Security News > 2021 > April > Apple AirDrop users reportedly vulnerable to security flaw

Apple AirDrop users reportedly vulnerable to security flaw
2021-04-26 15:24

iPhone users with AirDrop enabled may unknowingly expose certain personal information to a complete stranger.

In a report released last week, researchers at the Department of Computer Science at the University of Darmstadt in Germany revealed their discovery of a security hole in Apple's AirDrop.

To share a file with someone via AirDrop, you use the iOS Sharing feature and specify AirDrop as the tool.

If the other person's AirDrop is set to Contacts Only, Apple needs to determine if you're in that person's contact list.

To replace the unsecure AirDrop design, the researchers said they created their own solution dubbed "PrivateDrop." Based on optimized cryptographic protocols, PrivateDrop can quickly and securely determine if you're in a fellow iPhone user's contact list without having to exchange the vulnerable hash values.

For now, the researchers advise users to turn off AirDrop.


News URL

https://www.techrepublic.com/article/apple-airdrop-users-reportedly-vulnerable-to-security-flaw/#ftag=RSS56d97e7

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Apple 68 212 1433 2208 257 4110