This is probably the scariest iPhone hack ever

行业动态 2024-09-22 13:26:33 646

Most smartphone hacks these days, even the most dangerous ones, require some sort of user interaction — tapping on a link, opening a message, installing an app — for the hacker to gain control of the device.

But a particularly nasty iPhone exploit (via Ars Technica) allowed for an attacker to instantly take over someone's iPhone from a distance, without the need for any user interaction. It's really as scary as it sounds: Just look at the video of it in action, below.

The exploit was found by security researcher Ian Beer, who works at Google's Project Zero team. It involves a vulnerability in AWDL, Apple's protocol that allows iPhones, Macs, and other devices to create peer-to-peer mesh networks, which enable features such as AirDrop and AirPlay.

Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!

Finding the exploit was not easy — Beer has a lengthy technical explanation of how he did it, if you're up for it — but the bottom line was that it allows an attacker to remotely reboot iPhones, and completely take them over after they've been rebooted, with access to photos, messages, and other user data. The attacker does need to be within Wi-Fi range for the attack to work.

Check out a demonstration of an attack that uses this exploit in action in the video, below.

Now, the good news: Apple has already patched the exploit in May 2020, meaning that iPhones with the latest security updates are all secure. Also, Beer himself notes he has no evidence that the bug was exploited in the wild.

SEE ALSO:Of course this is the most downloaded iPhone app of 2020

Still, it's amazing that one person managed to crack the iPhone's security in such a complete manner. It begs the question: If one guy can do this on his own, what can a team of paid professionals with a lot of time and resources do?

本文地址:http://1.zzzogryeb.bond/html/19c999203.html
版权声明

本文仅代表作者观点,不代表本站立场。
本文系作者授权发表,未经许可,不得转载。

全站热门

厚植精神文明沃土 培树司法文明新风

Gmail mistakenly sends 'New Device Sign In' messages to users

Everything coming to Amazon Prime Video in May 2020

Barty missing Australia but keen to retain top rank, coach says

Smiley face on Mars is a telltale sign of its past

West Virginia will use blockchain smartphone voting in 2018 midterms

天气预报说,最近以分散性小雨为主,啥感受?

Military trivialized sexual assault complaint, despite evidence

友情链接