Want CNET to notify you of price drops and the latest stories?
CNET logo Why You Can Trust CNET

Our expert, award-winning staff selects the products we cover and rigorously researches and tests our top picks. If you buy through our links, we may get a commission. Reviews ethics statement

Hacker tool steals your iPhone data

iPhone hackers just got nasty -- the latest scourge of jailbroken iPhones does more than rickroll you, it silently copies your personal data

Advertiser Disclosure
Advertiser Disclosure
This advertising widget is powered by Navi and contains advertisements that Navi may be paid for in different ways. You will not be charged for engaging with this advertisement. While we strive to provide a wide range of offers, this advertising widget does not include information about every product or service that may be available to you. We make reasonable efforts to ensure that information in the featured advertisements is up to date, each advertiser featured in this widget is responsible for the accuracy and availability of its offer details. It is possible that your actual offer terms from an advertiser may be different than the offer terms in this advertising widget and the advertised offers may be subject to additional terms and conditions of the advertiser which will be presented to you prior to making a purchase. All information is presented without any warranty or guarantee to you.

The first iPhone worm, Ikee, was just a bit of fun -- unless you have an irrational fear of Rick Astley. But Intego, a Mac security company, reports that a new piece of malware for jailbroken iPhones nicks your personal data.

The iPhone hacker tool allows someone to connect to your phone and silently copy emails, contacts, text messages, calendars, photos, music files, videos and data recorded by any iPhone app. The tool doesn't install anything on the phone or leave any evidence your data has been copied.

The malware uses the same vulnerability as the Ikee worm, so for your phone to be at risk it must be jailbroken, with SSH installed, and still using the default password.

Like the Ikee worm, you can protect yourself by changing the root password -- so if you have SSH installed, get changing. Here are some step-by-step instructions on how to change the root password, courtesy of Cydia.

Meanwhile, an Australian ISP has published a chat with the Ikee worm's creator and namesake on its blog. Ikee reveals how to completely remove the worm, and shrugs off any criticism, saying, "I admit I probably pissed off a few people, but it was all in good fun... for me anyway."