website statistics

Russian Hacker Creates New Exploit – Allows Free Mac In-App Purchases

A Russian hackers recently launched an exploit to make free iOS in-app purchases. Now, he has launched a similar exploit for Mac apps.

When do you use Facebook?

View Results

Loading ... Loading ...
1 Star2 Stars3 Stars4 Stars5 Stars (Rate This)
Loading ... Loading ...

A Russian hacker recently gained a lot of fame and notoriety when it was discovered that he was able to create an exploit which allowed free in-app purchases for iOS users. The hacker’s name is Alexei Borodin. Borodin’s exploits don’t end there. He is back in the news with a new exploit which allows Mac users to perform similar free in-app purchases when using Mac apps.


How is the exploit accomplished?
First of all, two local certificates are installed. Next, the user routes the DNS settings of his computer to Borodin’s servers. Borodin’s servers pretend to be the Mac App Store and verify the purchase.

To complete the whole process, users have to run a companion app on their machines. This companion app is called ‘Grim Receiper.’ With the help of the false verification and this companion app, the exploit is able to bypass Apple’s receipt system. According to the hacker, so far about 8,460,017 free purchases have been performed using his exploit.

Apple has recently announced that it will soon patch up the vulnerability with iOS 6. This solution will essentially allow the developers to encrypt and verify their digital receipts with Apple. In-app purchases are very popular among iOS users and thus, the exploit by the Russian hackers will significantly impact iOS ecosystem until Apple patches up the exploit.

That would solve the problem for iOS developers. But now, Apple will need to introduce a similar solution for Mac developers too. Although in-app purchases are not that popular with Mac users, they are still a significant part of the Mac ecosystem.

Courtesy: TNW

Buy Cheapest Related Product From Amazon.com


Underwater Garbage Hunter Marine Drone Devours Ocean Pollution

eyeCLICK: A New iPhone Remote Accessory In KickStarter
You can also press the left/right arrow key on your keyboard to go to previous/next post
  On July 22, 2012(11 months, 2 days ago.)

Recent Search

Recent Tutorials

This tutorial will show how to use S.M.A.R.T. (Self Monitoring Analysis and Reporting Technology) to continuously collect information on health of your equipment.
In this tutorial I'll show you how you can easily protect yourself from any kind of security breaks that may occur through Java.
Today Apple enabled "Two Step Verification" for iCloud And Apple ID. But the process is not that simple. But no worry, here we have made a step by step tutorial.
Cant remember your iPhone passcode? Here I will show you some workaround on what to do and how to recover and restore for every possible scenario.
This tutorial will show you how to perform the Winapp2.ini installation inside CCleaner and how to use it under Windows operating system.
With app called AD Sound Recorder, you can record any stream that passes through your sound card or speakers and in this tutorial I will show you how to do that.
If you want to have Boxee app inside your Apple TV, in this tutorial we will show you how to install XBMC and Boxee using Windows on your Apple TV.
This tutorial will show you how to transfer PS3 Saved Game Files from your PC to your PS3 game console.
Adding videos from external sources such as internet, more specifically from YouTube, is a great solution to enhance a presentation; in this tutorial I will show you the procedure.
If you are one of new comers to Windows Phone 8, like me, in this tutorial I will walk you through the process to update your Windows Phone 8 device.
Close You Have To Login
User:
Pass:
Login With »Login With TwitterLogin With Facebook