Heartbleed-based BYOD hack pwns insurance giant Aviva's iPhones


Userlevel 7
By John Leyden, 23 Jun 2014
 
Mobile device management systems at insurance giant Aviva UK were last month hit by an attack based on the Heartbleed exploit that allowed hackers to royally screw with workers' iPhones.
The insurance giant has played down the breach but El Reg's mole on the inside claims Aviva is in talks about moving to a new platform in the wake of the incident.
 Aviva was using BYOD service MobileIron to mange more than 1,000 smart devices such as iPhones and iPads. On the evening of the 20 May, a hacker compromised the MobileIron admin server and posted a message to those handhelds and the email accounts, according to our source.
The hacker then performed a full wipe of every device and subsequently took out out the MobileIron server itself.
 
The Register/ full read here/ http://www.theregister.co.uk/2014/06/23/aviva_heartbleed_hack/

0 replies

Be the first to reply!

Reply