'GrayKey' iPhone Unlocking Box Used by Law Enforcement Shown Off in Photos

Last week, news of a previously-unknown iPhone unlocking device called GrayKey surfaced, and today, MalwareBytes shared photos and additional information about the product, which is designed for law enforcement officials.

Created by a company named Grayshift, GrayKey is a small, portable gray box equipped with dual Lightning cables.

graykey1
Two iPhones can be connected to the GrayKey at once, and need to be connected for about two minutes to install proprietary software that's designed to guess the passcode for an iPhone. Once the software is installed, it will work to crack the passcode, a process that can take as little as a few hours for a short passcode or several days for a longer six-digit passcode.

Once the GrayKey software has cracked the passcode, it'll be displayed right on the screen of the iPhone. The iPhone can then be plugged back into the GrayKey to download all of the data on the iPhone, including the unencrypted contents of the Keychain, which can then be accessed using a computer.

graykey2
Based on screenshots, the GrayKey can crack modern iPhones running modern versions of iOS. It works with the iPhone X and iOS 11.2.5, the version of iOS that was likely available when the screenshots were captured. It probably also works with iOS 11.2.6, unless Apple has managed to block it in the latest operating system update.

graykey3
Grayshift presumably designed the GrayKey for law enforcement professionals, and it's relatively expensive. A $15,000 option requires internet connectivity and is geofenced to a specific location once set up, while a $30,000 option requires no internet connection and can be used anywhere.

MalwareBytes worries that the portable version of the GrayKey could easily fall into the wrong hands. It uses two-factor authentication, but given that people "often write passwords on stickies and put them on their monitors," it's possible the token could be kept in the same location as the device.

What happens if the GrayKey becomes commonplace in law enforcement? The cheaper model isn't much of a danger if stolen--unless it's stolen prior to setup--but at 4″x 4″x 2″, the unlimited model could be pocketed fairly easily, along with its token, if stored nearby. Once off-site, it would continue to work. Such a device could fetch a high price on the black market, giving thieves the ability to unlock and resell stolen phones, as well as access to the high-value data on those phones.

How the GrayKey works is not known, but it's believed to be using some sort of jailbreaking process that could damage iPhones in some way. It's also not known how the GrayKey device itself is protecting data that's stored on it, and whether or not the data could be remotely accessed by hackers.

It's also unknown who Grayshift is selling the devices to. It's possible that sales are limited to law enforcement officials in the United States, but it's also possible that it's being offered abroad. Other devices of this type have slipped out of the hands of law enforcement and have become widely available, so the same could happen with the GrayKey.

Apple is continually working to fix the kinds of exploits used by devices like the GrayKey, so it's possible whatever mechanism the box uses will be fixed in a future update. The average iPhone owner likely doesn't need to worry about the GrayKey, but as MalwareBytes points out, it is troublesome knowing such a device could fall into the hands of malicious entities.

Note: Due to the political nature of the discussion regarding this topic, the discussion thread is located in our Politics, Religion, Social Issues forum. All forum members and site visitors are welcome to read and follow the thread, but posting is limited to forum members with at least 100 posts.

Popular Stories

Apple CarPlay Ultra instrument cluster themes 01

Apple's CarPlay Ultra Is Here – Does Your iPhone Support It?

Thursday May 15, 2025 5:17 am PDT by
Apple's recently announced CarPlay Ultra promises a deeply integrated in-car experience, but not all iPhone users will be able to take advantage of the new feature. According to Apple's press release, CarPlay Ultra requires an iPhone 12 or later running iOS 18.5 or later. This means if you're using an iPhone 11, iPhone XR, or any older model, you'll need to upgrade your device to access...
iPhone 17 Air Pastel Feature

iPhone 17 Air Battery Capacity and Weight Allegedly Revealed

Monday May 19, 2025 2:22 am PDT by
Apple is expected to launch an all-new ultra-thin iPhone 17 Air later this year, and while there have been plenty of rumors about the camera's overall design and thinness, we haven't heard any details about the device's weight and battery capacity until now. According to the leaker going by the account name "yeux1122" on the Korean-langauge Naver blog, the 6.6-inch iPhone 17 Air has a weight ...
Apple CarPlay Ultra instrument cluster themes 01

