4 ms·
The most surprising part for me is that iPhones have been relatively easily hackable by having access to the data port. That doesn't seem in-line with the high
by thinkloop 8y ago
The most surprising part for me is that iPhones have been relatively easily hackable by having access to the data port. That doesn't seem in-line with the high security advertised. What about the inaccessible hsm and all that other jazz?
- Shank 8y agoiPhones attempt to authenticate the port right now. A challenge system is in place if you connect an iPhone to a computer and want to authenticate it. The difference is that challenge is completely turned off with USB restricted mode. In other words, it's completely impossible for the challenge to start because the phone doesn't even let you talk to it while locked.
- alphabettsy 8y agoThe company didn’t release the details of how their exploit works, but it is believed it is an automated brute force mechanism so it’s actually attempting to bypass security by trying passcodes over and over, not breaking encryption. This is another method to slow down brute force attempts.
- wool_gather 8y agoThe GreyKey exploit most likely involves resetting the iPhone's state in between passcode attempts, avoiding the exponential timeout that you would face. It's a flaw, to be sure, but not particularly "easy". A bit more here: https://news.ycombinator.com/item?id=16829478 https://news.ycombinator.com/item?id=16829478