Sunday, October 20, 2019

A flaw in iOS 13 can expose your contact details

SourceCNN

New York (CNN Business) A flaw in iOS 13, the new iPhone operating system Apple released Thursday, exposes contact details stored in iPhones without requiring a passcode or biometric identification. And Apple (AAPL) has known about the flaw since July, a person who reported the bug to Apple told CNN Business.

A hacker would need physical access to a target’s phone to complete the hack — but once it is in their possession they could bypass Apple’s standard security features like facial I.D. Once they have done so, they can access the phone’s address book and see information for contacts stored on the phone, as well as indications of the most recent contacts with whom the phone’s owner had been communicating.

Jose Rodriguez, a cybersecurity enthusiast, living in the Canary Islands, contacted Apple on July 3rd suggesting that he had found a “passcode bypass” and asked if his findings would be eligible for an Apple Security Bounty — a program that rewards security researchers who bring bugs to Apple’s attention.

Apple promptly followed-up on Rodriguez’s tip and company staff had several calls with the researcher during which he walked them through the vulnerability on a beta version of the software, Rodriguez said.

Rodriguez provided copies of the emails and phone records of his correspondences with Apple to CNN Business.

Suspecting Apple might not fix the flaw before releasing the new operating system to its customers, Rodriguez last week went public with his findings.

CNN Business was able to replicate the exploit on Tuesday on iPhones that had updated to the official version of iOS 13.

Apple confirmed that the exploit Rodriguez identified would be fixed in the next version of the operating system, iOS 13.1, which is due to be released on September 24th.

The company previously moved the release date for that update forward from September 30th. The company declined to say if Rodriguez’s discovery had prompted the early release.

3 COMMENTS

  1. So Apples iOS 13 has a flaw that allows your partner to go through your phone contacts and start and argument about ‘who is……….’ but omit the fact that the update allowed Apple to read your contacts thoroughly anyway so that your information is not private as it is stored by them for the authorities.

  2. Morden tecknowledges will definitely distroy the nation.
    There’s all kinds of morden phones which atrackiing the the youth and that’s what they’re looking forward t
    They’re digging and digging until they dig their grave atell U

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Headlines

Former Diplomat Cites ‘Corruption Of EDF Resources In Saint Lucia’ In Open Letter

Ambassador Daniella Tramacere Head of Delegation Delegation of the European Union to Barbados, the Eastern Caribbean States, and CARICOM/CARIFORUM Dear Ambassador Tramacere, I am a former Saint Lucian diplomat,...

Taiwan Donates Supplies to the Ministry of Equity

Press Release:-  The Embassy of the Republic of China (Taiwan) has once again  demonstrated its nation’s support by donating an assortment of humanitarian supplies...

Two Saint Lucians To Undergo Advanced Training As Cricket Coaches

By Terry Finisterre Former West Indies A captain John Eugene is one of two Saint Lucians set to undergo advanced training as a cricket coach...

Saint Lucia Prepares for FCCA 2019

Press Release:- Destination Saint Lucia is looking to strategically position itself and highlight its many offerings as tourism industry representatives meet to participate in the...
Saltibus Man Stable After Being ShotRead
+ +