Researchers at Skycure have exposed an SSL certificate security flaw allowing them to create a ‘No iOS Zone’ where most apps on iPhones and iPads running iOS 8 will crash while connecting to the Internet, even crashing the devices themselves in some cases. While the exploit is normally triggered by users manually joining these rogue Wi-Fi networks, hackers can also take advantage of the WiFiGate vulnerability to create fake Wi-Fi networks with names that iOS devices on some carriers will automatically join — for example any iPhone on AT&T will join any nearby Wi-Fi network with the name “attwifi” without requiring any user interaction. Once the device is connected, either automatically or manually by the user, apps attempting to make a secure connection with a server will crash. Heavy use of the device while it is exposed to the fake Wi-Fi location can even cause the device’s OS to crash. In some instances that crash led to a repeatable boot cycle, rendering the device useless while within range of the fake Wi-Fi hotspot. Users can avoid the problem by disconnecting from the offending Wi-Fi network and generally avoiding connecting to suspicious free Wi-Fi networks, although in the case of carrier-defined Wi-Fi networks, the user may be required to move out of range of the Wi-Fi network entirely, as many of these carrier settings cannot be overridden. Skycure has reported the problem to Apple and speculates that iOS 8.3 may have fixed some of the underlying issues. [via 9to5Mac]
Google has announced that the YouTube app will cease to function starting in May for iOS devices running an OS older than iOS 7 — this likely refers to the older Apple-developed YouTube app that was discontinued in iOS 6. The change also impacts second-generation and older Apple TV units, which won’t be able to access YouTube starting in May unless Apple chooses to provide a software update for the older model. Users of the YouTube app on these older devices are already seeing a video notifying them of the change, but the app is still functional for now. In early May, users will only see the notification video, and will be unable to access any video content through the app. Google’s support page has directed users of older iOS versions to visit YouTube’s mobile site to view videos. Notably, Google’s official YouTube app for iOS remains listed as compatible with “iOS 6.0 or later”, so it’s unclear why iOS 6 users may be unable to access YouTube unless Google simply plans to drop iOS 6 support in the native iOS app.
Less than a week after the public release of iOS 8.3, Apple has already begun the developer beta cycle of the next iOS update, with the release of the first iOS 8.4 beta to registered developers. As expected, iOS 8.4 appears to focus primarily on a redesigned Music experience to pave the way for Apple’s upcoming streaming music service, with a number of significant changes to the built-in Music app, paralleling some iTunes features such as Now Playing, Mini Player, and support for adding to and managing the Up Next queue.
The Music app redesign is apparently being overseen by Trent Reznor, the creative head at Beats Music, who has reportedly been working on a secret project at Apple since at least last fall. This first iOS 8.4 beta, featuring a build number of 12H4074d, is also accompanied by an Xcode 6.4 beta to support the new APIs and development environment, and notes about a dozen limitations with the new Music app at present.
It is expected that most of these are just issues related to the new Music app not being entirely finished in this first beta, and the app experience should improve through the remainder of the beta cycle.
With yesterday’s release of iOS 8.3, users on Sprint and EE in the UK can now take advantage of Wi-Fi calling. While the feature was initially debuted in iOS 8, only T-Mobile supported it at initial launch; for whatever reason other carriers seem to have been excluded up until this most recent iOS update, with Sprint issuing a formal press release, and EE more quietly announcing it via a posting in their community forums. An update to Apple’s support article on Wi-Fi calling provides confirmation that the service is now available specifically on “T-Mobile and Sprint in the United States and EE in the United Kingdom.”
