SoylentNews
SoylentNews is people
https://soylentnews.org/

Title    Researchers Devise iPhone Malware That Runs Even When Device is Turned Off
Date    Monday May 23 2022, @04:01AM
Author    Fnord666
Topic   
from the is-it-off-off dept.
https://soylentnews.org/article.pl?sid=22/05/21/1517219

Freeman writes:

https://arstechnica.com/information-technology/2022/05/researchers-devise-iphone-malware-that-runs-even-when-device-is-turned-off/

When you turn off an iPhone, it doesn't fully power down. Chips inside the device continue to run in a low-power mode that makes it possible to locate lost or stolen devices using the Find My feature or use credit cards and car keys after the battery dies. Now researchers have devised a way to abuse this always-on mechanism to run malware that remains active even when an iPhone appears to be powered down.

It turns out that the iPhone's Bluetooth chip—which is key to making features like Find My work—has no mechanism for digitally signing or even encrypting the firmware it runs. Academics at Germany's Technical University of Darmstadt figured out how to exploit this lack of hardening to run malicious firmware that allows the attacker to track the phone's location or run new features when the device is turned off.

This video provides a high overview of some of the ways an attack can work.
[...]
"The current LPM implementation on Apple iPhones is opaque and adds new threats," the researchers wrote in a paper published last week.


Original Submission

Links

  1. "Freeman" - https://soylentnews.org/~Freeman/
  2. "video" - https://www.youtube.com/watch?v=KrqTHd5oqVw
  3. "paper" - https://arxiv.org/pdf/2205.06114.pdf
  4. "Original Submission" - https://soylentnews.org/submit.pl?op=viewsub&subid=55273

© Copyright 2024 - SoylentNews, All Rights Reserved

printed from SoylentNews, Researchers Devise iPhone Malware That Runs Even When Device is Turned Off on 2024-04-25 04:20:45