IntoMobile

Breaking news, information, and analysis on the latest mobile phones and mobile technology

Open NavigationOpen Search
  • Home
  • Platforms
    • iOS / iPhone OS
    • Android
    • Windows Phone
    • BlackBerry OS
  • Hardware
    • New Hardware
    • Tablets
    • Reviews
    • Rumors
  • Carriers
    • AT&T
    • Sprint
    • T-Mobile
    • Verizon
  • Manufacturers
    • Apple
    • Samsung
    • HTC
    • LG
    • Motorola
  • Best VPNs
  • Best AI Tools

Security researcher finds Instagram for iPhone users vulnerable to hackers

December 3, 2012 by George Tinari - Leave a Comment

Share on Twitter Share on Facebook ( 0 shares )

Carlos Reventlov, a security researcher, published on Friday a vulnerability in the Instagram app for iPhone and iPod touch. It gives hackers the ability to gain access and control users’ Instagram accounts, allowing them to potentially delete photos or change sensitive profile information.

Reventlov first discovered the vulnerability in the middle of November and quickly sent in notice to Instagram on November 11th, suggesting a fix. It still has not been fixed.

He discovered the issue when running a test on two separate iPhone 4 units, both running iOS 6. “When the victim starts the Instagram app, a plain-text cookie is sent to the Instagram server,” Reventlov writes. “Once the attacker gets the cookie he is able to craft special HTTP requests for getting data and deleting photos.” He later found that the same hack gives more power to a hacker than originally reported: the hacker could fully take control of the account upon exploiting the vulnerability.

“I’ve found that many iPhone apps are vulnerable to such things but not too many are high-profile apps like Instagram,” Reventlov added. He says that the fix for Instagram is rather easy. For API calls that utilize sensitive information, simply use HTTPS, or Hypertext Transfer Protocol Secure.

I always have a love-hate relationship writing up security posts like this. The story brings important security information to the public eye, but at the same time, it also does so to hackers with no souls. The risk seems to be low for Instagram’s issue, but as always, remain vigilant.

[via Computerworld]

Share on Twitter Share on Facebook ( 0 shares )

Back to top ▴

Back to top ▴

Follow IntoMobile

38k
36k
4k
13k
12k

Most Recent Posts

  • Samsung Galaxy Z Fold8 and Z Flip8 to feature Google’s Gemini Intelligence with multi-app AI assistant
  • Samsung rolls out major PENUP update with six new creative features
  • Apple to redesign iPhone camera app with full customization in iOS 27
  • Samsung Galaxy Z Fold 8 Wide camera specs and signature color leak
  • Xiaomi 17 Max design confirmed — it’s launching this month

Get Updates Via E-Mail

  • This field is for validation purposes and should be left unchanged.

About IntoMobile

  • About IntoMobile
  • Contact IntoMobile
  • Send us News Tips
  • Privacy Policy

Social Links

  • IntoMobile on Facebook
  • IntoMobile on Twitter
  • IntoMobile on Google+
  • IntoMobile on YouTube

Copyright © 2006-2021 IntoMobile. All rights reserved.