Researchers Uncover Serious iPhone Security Hole

LOS ANGELES — This year's Black Hat Conference revealed a new and alarming possible hack that might have the power to compromise every iPhone on Earth.

That assessment may sound extreme, but researchers Charlie Miller and Collin Mulliner said it's no joke. According to the two security experts, a vulnerability in the iPhone's SMS, or text-messaging, utility could be used to take control of the entire device.

Apple has released a security update for the hack at Apple.com.

The hack works like this: An attacker would send a series of invisible SMS messages to a device. Eventually, the attacker would have control of the device and the ability to dial numbers, take pictures, record sound or surf websites. In addition, the attacker could send out other malicious SMS bursts from a compromised phone to other phones.

"This is serious," Miller said. "The only thing you can do to prevent it is turn off your phone. Someone could pretty quickly take over every iPhone in the world with this."

Tech analyst Iria of Huliq.com dismissed that assessment, noting that in order for a hacker to take control of every iPhone in the world, the hacker would have to know enough phone numbers to do it. All the same, Iria conceded that the vulnerability was for real.

"It is obviously very serious, and despite the researchers sharing their results with Apple over a month ago, there has been no movement on a fix as of yet," Iria said.

Miller and Mulliner said that the only sign that a phone is under attack is a text message that displays a single, square character. If someone receives that message, they should turn off their iPhone.

Related:  

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Pearl Industry Network Launches 'TrustLink' Verification Platform for Creators

Trade group Pearl Industry Network (PiN) has launched TrustLink, its free verification platform for creators.

FSC Updates Complaint in Tennessee AV Case, AG Motions to Dismiss

The Free Speech Coalition this week filed an amended complaint in its lawsuit challenging the Protect Tennessee Minors Act as unconstitutional, in response to which the Tennessee attorney general motioned for dismissal of the case.

Cherie DeVille Joins Woodhull Freedom Foundation 'Free Speech' Panel

Multi-XMAs winner Cherie DeVille will join the upcoming Woodhull Freedom Foundation panel series "Fact Checked by Woodhull," addressing free speech on Feb. 26.

Wisconsin AV Bill Moves Ahead, Minus Anti-VPN Provisions

The Wisconsin state Senate on Wednesday advanced a bill that would require adult websites to verify the ages of users, but approved an amendment striking proposed language that would have required sites to block virtual private network traffic.

Pineapple Support Introduces 'Wellbeing by PS' Service

Pineapple Support has debuted its new Wellbeing by PS service, providing mental health support packages for companies and agencies.

MyMember.site Integrates Bluesky Functionality

MyMember.site has added Bluesky features to its website management platform.

GirlsDoPorn Defendants Ordered to Pay Victims $75.5 Million

A federal court has ordered former GirlsDoPorn owner Michael Pratt and his co-defendants in the GDP sex trafficking case to pay restitution totaling $75,568,283.47 to 106 victims.

SWR Data Publishes 'Clip Trend' Report

Adult industry market research firm SWR Data has published a report on clip platform performance and sales.

Another German Court Rejects Blocking Orders Against Pornhub, YouPorn

A German court has blocked the Rhineland-Palatinate Media Authority (MA RLP) from forcing telecom providers based within the court’s jurisdiction to cut off access to Aylo-owned adult sites Pornhub and YouPorn.

Ofcom Fines Kick Online Entertainment $1 Million for AV Noncompliance

U.K. media regulator Ofcom on Thursday fined Kick Online Entertainment 800,000 pounds (more than $1 million) for failing to implement age checks as required for compliance with the Online Safety Act.

Show More