Recommended Posts

I currently have the iPhone 6+ and honestly it's been the best phone I've ever owned. The battery life is fantastic.  I don't install a lot of apps and mostly use it for email and bank alerts. I'm not one of those go out and buy a new phone to have the latest and greatest.

 

Well today I'm reading people should really upgrade because of these latest zero days. Apple released 12.5.4 in June, but it looks like there's not going to be a 12.5.5 to address these current vulnerabilities. I planned on buying the next version of the iPhone in the fall so I would hate to purchase a new version now and the new version comes out in September. Buying an older version off Ebay or something to hold me over also seems wasteful as well.

 

What is the attack vector for the latest exploits? Could I just turn off specific features to hold me over until September? I don't do stupid stuff like open documents in emails but if it's as simple as getting a phone call or a text message and you're instantly infected then there's nothing I can do to protect against that I will be forced to upgrade. So what is the attack vector? Thanks.

Link to comment
https://www.neowin.net/forum/topic/1409994-iphone-upgrade/
Share on other sites

Unless you are specifically targeted by the Zero day, you will be fine. Also Apple will most likely release a iOS 12 update to patch this. They have done before if the vulnerability is THAT bad and puts customers at risk. They just wont talk about it or commit to it cause it takes resources to go back generations and update software. They also look at active users and all that before making their decision.

Honestly I think you can wait until september / october for the new phone.

EDIT: I just realized I assumed you were talking about the Pegasus zero day with iMessage. That one costs a lot of money and you NEED to be targeted for it , so you're fine.

As for this zero day, you should be fine because of how you use your phone. Unless you started going to sketchy/unquestionable websites all of a sudden, you'll be fine

Edited by Sikh

You have an iPhone 6+ and don't need the "latest and greatest" but you think should wait to get the new iPhone? LOL I think you will be just fine with the current iPhone 12 . I wouldn't wait if your phone is not getting security updates anymore. You don't know what new exploit will hit tomorrow.

  • Like 1
  • Facepalm 1
On 28/07/2021 at 05:58, Good Bot, Bad Bot said:

You have an iPhone 6+ and don't need the "latest and greatest" but you think should wait to get the new iPhone? LOL I think you will be just fine with the current iPhone 12 . I wouldn't wait if your phone is not getting security updates anymore. You don't know what new exploit will hit tomorrow.

It's perfectly reasonable to be content with an older model of phone because it does what you need, and yet want to hold off on buying a new device until the latest model comes out...

On 30/07/2021 at 03:17, Nick H. said:

It's perfectly reasonable to be content with an older model of phone because it does what you need, and yet want to hold off on buying a new device until the latest model comes out...

How is that relevant to the discussion? He is still is going to move to another phone. The OP post was a concern about no security updates. It's NOT perfectly reasonable to use a phone that is not getting security updates.

 

On 30/07/2021 at 07:12, notta said:

My thought process is that if I'm going to be forced to upgrade my perfectly good working phone I'm going to get the newest model where I can receive security updates for the longest period of time.

You are not concerned about no security updates now? LOL My point was is you have an old phone so the current IPhone would be a huge upgrade for you. You are not going to notice any real difference between an IPhone 12 and 13. I am not sure how you went from a concern about zero days to continuing on without security updates? You  getting one more year of security updates five years from now seems to be a case of worrying about the wrong thing. I will add there is some good deals out there right now for the iPhone 12.

Quote

You are not concerned about no security updates now? LOL My point was is you have an old phone so the current IPhone would be a huge upgrade for you. You are not going to notice any real difference between an IPhone 12 and 13. I am not sure how you went from a concern about zero days to continuing on without security updates? You  getting one more year of security updates five years from now seems to be a case of worrying about the wrong thing. I will add there is some good deals out there right now for the iPhone 12.

Yes security is my number 1 priority. Number 1.  I don't use the camera, could count on one hand the number of pictures I've taken with it in 10 years. I don't use many of the apps especially not gaming. There are some apps I use such as Shazam, Spotify, Waze, etc. Some apps are starting to complain that they can't be used because I'm running an older version of IOS.

 

My original question was what is the attack vector. Sikh responded and stated that the concern was web browsing malicious sites. Since I don't browse malicious sites on my phone I figured I could hold off 1-2 months for the release of the new iPhone 13. Because there are multiple vulnerabilities in the news about Pegasus and the CVE-2021-30807 Zero-Day I was a little confused about how the OS is vulnerable. My concern was if I could receive a SMS or an iMessage and bang my system is exploited than that's unacceptable and would warrant an upgrade right away. If that was the case and I could disable SMS and iMessage until  the iPhone 13 comes out I would think about going that route while not ideal. I was just trying to understand what the exploits were. Never realized I would get people so fired up about my confusion.

 