Apple has publicly released iOS 8.3, noting more than 50 new fixes and improvements across areas such as Wi-Fi and Bluetooth, Messages, CarPlay, Family Sharing, Accessibility, Enterprise features, orientation and rotation features, and more. The update also boasts improved performance for launching apps, responsiveness of apps, Messages, Wi-Fi, Control Center, Safari tabs, third-party keyboards, and other features. Notably, with iOS 8.3, Apple has also removed the “beta” label from its iCloud Photo Library feature which debuted last fall, optimizing it to work with the new Photos app now available in OS X Yosemite 10.3.3. Other notable fixes and improvements include a new Emoji keyboard featuring over 300 new characters, the ability to filter out Messages not sent by people in your contacts list, a way to report junk iMessages directly from the Messages app, italic and underline formatting options on the iPhone 6 Plus landscape keyboard, and the ability to remove shipping and billing addresses used with Apple Pay. iOS 8.3 can be downloaded by going to the iOS Settings app and choosing General, Software Update, or by connecting your iOS device to iTunes and using the Check for Update option found on the iTunes device summary screen.
Apple’s rumored expansion of its iPhone trade-in program to include non-Apple devices went live today in the U.S. and Europe, French blog MacPlus reports. The U.K. website for Brightstar, a third-party company that handles Apple’s trade-ins, indicates Apple is now offering Apple Store credit in exchange for select handsets from Sony, Nokia, Blackberry, Samsung, NTC and LG. The change to Apple’s exchange program was handled with little fanfare in the U.S., with the announcement buried on individual store pages according to 9to5Mac. This would seem to imply U.S. stores are accepting non-Apple devices for trade-ins, but it’s unclear when Apple’s website will provide a link to allow online U.S. users to get an estimate for the value of their Android phones.
Apple may be planning to release three different iPhone models later this year, essentially adding a new 4-inch model to the lineup, according to the often-dubious DigiTimes. Citing “industry sources,” the report notes that the iPhone 6 and iPhone 6 Plus would be directly upgraded to the “iPhone 6S” and “iPhone 6S Plus”, respectively, and that a new “iPhone 6C” would be added to the lineup — a four-inch model that would presumably be the spiritual successor to the iPhone 5s. The devices would allegedly all include Corning Gorilla Glass, with the 6S series using A9 chips and the 6C using the current A8 chip, and all devices would include NFC and Touch ID hardware. The report’s sources also indicate that Apple would likely use different manufacturing partners for the smaller-sized iPhone.
While any early reports — especially from sources such as Digitimes — should be taken with an appropriate grain of salt, the move would not be entirely unexpected for Apple, particularly if demand for iPhones with the more “traditional” screen size remains high. As has been the company’s practice in previous years, Apple is currently still selling the older four-inch iPhone 5s and iPhone 5c alongside the larger iPhone 6 models, providing customers with a variety of screen sizes to choose from. However, as newer models are introduced, the company may not wish to leave these users with only significantly older hardware options.
Apple has released its fourth beta of iOS 8.3 to registered developers; it’s the second beta in the new iOS Public Beta program. This latest beta features a build number of 12F61 and details few changes in the release notes from the prior beta, with minor issues related to CarPlay, WatchKit, Spotlight and UIKit.
As with the third beta released earlier this month, this latest update is once again accompanied by a new beta build of the Apple TV Software, although it is unclear at this point what has changed in that particular version as Apple TV betas are generally not accompanied by release notes.
Apple’s iOS 8.2 eliminated the FREAK security flaw in Safari, but FireEye researchers found a handful of popular iOS apps are still vulnerable to attack even when running on iOS 8.2. Hundreds of others still connect to vulnerable HTTPS servers, leaving them open to attack when running on iOS versions lower than iOS 8.2. Shopping, medical and finance apps were all mentioned as possible targets in FireEye’s plea for app developers to remedy the lingering issues.
