Security News

New Tool Can Jailbreak Any iPhone and iPad Using An Unpatched 0-Day Bug
2020-05-25 01:02

The hacking team behind the "Unc0ver" jailbreaking tool has released a new version of the software that can unlock every single iPhone, including those running the latest iOS 13.5 version. The unc0ver website also highlighted the extensive testing that went behind the scenes to ensure compatibility across a broad range of devices, from iPhone 6S to the new iPhone 11 Pro Max models, spanning versions iOS 11.0 through iOS 13.5, but excluding versions 12.3 to 12.3.2 and 12.4.2 to 12.4.5.

New Tool Can Jailbreak Any iPhone and iPad Using An Unpatched 0-Day Bug
2020-05-25 01:02

The hacking team behind the "Unc0ver" jailbreaking tool has released a new version of the software that can unlock every single iPhone, including those running the latest iOS 13.5 version. The unc0ver website also highlighted the extensive testing that went behind the scenes to ensure compatibility across a broad range of devices, from iPhone 6S to the new iPhone 11 Pro Max models, spanning versions iOS 11.0 through iOS 13.5, but excluding versions 12.3 to 12.3.2 and 12.4.2 to 12.4.5.

FBI finally unlock shooter’s iPhones, Apple berated for not helping
2020-05-20 11:34

The FBI said on Monday that it figured out how to unlock the iPhones of the shooter who killed three young US Navy students and injured eight at a Pensacola, Florida naval base in December 2019. Thanks to the great work of the FBI - and no thanks to Apple - we were able to unlock Alshamrani's phones.

DoJ Again Asks for Encryption Backdoors After Hacking US Naval Base Shooter's iPhones
2020-05-19 12:12

The U.S. Department of Justice announced on Monday that the FBI managed to gain access to the data stored on two iPhones belonging to an individual who last year killed and wounded several people at a United States naval base. U.S. Attorney General William Barr and FBI Director Christopher Wray announced on Monday that the FBI managed to access the data stored on the two locked iPhones.

Attorney General: We didn't need Apple to crack terrorist's iPhones – tho we still want iGiant to do it in future
2020-05-18 22:09

The US Department of Justice is once again taking Apple to task for not cooperating with device decryption requests, even after it announced that it had retrieved information from a pair of iPhones without Cupertino's help. "Thanks to the great work of the FBI - and no thanks to Apple - we were able to unlock Alshamrani's phones," said Attorney General Barr.

Attorney General: We didn't need Apple to crack terrorist's iPhones – tho we still want iGiant to do it in future
2020-05-18 22:09

The US Department of Justice is once again taking Apple to task for not cooperating with device decryption requests, even after it announced that it had retrieved information from a pair of iPhones without Cupertino's help. "Thanks to the great work of the FBI - and no thanks to Apple - we were able to unlock Alshamrani's phones," said Attorney General Barr.

S2 Ep38: Crashing iPhones, ransomware tales and human chatbots – Naked Security Podcast
2020-05-07 13:17

In this episode, Duck discusses the iPhone "Word of death", Peter shares a shocking ransomware story and I talk about a chatbot that shows empathy. Host Anna Brading is joined by Naked Security regular Paul Ducklin, threat response expert Peter Mackenzie and me.

iPhone “word of death” could crash your phone – what you need to know
2020-04-28 16:25

A weird combination of Unicode characters that make up a nonsense word can crash your iPhone, apparently by confusing the iOS operating system when it tries to figure out how to display the "Word". We don't know how to read Arabic writing, or indeed the text of any Semitic language, but we do know that the writing systems of these languages generally differ from most European languages.

Latest Apple Text-Bomb Crashes iPhones via Message Notifications
2020-04-24 20:41

Apple devices are vulnerable to a "Text bomb" attack where simply looking at messages or posts containing characters in the Sindhi language can crash devices. The problem occurs in a number of different scenarios, including if the character string shows up in a text message - in fact, just looking at a message notification containing a message preview will crash the system.

iPhone zero day – don’t panic! Here’s what you need to know
2020-04-23 15:50

Attackers would need a secondary kernel-level vulnerability to get system-level control and thereby to escape from the strictures of the vulnerable app. Of course, email apps typically contain plenty of juicy data all of their own, so a double-vulnerability compromise of the email app alone is still a worthwhile result for any attacker.