Security News

Lock screen bypass already discovered for Apple’s iOS 12
2018-10-02 11:37

Apple’s iOS 12 is barely out of the gates and already someone has found a way to beat its lock screen security to access a device’s contents.

Week in review: First-ever UEFI rootkit, Apple DEP vulnerability, new tactics subvert traditional security measures
2018-09-30 18:48

Here’s an overview of some of last week’s most interesting news and articles: What do you mean by storage encryption? Depending on the threat context and how you define “storage encryption,” it...

Teenage Apple Hacker Avoids Prison Time
2018-09-28 10:33

Hacker Who Kept 'Hacky Hack Hack Methods' Folder on His Computer Gets ProbationAn Australian man who as a teenager managed to infiltrate Apple's networks and do it again after the company expelled...

16-Year-Old Boy Who Hacked Apple's Private Systems Gets No Jail Time
2018-09-27 19:33

An Australian teenager who pleaded guilty to break into Apple's private systems multiple times over several months and download some 90GB of secure files has avoided conviction and will not serve...

Researchers Find 'Authentication Weakness' in Apple's Device Enrollment Program
2018-09-27 15:48

Researchers from Duo Security have discovered a vulnerability (it calls it an 'authentication weakness') in Apple's Device Enrollment Program (DEP). The flaw was reported to Apple in May 2018. It...

Pangu Hackers have Jailbroken iOS 12 on Apple's New iPhone XS
2018-09-27 15:33

Bad news for Apple. The Chinese hacking team Pangu is back and has once again surprised everyone with a jailbreak for iOS 12 running on the brand-new iPhone XS. Well, that was really fast. Pangu...

Weakness in Apple MDM Tool Allows Access to Sensitive Corporate Info
2018-09-27 14:49

A lack of authentication in Apple's Device Enrollment Program could allow attackers to scoop up Wi-Fi passwords and VPN configurations.

Looking after the corporate Apple mobile fleet? Beware: MDM onboarding is 'insecure'
2018-09-27 14:47

Researchers check bootstrap enrolment tech, suck teeth, whistle Hackers can blow holes in Apple's managed service technology and sneak their own rogue devices onto corporate fleets of mobile iThings.…

Apple DEP vulnerability lets attackers access orgs’ resources, info
2018-09-27 11:50

An authentication weakness in Apple’s ​Device Enrollment Program​ (DEP) may allow attackers to enroll any device into an organization’s Mobile Device Management server and, consequently, to obtain...

ProTip: Automate setting a firmware password on Apple computers
2018-09-22 21:12

Securing Mac computers means more than just protecting the data. Limiting the ways a user can gain access to a device--including bypassing the existing OS or resetting account passwords is easily...