As for the 12 vs the13. Did I give the impression that money is an issue? I never upgraded because most features I don't use and I was receiving security updates which I have stated is my number one priority. Having an app that I can use as a tape measure is not all that important to me. So, I never felt the need to upgrade. With that being said since we're 1-2 months from the new phone being released my thought process was to get the latest phone being released since I have milked this phone beyond what Apple wants it to be milked. Yes 1 year of updates is 1 year of extra updates to me as you can see. You're right in that I could get the 12 for a cheaper price and I could probably get it even cheaper when the 13 comes out but as stated money is not the issue here. Just trying to understand the current threats.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Microsoft confirms Windows 11 26H2, urges IT admins to prepare for release by Usama Jawad Windows 11 typically follows an annual update cycle, but Microsoft recently broke that tradition a bit by releasing a "26H1" version in the first half of this year as a "scoped" build for select new silicon PCs only. This version was not available for customers using 24H2 and 25H2 builds, as Microsoft is busy preparing version 26H2 for them, confirmed officially for the first time. In a Windows IT Pro blog, Microsoft has urged IT admins to prepare for the upcoming release of Windows 11 version 26H2. The company has confirmed that this will be a small enablement package (eKB) that will simply light up certain disabled features that are already present in the operating system's code base. This means that the "refined" Windows update and deployment experience will be simpler and quicker, with minimal disruptions, as the feature update will simply toggle a few flags rather than performing a complete replacement. Microsoft has explained that this is all possible because the standard Windows 11 releases share the same servicing branch and hence, the same source code. However, this also means that Windows 11 26H1 users won't be able to upgrade to 26H2 as that is a different branch, but this is something we have known for a while now. Similar to previous annual feature updates, Windows 11 26H2 will offer the following support cycles: 24 months of support for Home, Pro, Pro EDU, and Pro for Workstations editions 36 months of support for Enterprise, Education, IoT Enterprise, and Enterprise Multi-session editions Microsoft has not confirmed a concrete release date for Windows 11 26H2, but noted that it is "coming soon". If we go by the ongoing release cadence, we can expect it to begin rolling out in early October 2026. As such, IT admins have been encouraged to begin validating Windows Insider releases in the Experimental Channel, plan rollout rings, and strategize the utilization of their existing deployment tools.
    • Windows 11 gets new audio improvements in the latest builds by Taras Buria Today's Experimental builds (26H1 and Future Platforms, formerly Canary) pack several audio-related improvements. If your device is enrolled in the Experimental Channel (26H1), you can download build 28120.2315, while those in the Future Platforms version have build 29613.1000 to try. Here is what is new in build 29613.1000: [Audio] Following up on our previous improvements, we’re making some more adjustments to Settings > System > Sounds based on your feedback. Namely, we’ve updated the “All sound devices” page so: You now have the ability to change default devices from this page. Each of the devices displayed on this page now has a little volume meter next to it to show if there is audio actively playing. We’ve adjusted the page design slightly so now you can filter whether you’re viewing input or output devices. We’ve added toggles so you can choose if you want to hide or show disabled, disconnected, and unplugged devices on this page. We’ve also updated the input and output audio properties page for devices in Settings to now include jack information for those that need it. And here is the changelog for build 28120.2315: This update includes a small number of minor bug fixes and improvements. [Accessibility] This update improves caption style responsiveness by redrawing captions immediately for caption style changes. If no current caption is visible, a sample caption string is displayed. [Audio] This update improves the reliability of the inbox HD Audio driver. You can find the official release notes for build 28120.2315 here and for build 29613.1000 here.
    • I agree with what I think you are saying, just not in the way you are saying it. Like any tool, the amount it represents your work is perorational to the effort you put into it. It is similar to why 2nd grade math students learning to add and subtract are not allowed to use calculators, but a high-school calculous student is. For the 2nd grader, that tool would completely replace the work they are doing, for the calculous student the same tool allows them to work far more effectively while in no way replacing their effort or knowable. If you spend 30 seconds writing a prompt, then the image that comes out is no more "yours" than if you found the same image with a Google Image search. However, many of these generative tools also support highly iterative processes that allow back and forth, and merging generated images with photos or human created images. I am sure you would agree that a human spending hours of time working on a project, even if AI was involved in the process, still reflects that human's work.
    • Windows 11 version 26H2 is now available for testing in the latest preview build by Taras Buria Friday Windows 11 preview builds are here. Insiders in the Experimental (formerly Dev) and Beta Channel can download builds 26300.8697 and 26220.8690. There are no new features, but Microsoft is officially moving the Experimental Channel to version 26H2. In addition, Microsoft is improving the copy dialog in File Explorer, the Start menu reliability, and fixing virtualization issues. Here is the changelog: [General] With today’s build, Windows Insiders in the Experimental channel will see the versioning updated under Settings > System > About (and winver) to version 26H2. For more information, see the Windows Insiders blog. [File Explorer] We’ve improved the visual consistency and reliability of the Copy dialog in Dark mode, including its launch experience and the expanded progress view. [Start menu] - Also available in Beta Improved reliability of Start menu reflecting newly installed or removed apps without requiring sign-out or restart. [Taskbar] Fixed an issue for Insiders using the new smaller taskbar option, where the system tray might get cut off or pushed off screen. [Settings] - Also available in Beta Improved reliability of Settings > Apps > Startup. [Virtualization] - Also available in Beta This update addresses an issue that could result in bugchecks citing HYPERVISOR_ERROR (0x20001) and KMODE_EXCEPTION_NOT_HANDLED (0x1E) errors after installing the latest flights on some devices during system restarts, virtual machine operations, or while running some gaming applications. You can find the official changelog for the Experimental build here and for the Beta build here.
    • I've always preferred this possibility. There is something that feels good about the idea that all matter in the universe will eventually come back together and maybe even result in another big bang. The idea that the universe would fizzle out over the eons and forever drift apart is a little depressing. I realize it is not logical to let a basic human desire for life to have a grand everlasting meaning change the way I feel about a scientific theory, but I am human, so that is how I feel :-).
  • Recent Achievements

    • Collaborator
      ryansurfer98 went up a rank
      Collaborator
    • Week One Done
      Eurosoft10 earned a badge
      Week One Done
    • One Month Later
      Eurosoft10 earned a badge
      One Month Later
    • One Year In
      Skeet Campbell earned a badge
      One Year In
    • One Month Later
      Sharbel earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      574
    2. 2
      +Edouard
      188
    3. 3
      Michael Scrip
      77
    4. 4
      PsYcHoKiLLa
      76
    5. 5
      neufuse
      71
  • Tell a friend

    Love Neowin? Tell a friend!