click out of the textbox to cancel typing mode, then single click back on the textbox that you just created.
    5. Right-click the textbox that you created and select 'Properties..."
    6. Under the 'Appearance' tab,
    a. Select Style: No Border
    b. Select Fill Color: No Color
    c. Check the box 'Make Properties Default'
    d. Click OK.
    7. Click the Text Box Tool again, and draw another textbox (Since there is no border you will not see it but you will still be drawing a textbox).
    8. Let go of the mouse when you are done drawing your textbox rectangle and the program will crash at this point.
    Results:
    1. "An internal error occurred." dialog box is displayed.
    2. After clicking ok the following "Microsoft Visual C++ Runtime Library" dialog box is displayed:
    "Runtime Error!
    Program: C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat.exe
    R6025
    - pure virtual function call
    3. After clicking ok another dialog box is displayed:
    Error signature
    AppName: acrobat.exe AppVer: 9.2.0.124 ModName: acrobat.dll Offset: 000509dd
    4. The same error has occurred on all five computers that we tested the new version on.
    Expected results: A new textbox is created and you may start typing in text (This was the behavior in version 9.1.3).
    Additional Information
    At times, we need to add information to PDF files (i.e missing dates, etc). We have always used the Text Box Tool to do this with no border, and with no fill color as this is the EASIEST and FASTEST way to add information to PDF files in a precise manner. We want the fill color to be transparent so that we can fit text in between and exactly on lines easier, and so that there is not a solid background box behind the text. We want no border because a border around text that needs to go on a line looks stupid. Up until version 9.2 this procedure worked fine. Now, the program will crash. Perhaps this even adds another security vulnerability if the crash could be exploited. We want to maintain security by patching Adobe to address the JavaScript vulnerability that was addressed in version 9.2.0, however, we are not able to update our users as the new version breaks the fundamental purpose that we use Adobe Acrobat for. We are stuck with the vulnerable version 9.1.3 until this problem is addressed. Disabling JavaScript is not an option either, as we use a Java plug-in on a daily basis.
    Any thoughts would be great, I have attached screenshots of the errors.

    The question still is not answered.
    The problem continues in Acrobat 8.1.7 for Windows, even after updating toAcrobat  8.2.0. ( I can't comment on whether recent updates to Acrobat 9 fix the problem in Acrobat 9.)
    The internal error after text insertion problem occurs even with PDF documents created in Acrobat 8, i.e., not only old versions of PDF files. We have the text box insertion icon in the toolbar, and the properties set to "no color" for the box and "0" width for the text box lines, as other commentators have noted.
    The problem did not exist when Acrobat 8 Pro was installed, it was introduced by one of the updaters.
    The main reason we use Acrobat, rather than much cheaper PDF-creation software, is to annotate PDF files (including inputting data into spaces in standard forms).
    So justify the high price of Acrobat and fix the problem please, Adobe !

  • Security flaw-To use CSOM/Javascript code for Custom Office365(Sharepoint Online) application

    Hi,
    I've developed custom application in Office365(Sharepoint Online) using CSOM/Javascript. Security team from client side has been reported one major issue to the our application that any end user can comment our CSOM/Javascript code and bypass the validation
     or can update / insert into sharepoint list item using developer tool/ Console in Google Chrome(F12 Key).
    Also end user can write his own separate code in console of Google Chrome (Developer Tool / F12) and can update / insert  into Sharepoint List.
    Note:- End user has Add, Edit, View permission on all Sharepoint List.
    This is one major security flaw of the Sharepoint/Office365 to use CSOM /Javascript for writing code, to overcome this issue could you please provide me some solution.
    Your help would be greatly appreciated!!!  
    Looking for reply.
    Thanks,
    Mahesh Sherkar
    Web: http://Mahesh-Sherkar.com
    Email: [email protected]

    Hello Paras, 
    Did you get any solution for this? I think your website was implemented this form. Can you please tell me the way how I can achieve it? I am also facing same problem. Please reply me as early as possible.
    Thanks,
    Mihir

  • Security Flaw: Since upgrading to iOS 8.3, I can by-pass passcode security by simply hitting RETURN on my bluetooth keyboard

    I noticed when I typed my passcode incorrectly on my Logitech Fabric Skin Keyboard Folio, the iPad allowed me to log in.  I checked again, but this time by just hitting RETURN key without entering any passcode, and again it allowed me to log in.
    If I disconnect the keyboard, and use the soft keyboard on the iPad itself, it only allows the correct passcode.
    Has anybody else seen this security flaw?
    iPad Air
    iOS 8.3

    Please describe the problem in as much relevant detail as possible. The "etrecheck" fad hasn't made that step any less necessary. The better your description, the better the chance of a solution.
    For example, if the computer is slow, which specific actions are slow? Is it slow all the time, or only sometimes? What other changes did you make, if any, just before it became slow? Have you seen any alerts or error messages? Have you done anything to try to fix it? Most importantly, do you have a current backup of all data? If the answer to the last question is "no," back up now. Ask if you need guidance. Do nothing else until you have a backup.

  • How do I reset the answers to my security questions on my iTunes account if I do not remember the answers to them?

    How do I reset my security questions on my iTunes account if I do not remember the answers to them?

    Click here for information. If you can't reset them through the method described in that article or by sending yourself a rescue email(the email may take a few hours to arrive), contact the iTunes Store staff via the link in the 'Additional Information' section.
    It isn't possible to create a rescue email address without correctly answering two of the questions. Nobody on these boards can reset them for you.
    (94839)

  • Hello, can't get my mac to upgrade to latest versions of quicktime, itunes or any other os

    Hello, can't get my mac to upgrade to latest versions of quicktime, itunes or any other os

    The latest OS that you can run is 10.5.8. That is as far as Power Mac machines can go.
    The latest Quicktime, iTunes, etc., must be both OS X 10.5.8 AND Power Mac (PPC) compatible.
    This is the last OS update for your machine:
    http://support.apple.com/kb/DL866
    iTunes 10.6.3 requires OS X 10.5.8 and is the last update for iTunes on a PPC machine:
    https://support.apple.com/kb/DL1575
    Quicktime:
    http://support.apple.com/kb/DL761

Maybe you are looking for

  • Bbm does not work with sim card on wifi

    Hello, All. 2 days ago BBM stopped working  on wi-fi. I removed my sim-card and BBM is OK. I can use it as it was earlier. But when I retern the sim-card it stopped working again. Experts, what can it be? Solved! Go to Solution.

  • Mail server issues after upgrading

    Hello, After upgrading my iMac to Mountain Lion 3 of our 5 email account are not working. The 5 accounts are [email protected] However 3 of them are not able to come online. I tried MANY times to delete them and recreate them coming ALWAYS to the sam

  • Unsupported image format after moving from one project to another

    I scanned several thousands of images to my Aperture library. Went thru all of them providing adjustments to many of them, keywords to all of them and adjust date/time to all of them. All of the pics were visible, format is jpeg. This is a managed li

  • Problems Syncing with TV

    I am attempting to use my TV as an external display to watch movies and such. I am using a DVI to HDMI cable for the connection. When I plug the cable into the laptop (MacBook Pro) it will start to sync up but then will continually switch between the

  • Invalid column name

    Hi, I facing a strange problem w.r.t a select * query on a table which is altered by adding a new column. The table alter & querying task are done using EJBs. I have traced the problem ResultSet.getxxx() method. When I call the ResultSet.getxxx() met