A new device allows users to access a locked device running iOS 8.1 through a brute-force attack, even with the “Erase data after 10 attempts” setting on, according to security company MDSec. The IP Box — available in England for £200 (about $293) — bypasses Apple’s security measures by cutting the iPhone’s power after each failed attempt at guessing the PIN, shutting down the phone before the attempt can be logged in flash memory. This method allows the device to break a four-digit PIN in approximately 111 hours. The vulnerability could be the issue noted in CVE-2014-4451 and addressed in Apple’s iOS 8.1.1 update, but MDSec recommends users create a “sufficiently complex” password rather than a simple PIN to protect their data regardless. [via Daring Fireball]
Nintendo will finally develop games for smartphones, The Wall Street Journal reports. The company that for years refused to cater to the smartphone market has partnered with Japanese game provider DeNA Co. to set up a new mobile game platform, which should debut this fall. Analysts say Nintendo’s reluctance to license its characters has come at a heavy cost as the gaming industry shifted to smartphones. Nintendo posted three straight years of losses amid disappointing console sales, forcing the company to be more open to embracing the free-to-download game model dependent on in-game purchases for revenue.
Nintendo’s new game distribution portal, slated to debut this fall, will be the only place to download the company’s games, but those looking to download Nintendo classics won’t find them there. Although Nintendo has put “no limitations” on which of its properties will wind up in smartphone games, the company’s announcement said, “Only new original games optimized for smart device functionality will be created, rather than porting games created specifically for the Wii U home console or the Nintendo 3DS portable system.”
Apple plans to expand its iPhone trade-in program to include Android devices and other non-Apple smartphones, 9to5Mac reports. Much like the iPhone Reuse + Recycle Program introduced about a year and a half ago, customers will receive gift cards that can be used toward the purchase of new iPhones in exchange for their older smartphones, with the value of the trade-in assessed by Apple Store employees based on the cosmetic and functional condition of the device. The new program is expected to begin in the next few weeks, and Apple is expected to begin training employees later this week.
Microsoft plans to bring Cortana, its Windows phone personal assistant technology, to both Apple and Android devices, Reuters reports. The company is reported to be developing an advanced version of its Siri competitor based on an artificial intelligence project it has dubbed “Einstein.” Microsoft’s new CEO, Satya Nadella, has been more aggressively opening up the company’s software to non-Windows platforms, eschewing Microsoft’s traditional approach of forcing customers into using its Windows operating system. Cortana debuted on Windows phones last year, and will be coming to the desktop with Windows 10 later this year. According to people familiar with the project, Microsoft also plans to release a standalone iOS app version of the technology. New technology in Cortana to be rolled out this fall is expected to incorporate more advanced features, such as the ability to read and understand e-mail and more accurately anticipate user needs, rather than simply responding to requests as Siri does.
Apple has released its third beta of iOS 8.3 to registered developers, following the public release earlier this week of iOS 8.2 to support the upcoming Apple Watch. This latest beta features a build number of 12F5047f and details few changes in the release notes from the prior beta, with minor issues related to CarPlay, WatchKit, and LTE Voice. As expected, this beta also adds the Apple Watch app and related settings that were introduced earlier this week in iOS 8.2. This update is also accompanied by a new beta of the Apple TV Software, although it is unclear what has changed in that particular version as Apple TV betas are generally not accompanied by release notes.
Despite reports that Apple would release a public beta of iOS 8.3 around this time, there has been no indication from Apple of a public beta program starting as of yet — as with previous iOS betas, iOS 8.3 beta 3 remains available to registered developers only.
Update: The iOS Public Beta program is now available at Apple’s Beta Software Program site. Some of the information in the FAQ appears to have been updated to include instructions for backing up and installing on iOS devices, but the ability to actually register for, download, and install the beta version does not yet seem to be available for all users.
Apple is planning to put Force Touch technology — which will be included in the Apple Watch and new MacBook — into the next generation of iPhone, according to The Wall Street Journal. The feature allows improved touch sensors to distinguish between a light tap and a deeper press, letting users perform different functions by applying different levels of pressure. Sources say the Force Touch versions of the iPhone 6 and iPhone 6 Plus will be released later this year. The screen sizes for both devices will stay the same, but Apple is also reportedly testing a new pink color option to go alongside the current silver, gold and space gray models.
