A network-related or instance-specific error occurred while establishing a connection to SQL Server. The server was not found or was not accessible. Verify that the instance name is correct and that SQL Server is configured to allow remote connections. (provider: Named Pipes Provider, error: 40 - Could not open a connection to SQL Server) Hacker bypasses iOS passcode and it's surprisingly easy, Electronics & Gadgets : Today Indya

Latest News

Hacker bypasses iOS passcode and it's surprisingly easy
Monday, June 25, 2018 IST
Hacker bypasses iOS passcode and it

Passcodes have pretty much become the standard security measure of choice for most iPhone users. Even in the presence of more advanced biometric solutions, like Face ID, the sheer convenience and approachability of a four, six or even longer digit number, makes it the ideal fallback security measure. The way it works on iOS is simple, yet efficient - you get a total of 10 attempts to enter the code. Fail all of them and the data will get automatically wiped, for security. The number of input attempts is tracked by a hardware module, called the Secure Enclave, making it pretty impossible to actually disable the limit or circumvent it directly. As an extra any brute-force measure, each consecutive pin entry has a slightly longer processing time.

 
 

Now for the magic. The way this attack works is by attaching an external input device to the iPhone. One simulation a keyboard, to be exact. A hacker, going by the name "Hickey", figured out that instead of entering codes one by one and then waiting for a validation, you can actually generate all the combinations in a single long string of inputs, without any spaces and send it over to the phone. Apparently, iOS will still attempt to process all the numbers. The other part of the trick stems from the fact that the keyboard input takes precedence over the wipe data command. So, in effect, the Secure Enclave is still counting your failed attempts, but the actual wipe can't occur before the phone is finished processing the inputs. That means that if you iterate through all the possible combinations, you will eventually unlock and cancel out the wipe command.
 
 
Now, "eventually" is the operative word here. A four digit passcode typically takes between three and five seconds to process. That roughly equals an hour for just 100 combinations. And you do have 9999 to go through, in the worst case scenario. Things ramp up quickly with six digit codes - which is now the default length on iOS. Still, it is interesting to see that particular brute force attack has been executed successfully even on iOS 11.3.

 
 

That being said, Apple hasn't remained oblivious to such issues, since this is far from the only method for circumventing iPhone security out there. Companies, like Grayshift have actually constructed an entire business model, based on such activities. To combat this, iOS 12 has, what is know as a USB Restricted Mode. It prevents the Lightning port from being used to communicate with other devices, if the phone hasn’t been unlocked for over an hour. That makes using methods, like Hickey's brute force attack a lot harder, but definitely not infeasible.

 
 
 
 
 

Related Topics

 
 
 

Trending News & Articles

 Article
Pocophone F1 to be the fastest handset in its class, Snapdragon 845 confirmed

Two days ago Xiaomi teased the arrival of its new

Recently posted . 20K views . 4 min read
 

 Article
The Top 5 Best USB/PD Phone Charger in India 2023

View Top 5 Mobile Chargers in India as on 08 Feb 2023. This rundown is compiled according t...

Recently posted . 5K views . 6 min read
 

 Article
Asus TUF Gaming FX505DY, TUF Gaming FX705DY Laptops Launched in India With AMD CPU and GPU

HIGHLIGHTS   • Both laptops use the AMD Ryzen 5 3350H CPU and Radeon RX 560 GPU • The...

Recently posted . 5K views . 2 min read
 

 Article
India's Top 5 Mobile Charger manufacturer Brand 2019

The following list of India's Top 5 Mobile Charger manufacture Brand 2019  

Recently posted . 4K views . 0 min read
 

 
 

More in Electronics & Gadgets

 Article
Xiaomi and Samsung top smartphone brands in India: Report

Xiaomi now controls 23.5% of the Indian smartphone market, which ties it with Samsung as the leading smartphone vendor in the country.  ...

Recently posted. 971 views . 1 min read
 

 Article
Xiaomi Redmi Note 7 Pro vs Oppo F11 Pro: Price in India, specifications, and features compared

The Oppo F11 Pro also gets a pop-up selfie camera, feature VOOC Super Fast Charging and more. The Oppo F11 Pro has be priced starting from Rs. 24,999 for the 6GB RA...

Recently posted. 1K views . 1 min read
 

 Article
THE TRUTH ABOUT THE HOT WIND EXPELLED FROM AIR CONDITIONERS

Many of us may have had the misfortune of getting stuck behind an air conditioner and experiencing a blast of unwanted hot air. It’s obvious that this is comi...

Recently posted. 1K views . 1 min read
 

 Video
Smart Goggles For Blind



Recently posted . 1K views
 

 Reviews
OnePlus Bullets Wireless Review



Recently posted . 2K views . 69 min read
 

 Reviews
Review: GoPro Hero5 Black



Recently posted . 2K views . 26 min read
 

 Article
Workers at Amazon avoid bathroom breaks under work pressure: claims report

Imagine a work place where you can’t even go to the bathroom because the work pressure is so high. If a UK-based journalist’s account is to be believed ...

Recently posted. 896 views . 3 min read
 

 Article
Your digital life may be up for sale on the Dark Web for just Rs 3,500: Kaspersky

Kaspersky researchers found that the price paid for a single hacked account is lower, with most selling for about $1 per account and discounts bring offered for b...

Recently posted. 883 views . 1 min read
 

 
 
 

   Prashnavali

  Thought of the Day

आपके शब्द ही आपकी Master key हैं,,,,! ये दिलों के दरवाजे खोल भी सकते हैं,,,,! और लोगों के मुँह पर ताले लगा भी सकते हैं,,,,!!
Anonymous

Be the first one to comment on this story

Close
Post Comment
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST


ads
Back To Top