New exploit could make permanent jailbreaking a reality for the iPhone – BGR


Whether people still jailbreak iPhones and iPads or not, security researchers will keep hunting for vulnerabilities in hardware or software that could be used to develop such tools. The market is highly lucrative for some companies, as there are plenty of parties interested in being able to hack the iPhone, to either install software that’s not available from the App Store or for more nefarious activities, like getting access to someone’s devices.

Apple, which has fought against jailbreaking for years, has a bounty program in place that should help it stay on top of many of these vulnerabilities. But researchers can always just go public with their findings.

Twitter user axi0mX did exactly that on Friday, sharing an “epic jailbreak” called checkm8 that works on all iOS devices from iPhone 4s to iPhone X, in addition to all of the iPad models that were released in that time.

According to the hacker, hundreds of millions of iOS devices might be affected, and Apple shouldn’t be able to patch the exploit, which is described as a “permanent bootrom exploit for hundreds of millions of iOS devices.”

In an extended thread, the hacker explained that he’s not actually releasing a jailbreak that could be used immediately, but he’s making his findings public, which could lead to the creation of a jailbreak app that would work on all of the iOS devices mentioned above. Here are his tweets saying as much:

According to the hacker, the vulnerability can not be targeted without physical access to the device, and you need to trigger it via USB. That means hundreds of millions of iOS devices, including iPhones and iPads released only two years ago, aren’t at risk of being hacked remotely with the help of the newly discovered security hole.

READ ALSO  Google confirms Store discounts for some Google One subscribers and Pro Sessions for Pixel 4 owners – Ausdroid

Image Source: Zach Epstein, BGR





Source link

?
WP Twitter Auto Publish Powered By : XYZScripts.com