PhoneArena is looking for new authors! To view all available positions, click here.
  • Home
  • News
  • Apple patching in-app purchase bug that allowed buying for free

Apple patching in-app purchase bug that allowed buying for free

Posted: , by Victor H.

Categories:

Share:

Discuss 5
Apple patching in-app purchase bug that allowed buying for free
Just recently, news broke that Apple’s implementation of in-app purchases is flawed, allowing hackers like Russian Alexey Borodin to circumvent Apple’s servers and trick apps into thinking you’ve paid for things inside it while you actually haven’t. This was all possible because of two things - first Apple didn’t use a unique identifier for each of the purchases, and secondly because developers often neglected to validate their in-app purchase receipts.

And now Apple is introducing a unique identifier for each of the purchases - a likely step towards patching that bug. It’s actually not completely clear whether the newly implemented unique identifier for in-app purchases is indeed aimed at patching that hole in the system, but at least that’s the most likely reason, especially as Apple adds it mere days after the hack was made public.

For the time being, though, you can still circumvent the system and use a third-party server to fool apps into thinking you are buying items while not actually paying.

source: MacRumors

Share:

Discuss5

5 Comments

  • Options
    Close




Want to comment? Please login or register.

1. quakan posted on 19 Jul 2012, 02:43

Hmm should I pay for in-app purchases or try to get it free by going through some Russian hacker's servers and giving him access to my information? Tough decision.

5. bayusuputra posted on 19 Jul 2012, 12:09

easy solution, throw your iDevice, get android, side load the app, BAM!

2. darktranquillity posted on 19 Jul 2012, 02:51 4 1

Why pay?, download and let apple pay for you from its cash pile.

3. JunkCreek posted on 19 Jul 2012, 11:01

No malware anyone? Just because they "crackers/hackers" didn't give a d*mn to apple device. When it is d*mned, you can now see.
So, please WAKE UP!

4. JunkCreek posted on 19 Jul 2012, 11:02

No malware anyone? Just because they "crackers/hackers" didn't give a d*mn to apple device. When it is d*mned, you can now see.
So, please WAKE UP!

Want to comment? Please login or register.

Hot Phones

  • Samsung Galaxy S4Samsung Galaxy S4
  • Apple iPhone 5Apple iPhone 5
  • Samsung GALAXY Note IISamsung GALAXY Note II
  • HTC OneHTC One
  • Sony Xperia ZSony Xperia Z
  • Google Nexus 4Google Nexus 4
  • LG Optimus GLG Optimus G
  • Nokia Lumia 920Nokia Lumia 920