Your Web News in One Place

Help Webnuz

Referal links:

Sign up for GreenGeeks web hosting
September 19, 2013 11:44 pm GMT

iOS 7 Lock Screen Vulnerability Discovered Which Gives Access To Photos And Social Sharing, Apple Is Working On Fix

iPhone5s-in-case-frontVulnerabilities in Apple’s iOS lock screens have become a fixture of new iOS releases over the past few years, and iOS 7 is not exempt. A new method for bypassing the passcode on a lock screen has been discovered by idle hands and reported by Forbes’ Andy Greenberg. Update below. The lock screen bypass method involves sliding up Control Center, tapping on the timer button and holding down the power button until the cancel option comes up. You then tap on the cancel button then double-tap the home button. This gives you access to the multitasking UI. While most apps are locked out, the Camera option is accessible. This allows you to access the camera interface, but with the ability to scroll throughall of the owner’s photos, not just the ones shot in the time since the phone was last locked in the manner that the camera has worked for some time now. Not only can you scroll through the photos, but you can also tap on the share button to send photos out via email or social channels like Twitter or Facebook. So once you’re in you can post photos to Flickr or send them via email. Though Greenberg characterizes this as ‘hijacking’ those accounts, that seems a bit dramatic.Still, there is potential for embarrassment or harm if sensitive (ahem)photos get stolen or shared out through your social accounts. The bypass method has been verified by us to work properly and to not be overly difficult to execute. It took me about three tries to get it right on an iPhone 5 running iOS 7. As Greenberg notes, it’s hard to tell whether this works on an iPhone 5c or iPhone 5s as of yet. Of note: once you’re on the share sheet, you can choose a contact to send the item to, technically gaining access to the contact list (but not their details) of the device’s owner. Note that this vulnerability is incredibly easy to prevent for now. Just visit Settings>Control Center and toggle off ‘Access on Lock Screen’ to patch it up. The discovery was made by Jose Rodriguez, a soldier in Spain’s Canary Islands, who has a history of discovering these tricky bypass methods. His secret? Plenty of time waiting in cars in his former job as a driver for government officials. With past vulnerabilities, a software fix has come in a ‘point’ release of

Original Link: http://feedproxy.google.com/~r/Techcrunch/~3/s7kzFvE3UO8/

Share this article:    Share on Facebook
View Full Article

Techcrunch

TechCrunch is a leading technology blog, dedicated to obsessively profiling startups, reviewing new Internet products, and breaking tech news.

More About this Source Visit Techcrunch