Apple's 'CarPlay Ultra' Experience Now Available

Thursday May 15, 2025 5:07 am PDT by
Apple today announced that its next-generation CarPlay experience, now dubbed "CarPlay Ultra" begins rolling out today, starting with Aston Martin vehicles. Subscribe to the MacRumors YouTube channel for more videos. CarPlay Ultra is now available with new Aston Martin vehicle orders in the U.S. and Canada. It will also be available for existing models that feature the brand's next-generation ...
WWDC 2025 Banner

Apple Announces WWDC 2025 Schedule, Including Keynote Time

Tuesday May 20, 2025 8:13 am PDT by
Apple today announced a more detailed schedule for its annual developers conference WWDC, which runs from June 9 through June 13. The schedule confirms that Apple's keynote will begin on Monday, June 9 at 10 a.m. Pacific Time, with a live stream to be available on Apple.com, in the Apple TV app, and on YouTube. During the keynote, Apple is expected to announce iOS 19, iPadOS 19, macOS 16,...
CarPlay Ultra Climate Controls

Apple Says These Vehicle Brands Plan to Offer All-New CarPlay Ultra

Thursday May 15, 2025 8:13 am PDT by
Apple today announced the launch of CarPlay Ultra, the long-awaited next-generation version of its CarPlay software system for vehicles. CarPlay Ultra features deep integration with a vehicle's instrument cluster and systems, built-in Radio and Climate apps, customizable widgets, and more. The interface is tailored to each vehicle model and automaker's identity, and drivers can also adjust...
macOS 16 visionOS Inspired Feature 1

macOS 16: Everything We Know So Far

Tuesday May 20, 2025 7:31 am PDT by
The Worldwide Developers Conference (WWDC), Apple's annual developer and software-oriented event, is less than three weeks away. We haven't heard a great deal about macOS 16 ahead of its announcement this year, so we could be in for some major surprises when June 9 rolls around. Here's what we know so far about the next major update to Apple's Mac operating system. macOS 16 Name? Every year ...
Apple Intelligence General Feature

Report: Apple's Next-Gen Version of Siri Is 'On Par' With ChatGPT

Monday May 19, 2025 9:00 am PDT by
Apple has big plans to improve Siri over the next few years, Bloomberg's Mark Gurman and Drake Bennett report. Some Apple executives are now reportedly pushing to turn Siri into a true ChatGPT competitor. A next-generation, chatbot version of Siri has reportedly made significant progress during testing over the past six months; some executives allegedly now see it as "on par" with recent...

Top Rated Comments

Albright Avatar
94 months ago
The average iPhone owner likely doesn't need to worry about the GrayKey
Ah, yes, the "something to hide" fallacy.

Apple, please do what you can to protect us from this.
Score: 100 Votes (Like | Disagree)
Stiss Avatar
94 months ago
Imagine buying one and one software update later it doesn't work anymore. :D
Score: 67 Votes (Like | Disagree)
thadoggfather Avatar
94 months ago
Steve would’ve approved of the design.

Does it just come in space grey?

Or gold / silver too?
Score: 62 Votes (Like | Disagree)
justperry Avatar
94 months ago
$30.000 is peanuts for Apple, they just buy one and before you know it iOS is patched, if not already.
Score: 60 Votes (Like | Disagree)
aforty Avatar
94 months ago
This is why you don't use 6-digit passcodes but instead a complex alphanumeric one.
Score: 51 Votes (Like | Disagree)
ksnell Avatar
94 months ago
$30.000 is peanuts for Apple, they just buy one and before you know it iOS is patched, if not already.
Apple: "Hi yes I need to order two GrayKey's."

GrayKey: "Okay and where are we shipping these?"

Apple: "Cuperti--"

GrayKey: "Click."
Score: 29 Votes (Like | Disagree)