Researcher Uncovers Critical Flaw in Apple App Store and iTunes Invoice System

Apple’s App Store and iTunes invoicing system has a major security hole that can be exploited by hackers to remotely inject their own malicious code into the application-side of the vulnerable context function or service module, security researcher Benjamin Kunz Mejri from Vulnerability Lab revealed earlier this week (via ZDNet).

Screen Shot 2015-07-28 at 17.04.36

Since the iTunes and App Stores take the device cell name of buyers, attackers can exploit the security flaw by manipulating a name value by an exchange of malicious, scripted code. If the user purchases a product from these online stores, the backend takes the device value and encodes it with manipulated conditions and generates an invoice before sending it to the seller.

The security flaw received a CVSS (Common Vulnerability Scoring System) 5.68 rating out of 10 (10 being the most severe).

Exploitation of the persistent input validation and mail encoding web vulnerability requires a low privilege apple (appstore/icloud) account and low or medium user interaction. Successful exploitation of the vulnerability results in session hijacking, persistent phishing attacks, persistent redirect to external sources and persistent manipulation of affected or connected service module context, Mejri writes.

The researcher has published a proof-of-concept video (inserted below) and step-by-step instructions to exploit the flaw. Apple was notified on June 8.

Youtube video

Want to see more of our stories on Google?

Add iPhone in Canada as a Preferred Source on Google

P.S. Want to keep this site truly independent? Support us by buying us a beer, treating us to a coffee, or shopping through Amazon here. Links in this post are affiliate links, so we earn a tiny commission at no charge to you. Thanks for supporting independent Canadian media!

Subscribe
Notify of
guest
1 Comment
Oldest
Newest Most Voted
Chrome262
Chrome262
10 years ago

Don’t get it, if its a store that is not the app store then its dangerous, well duh

1
0
Would love your thoughts, please comment.x
()
x