PPCGeeks Forums HTC Arrive HTC HD2 HTC Thunderbolt HTC Touch Pro 2 HTC Evo 4G HTC Evo 3D Samsung Galaxy S II Motorola Droid X Apple iPhone Blackberry
Go Back   PPCGeeks > Android > Android HTC Devices > HTC Evo 4G
Register Community Search

Notices


Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 07-10-2010, 08:12 AM
meccadon123's Avatar
Regular 'Geeker
Offline
Pocket PC: 1 Evo LTE 1 Samsung GSIII & Toshiba Excite 10
Carrier: Sprint
Location: MD/DE
 
Join Date: Mar 2008
Posts: 316
Reputation: 270
meccadon123 is becoming a PPCGeeks regularmeccadon123 is becoming a PPCGeeks regularmeccadon123 is becoming a PPCGeeks regular
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
The sprint rep COULD see what I dl'd/unrevoked team discloses original root method

My guess is A. they don't have anything new to disclose at this point as far as new 1 click root methods.
B. Am I reading this right? They made google and sprint aware of the vulnerability hence HTC/sprint patching the loophole with the recent ota?

So if they didn't say anything, HTC/Sprint would NOT have included a loophole closure for their "root" method in the OTA and there would have been no need for additional "unrevoked root methods"? Sooo why say anything at all?

Anyway, here's the disclosure...for what it's worth.

On edit: So that sprint rep Could see I Downloaded ATK after all. Actually the question of whether he DID or DIDN'T is no longer important. The question of "could he if he wanted to" has been answered.

"However, the security vulnerabilities present in skyagent are of less cause for concern than the purpose of the program. It appears that the binary was designed as a backdoor into the phone, allowing remote control of the device without the user's knowledge or permission. When the program is invoked, it listens for connections over TCP (by default, port 12345, on all interfaces, including the 3G network!) that accepts a fixed set of commands".

http://unrevoked.com/rootwiki/doku.p...ed1_disclosure

Last edited by meccadon123; 07-10-2010 at 12:19 PM.
Reply With Quote
This post has been thanked 1 times.
  #2 (permalink)  
Old 07-10-2010, 09:15 AM
ChronoT52's Avatar
PPCGeeks Regular
Offline
Pocket PC: HTC Evo 4G
Carrier: Sprint
 
Join Date: Jan 2007
Posts: 54
Reputation: 0
ChronoT52 is a n00b
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Re: unrevoked team discloses original root method

If you read the document, the SkyAgent binary actually was worth tipping off Sprint and HTC. While proven unlikely, having a program that could potentially gain access to everything on your phone, including the current display on the screen, would be a stark violation of our privacy and cause for a bit of concern.

Interesting read though- thanks for the link!
Reply With Quote
  #3 (permalink)  
Old 07-10-2010, 11:40 AM
meccadon123's Avatar
Regular 'Geeker
Offline
Pocket PC: 1 Evo LTE 1 Samsung GSIII & Toshiba Excite 10
Carrier: Sprint
Threadstarter
Location: MD/DE
 
Join Date: Mar 2008
Posts: 316
Reputation: 270
meccadon123 is becoming a PPCGeeks regularmeccadon123 is becoming a PPCGeeks regularmeccadon123 is becoming a PPCGeeks regular
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Re: unrevoked team discloses original root method

Yea I caught that, which is why I POORLY tried to word my question 2 fold.

If the unrevoked team didn't say "hey HTC/Sprint WTH is this there for"? Would they have left it?

This goes back to my thread "Sprint rep knew I DL'd ATK".
Reply With Quote
Reply

  PPCGeeks > Android > Android HTC Devices > HTC Evo 4G


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -4. The time now is 10:11 AM.


Powered by vBulletin® ©2000 - 2025, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.6.0
©2012 - PPCGeeks.com