The shock of the Apple iPhone 11 when confirming security



[ad_1]

<div _ngcontent-c15 = "" innerhtml = "

New Apple iPhone 11 and iPhone 11 Pro are available for pre-order now. Not only will the latest iPhones come complete with the all-new iOS 13 operating system, but they also offer an additional surprise. Unfortunately, this is not nice: the iPhone 11 and 11 Pro will come with a security vulnerability confirmed in iOS 13 that could allow an attacker to access all stored contact information.

What is the vulnerability of bypassing iOS 13 lock screen?

Security Researcher Jose Rodriguez revealed how it is possible to bypass the protection of the lock screen and access the contact information of the target iPhone 11.

In a 13 September tweetRodriguez has posted a link to a YouTube video with the message "If you do not enter the code, you can see the contact information iOS functionality 13. Read the description please." Apple will change there this feature before the release of iOS 13? "

You can watch this video of the exploit in action right here.

How serious is this security problem?

Any security problem must be taken seriously, but not all exploits are equal. The first thing to say about it is that it is far from a simple attack method and requires the attacker to have physical access to the target iPhone.

For most people, most of the time, this means you will not worry too much. Plus, once the attacker has got their hands on your iPhone 11 (or any iPhone under iOS 13 from somewhere else), it still requires a call or FaceTime session. another phone and a series of relatively complex answers. This is not an attack that can be conducted in seconds if you left your iPhone on the table by jumping to the bathroom!

That involves the security feat of the iPhone 11?

As an Apple insider reports: "Once the call has gone past, the recipient of the call should choose to answer with a personalized message rather than answering the call." But the complexity of the exploit does not stop there, because VoiceOver using Siri must be turned on and off again from the message screen. "After the VoiceOver switchover, the user can add a contact field, which allows you to view contact information from any contact of the phone," says Apple Insider.

How can you mitigate this feat iOS 13 lock screen?

Besides the obvious, keep control of your iPhone 11, there is another method of mitigating attacks according to The Register. This involves "disabling" the response message "in the face identification settings of your iDevice and its PIN", reports, "in the section" allow access in case of lock. "This feature is of course enabled by default in iOS 13.

What is the answer of Apple?

I have contacted Apple to get a statement and will update this article if and when we receive one. However, The Register and other sources suggest that the problem of the lock screen will be resolved in the iOS 13.1 update, which is due to be released Sept. 30. However, this means that iOS 13 will be released on September 19 and will work on the iPhone 11 and the iPhone. 11 Pro released on September 20 will still be vulnerable to this somewhat complicated mode of attack.

More on Forbes

Apple at the top of the phishing list, Microsoft is distinguished by its absence

This iPhone piracy allows Google to access iOS device files

The Apple iPhone FaceID hacked in less than 120 seconds

WhatsApp Hack Attack can change your messages

IPhone users warned under the name of Malware and the US Supreme Court are targeting Apple

">

The new Apple iPhone 11 and iPhone 11 Pro are available for pre-order now. Not only will the latest iPhones come complete with the all-new iOS 13 operating system, but they also offer an additional surprise. Unfortunately, this is not nice: the iPhone 11 and 11 Pro will come with a security vulnerability confirmed in iOS 13 that could allow an attacker to access all stored contact information.

What is the vulnerability of bypassing iOS 13 lock screen?

Security Researcher Jose Rodriguez revealed how it is possible to bypass the lock screen protection and access the contact information of the target iPhone 11.

In a 13 September tweetRodriguez has posted a link to a YouTube video with the message "If you do not enter the code, you can see the contact information iOS functionality 13. Read the description please." Apple will change there this feature before the release of iOS 13? "

You can watch this video of the exploit in action here.

How serious is this security problem?

Any security problem must be taken seriously, but not all exploits are equal. The first thing to say about it is that it is far from a simple attack method and requires the attacker to have physical access to the target iPhone.

For most people, most of the time, this means you will not worry too much. Plus, once the attacker has got their hands on your iPhone 11 (or any iPhone under iOS 13 from somewhere else), it still requires a call or FaceTime session. another phone and a series of relatively complex answers. This is not an attack that can be conducted in seconds if you left your iPhone on the table by jumping to the bathroom!

That involves the security feat of the iPhone 11?

As Apple Insider reports: "Once the call is over, the recipient of the call should choose to respond with a personalized message rather than answering the call." But the complexity of the exploit does not stop there, because VoiceOver using Siri must be turned on and off again from the message screen. "After the VoiceOver switchover, the user can add a contact field, which allows you to view contact information from any contact of the phone," says Apple Insider.

How can you mitigate this feat iOS 13 lock screen?

Besides the obvious, keep control of your iPhone 11, there is another method of mitigating attacks according to The Register. This involves "turning off" the response message "in the face and password identification settings of your iDevice," Registry Reports ", in the" Allow Locked Access "section. This feature is of course enabled by default in iOS 13.

What is the answer of Apple?

I have contacted Apple to get a statement and will update this article if and when we receive one. However, The Register and other sources suggest that the problem of the lock screen will be resolved in the iOS 13.1 update, which is due to be released Sept. 30. However, this means that iOS 13 will be released on September 19 and will work on the iPhone 11 and the iPhone. 11 Pro released on September 20 will still be vulnerable to this somewhat complicated mode of attack.

More on Forbes

Apple at the top of the phishing list, Microsoft is distinguished by its absence

This iPhone piracy allows Google to access iOS device files

The Apple iPhone FaceID hacked in less than 120 seconds

WhatsApp Hack Attack can change your messages

IPhone users warned under the name of Malware and the US Supreme Court are targeting Apple

[ad_2]

Source link