Researchers with ties to the CIA have been working for years to crack the security on iPhones and iPads, The Intercept reports. The researchers presented their latest achievements at the “Jamboree,” a secret annual gathering where attendees swap strategies for breaking into commercial and household electronics. Hackers discussed attempts to crack the security keys used to encrypt data on Apple devices, as well as efforts to modify the OS X updater and Apple’s proprietary software development tool, Xcode, to insert malicious code onto Apple devices. If successful, these breaches would allow hackers to intercept messages, steal passwords and even possibly “force all iOS applications to send embedded data to a listening post.”
Documents from 2010 to 2012 given to The Intercept by Edward Snowden note that researchers were “particularly intent” on extracting encryption keys for Apple products, but “do not address how successful the targeting of Apple’s encryption mechanisms have been, nor do they provide any detail about the specific use of such exploits by U.S. intelligence.” Neither the CIA nor Apple commented on the story, but Apple CEO Tim Cook has long touted privacy as a core value and has previously criticized the actions of U.S. intelligence agencies and law enforcement on such matters.
Apple has increased the price of unlocked iPhone 6 and iPhone 6 Plus units in Canada by approximately 12 to 14 percent, likely owing to persistent differences in currency exchange rates between the two countries. The price of the basic 16GB iPhone 6 has increased by $90 CAD, from $749 CAD to $839 CAD, while at the other end of the spectrum, the 128GB iPhone 6 Plus gets a price increase of $150 CAD, going from $1,079 CAD up to $1,229 CAD. With the gap between the U.S. and Canadian dollar having increased dramatically over the past four months, the previous pricing was significantly below the exchange rate, however these new prices now make Canadian unlocked iPhone models slightly more expensive than their U.S. counterparts, even after exchange rates have been factored in. This move follows a similar 20 percent price increase that hit the Canadian App Store this past January. [via iPhone in Canada]
During today’s “Spring Forward” event, Apple CEO Tim Cook announced that iOS 8.2 is being released today. The new update includes an Apple Watch app that will provide access to the App Store for the new wearable device, as well as the ability to configure settings, transfer apps to the Apple Watch, and even watch information and preview videos on the Apple Watch before buying one. iOS 8.2 is expected to be available for download through the normal software update mechanisms later today.
Update: iOS 8.2 includes a patch to remedy the FREAK security flaw.
Apple’s iPhone 5 Battery Replacement Program has been extended, as noted by iPhone in Canada. The program, which launched last August, replaces iPhone 5 batteries in select units free of charge — a serial number checker on the site confirms device eligibility. Initially, the program was set to run until March 1, 2015, but the program now claims to cover “affected iPhone 5 batteries for 3 years after the first retail sale of the unit.” The affected devices were sold between September 2012 and January 2013, which means the program will extend until January 2016 at the latest.
Apple plans to increase the RAM in the next-generation iPhone — likely to be dubbed the ‘6s’ — to 2GB, according to AppleInsider. This would provide more working memory to allow for apps to stay open and preserve data in the background, although at a potential battery cost. While Apple has defied expectations thus far in maintaining the iPhone RAM at 1GB in recent years, the iPad Air 2 received a RAM bump to 2GB last year, suggesting a high probability that Apple will do the same for the next-generation iPhone. The report suggests that this would apply to both the base iPhone 6s and iPhone 6s Plus.
The same report also suggests that Apple is “strongly considering” including the “Apple SIM” in the new iPhone models as well, which would allow users to sign up for service directly with their carrier of choice right from within an iOS app or setup screen. While the iPad Air 2 included the Apple SIM last fall, the idea was met with resistance from carriers, with some such as Verizon choosing to opt out of the program entirely. The more complex iPhone plans that most carriers offer — in comparison to the more basic data-only iPad plans — would make this even more of a challenge for Apple to work out with carriers.