跳到主要內容

how to bypass iphone lockscreen passcode

There are numerous ways to keep your smartphone safe from prying eyes, and a lock screen protected with a passcode is a popular choice. But a newly discovered vulnerability in iOS 8 and iOS 9 means that iPhones and iPads could be accessed by attackers.

The vulnerability was discovered by security analyst Benjamin Kunz Mejri and it has been assigned a Common Vulnerability Scoring System (CVSS) count of 6.0, as well as a 'high' severity rating. Apple has been aware of the issue since late last year, but has yet to issue a patch.

Vulnerability Laboratory has issued a security advisory that warns: "An application update loop that results in a pass code bypass vulnerability has been discovered in the official Apple iOS (iPhone 5 & 6 | iPad 2) v8.x, v9.0, v9.1 & v9.2. The security vulnerability allows local attackers to bypass pass code lock protection of the Apple iPhone via an application update loop issue. The issue affects the device security when processing to request a local update by an installed mobile iOS web-application".

As explained by security expert Graham Cluley, the exploit works by taking advantage of a brief period after rebooting during which passcode authentication is disabled. Vulnerability Laboratory details how to exploit the security hole (text is produced verbatim with the original typos and grammatical oddities):
  • First fill up about some % of the free memory in the iOS device with random data
  • Now, you open the app-store choose to update all applications (update all push button)
  • Switch fast via home button to the slide index and perform iOS update at the same time. 
          Note: The interaction to switch needs to be performed very fast to successfully exploit.
  • In the first load of the update you can still use the home button. Press it go back to index
  • Now, press the home button again to review the open runnings slides
  • Switch to the left menu after the last slide which is new and perform to open Siri in the same moment. Now the slide hangs and runs all time in a loop
  • Turn of via power button on the ipad or iphone ....
  • Reactivate via power button and like you can see the session still runs in the loop and can be requested without any pass code. 
          Note: Normally the pass code becomes available after the power off button interaction to stand-by mode
  • Successful reproduce of the local security vulnerability!

from betanews

and more from WonderHowTo

Cellebrite on explaining UFED Date Extraction Process 

留言

這個網誌中的熱門文章

劣質洗衣機入水喉

上面白色是最易找到,$2x. 但漏水. 灰色, $4x, 是假冒 "MADE IN ITALY"  假冒 "MADE IN ITALY"  的標緻  左面是白色膠喉的喉頭, 右面是灰色膠喉的喉頭, 上圖左面是真正 好貨 ( MADE IN ITALY )灰色膠蓋.右面是冒牌 白色膠蓋. 膠蓋在安裝扭緊時爆開  上圖左面是真正 好貨 , 標了其他規格.右面是冒牌, 單單印了 MADE IN ITALY  好貨的膠蓋是可以下移, 露出喉頭及黑色軟膠墊 黑色軟膠墊是有坑紋. 質感較柔軟. 緊後可以"迫實"水龍頭 及喉蓋, 沒有滲漏 正板 MADE IN ITALY 賣 $4x, 價錢絕對合理. 冒牌貨在旺角新填地街買的, 也是$4x. 真是要小心!!! NB: MADE IN ITALY 是否真正 意大利制造實在無從考 証

ES8311 and ES8388 codec IC

ES8388 audio codec module is one of the audio codec modules available that is supported by ESP32 and official ESP-ADF releases. The ES8388 module lets you have: Stereo microphone and line input Stereo headphone and line out Up to 96 kHz 24 bpp high quality audio This module is compatible with all MCUs that have I2C and I2S ports (like ESP32, ESP8266, STM32, i.MX6, Raspberry Pi, etc) ES8311 Maxgerhardt github PCBartist twblogs ESP32-A1S  (limited stock)Audio codec AC101 or ES8388 built-in. NB the pinouts and firmware are different! Arduino - ESP31-A1S instructable Phil Schatzmann and his github   Simple A2DP thaaraak github on ESP32-A1S github of Yveaux and  Marcel-licence ESP ADF   example:  Logitech PiCorePlayer squeeze lite squeezebox forum   ESP32-Audio-kit  (from AI thinker) based on ESP32-A1S, is simple and small. But upgrade-ability seems limited  Alex John Talbert mixer equalizer: can this be used as simple equalizer? how about proces...

sharpstar 150mm f/2.8 hyperbolic astrograph

to be launched in summer, 2019. spot diagram is now available, and connections diagram to camera is shown . list price RMB 13,000 ( USD 1900 approx) comparing this with Takahashi epsilon-180ED: spot diagram: connections: the focuser is 2.5 inch, and threads are M48 x 0.75mm   cloudynights first impression threads   some nice photo review from skypoint   Astrofotoblog review  c