Apple’s iOS passcode cracking defense can be bypassed using a USB accessory

  • Thread starter Thread starter The Verge RSS
  • Start date Start date
T

The Verge RSS

Guest
Author: Nick Statt

jbareham_170916_2000_0102.0.jpg

Apple released iOS 11.4.1 this morning, and with it came a new software mechanism that blocks passcode cracking tools favored by law enforcement. Called USB Restricted Mode, the tool renders the iPhone unaccessible to third-party software of any kind after its screen has been locked for one hour. That way, malicious third parties or law enforcement agencies can’t break into the phone using passcode cracking tools like GrayKey.

However, researchers at cybersecurity firm ElcomSoft have found a loophole that resets the one-hour counter so long as you plug a USB accessory into the iPhone’s Lightning port, regardless of whether the phone has ever connected to that accessory in the past.

Here’s ElcomSoft’s Oleg Afonin explaining the...

Continue reading…

Continue reading...