Categories: News

Various iPad Models Susceptible To iOS Activation Lock Exploit

The Apple mobile operating system, known as iOS, is not as invulnerable as people may want to believe. A new security leak has been discovered which allows assailants to bypass the activation lock. In doing so, they can gain “remote access” to the iOS device. To make matters worse, this exploit can be used through an average WiFi connection.

New iOS Bug Poses A Significant Risk

Discovering these vulnerabilities usually does not occur by actively looking for it. In fact, this particular bug was discovered by a user who purchased an iPad off eBay, which had a Cloud security lock function enabled. Any device under this security lock can not be used unless the user enters a password. Unfortunately, that is not necessarily the case.

Once the user set up this WiFi connection on the iPad itself, he discovered a way to bypass this iCloud protection measure. As he selected a “different” network, he also entered a long list of different symbols when the login prompt came up. For some reason, this confused the iOS security and allowed him to effectively bypass the activation lock without a password.

To put this into perspective, the vulnerability seems to behave like a standard buffer overflow attack. As the iOS operating system actually locks up and grants full admin access to the user, any security measures put in place can be bypassed without further action. This is not a positive feature for the iOS ecosystem, although Apple has already fixed the flaw in the next version of its OS.



Related Post

Users owning an Apple device running iOS version 10.1 are susceptible to this exploit, although the new update is expected to be released in the coming weeks. Unfortunately, security firm Vulnerability Lab discovered a way to bypass Apple’s fix, and use a very similar exploit to bypass the activation lock yet again.

Once the login prompt for the different Wifi network shows up, people can enter the same long line of symbols. However, they need to rotate the screen first and put the Smart Cover on the screen for a brief moment. Doing so actually results in the activation lock being bypassed, although it is far less inconspicuous to do so.

For the time being, it remains uncertain which devices are affected by this vulnerability thus far. iPads seem a very likely target, as the exploit was discovered and tested on such a machine. iPhones remain safe from harm by the look of things, although it is still a bit early to tell for sure.

If you liked this article, follow us on Twitter @themerklenews and make sure to subscribe to our newsletter to receive the latest bitcoin, cryptocurrency, and technology news.

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Starknet Introduces STRK20 To Bring Built-In Privacy To ERC-20 Tokens

The team behind Starknet has introduced a new token standard aimed at solving one of…

3 days ago

Meta Acquires Moltbook, A Social Network Built For AI Agents To Interact And Coordinate

In a move that highlights the growing race to build infrastructure for autonomous artificial intelligence,…

3 days ago

Polymarket Partners With Palantir To Develop AI Platform For Sports Betting Integrity

Prediction market platform Polymarket has entered a new partnership with Palantir Technologies and artificial intelligence…

3 days ago

Ethereum Foundation Begins Staking Treasury ETH Using Bitwise Infrastructure

The Ethereum Foundation has begun staking part of its treasury, marking a significant step in…

4 days ago

Cyberconnect And SurfAI Founder Reportedly Under Investigation In China

Fresh reports circulating in the crypto space suggest that Wei Jiequan, better known as Wilson…

4 days ago

Virtuals And dAI Launch ERC-8183 To Enable Trustless Agentic Commerce On Ethereum

The infrastructure powering autonomous AI agents on Ethereum is slowly coming together. Payments, trust layers,…

4 days ago