![yaadein yaadein](https://media2.bollywoodhungama.in/wp-content/uploads/2016/03/Yaadein-2001.jpg)
Even native Hindi/English speakers find the tongue-twisters difficult to say quickly. Thanks are owed to Gregor Kopf of Recurity Labs and Paul Kehre of Spiderlabs for uncovering this exploit.Īnd i again come up with this crazy thought about tongue twisters.Ī tongue-twister is a sequence of words that is difficult to pronounce quickly and correctly. I’m happy to see Apple respond quickly to this issue. Trust needs to be verified at all levels of the chain. Basic Constraints has been used several times in the past to exploit weaknesses (Adobe Flash vulnerabilities) and to enhance malware (Stuxnet). The teller lets you do it because he/she trusts the manager to make the right decision. It’s like walking into a bank and telling the teller that the manager said it was ‘okay’ to go into the vault and rummage around. The SLL application trusts the original CA signature despite the fact it is 100% bogus. Basically, you grab any old CA-signed certificate and use it to sign your own falsified certificate. The Basic connstraints exploit takes advantage of the poor logic design of trusted security certificate chains to access the secure network traffic. Sophos is advising you don’t use these devices for any purpose that requires security. This makes your device perpetually vulnerable to this type of attack. However, if you have an iPod Touch (first or second generation) or an iPhone older than the 3GS, you won’t be able to upgrade to the newest version of iOS with the fix.
Yaadein update#
Apple has addressed this security concern with iOS update 4.3.5.
![yaadein yaadein](https://i.ytimg.com/vi/1KeSlY1v6yo/maxresdefault.jpg)
This hole provides hackers with the ability to view or modify data in transit despite your SSL/TLS secure connection. A well-known security tool – “SSLSNIFF” – has been updated on its ninth anniversary to take advantage of the Basic Constraints security hole in iPhone’s operating systems (versions 3.2 through 4.3.4).