RIM Patches BlackBerry Null Character Exploit
It's not often you hear about smartphones being infiltrated by hackers using phishing schemes, but a recent Research in Motion security fix is designed to prevent just that kind of issue.
The Waterloo, Ontario-based Research in Motion, which produces the extremely popular BlackBerry smartphone, late last week issued a patch for a reported vulnerability which left many of its users susceptible to attack by phishing hackers.
According to reports, the flaw could allow a remote hacker to fool a BlackBerry owner into visiting a malicious website with their handheld multimedia device. A BlackBerry user duped by the scheme would find themselves at what might appear to be a legitimate site, but is in fact designed to soak up visitor login and password data for malicious purposes. (Source: itproportal.com)
Malicious Null Character Exploit
As late as last week, Research in Motion had failed to protect the BlackBerry against null character exploits. This software oversight was eventually picked up by hackers, who could build new web pages with null characters in a site's certification field in order to fool the BlackBerry's (apparently far from perfect) security software.
Although users would usually receive a warning if a site's certification was questionable, the null characters prevented the BlackBerry security from detecting it. (Source: v3.co.uk)
RIM: Apply Fix, Vigilance, Common Sense
Research in Motion is encouraging all of its BlackBerry users to immediately download and apply the fix, and to be extra careful when clicking on links forwarded by questionable parties through instant messaging or the device's popular push email function.
Although all smartphone users are encouraged to follow this most basic security advice, those using BlackBerry software versions 4.5 through 4.7 should click on the link to RIM's new patch here. The vulnerability has not been found in BlackBerry Desktop software or server packages.
Most popular articles
- Which Processor is Better: Intel or AMD? - Explained
- How to Prevent Ransomware in 2018 - 10 Steps
- 5 Best Anti Ransomware Software Free
- How to Fix: Computer / Network Infected with Ransomware (10 Steps)
- How to Fix: Your Computer is Infected, Call This Number (Scam)
- Scammed by Informatico Experts? Here's What to Do
- Scammed by Smart PC Experts? Here's What to Do
- Scammed by Right PC Experts? Here's What to Do
- Scammed by PC / Web Network Experts? Here's What to Do
- How to Fix: Windows Update Won't Update
- Explained: Do I need a VPN? Are VPNs Safe for Online Banking?
- Explained: VPN vs Proxy; What's the Difference?
- Explained: Difference Between VPN Server and VPN (Service)
- Forgot Password? How to: Reset Any Password: Windows Vista, 7, 8, 10
- How to: Use a Firewall to Block Full Screen Ads on Android
- Explained: Absolute Best way to Limit Data on Android
- Explained: Difference Between Dark Web, Deep Net, Darknet and More
- Explained: If I Reset Windows 10 will it Remove Malware?
My name is Dennis Faas and I am a senior systems administrator and IT technical analyst specializing in cyber crimes (sextortion / blackmail / tech support scams) with over 30 years experience; I also run this website! If you need technical assistance , I can help. Click here to email me now; optionally, you can review my resume here. You can also read how I can fix your computer over the Internet (also includes user reviews).
We are BBB Accredited
We are BBB accredited (A+ rating), celebrating 21 years of excellence! Click to view our rating on the BBB.