Berlin-based Security Research Labs has detailed various exploits within the iPhone 5s' Touch ID security feature and iOS 7 that allow would-be criminals to bypass the device's security features, reports Reuters.

The method for bypassing the Touch ID security feature found on the iPhone 5s is very similar to the one used by the Chaos Computer Club, which also claimed to hack Touch ID earlier this month. A video posted on the group’s website shows how Touch ID can be bypassed using information gathered from fingerprints left on the victim’s phone display, demonstrating that a photo taken with the iPhone 4s can be used for developing a mold.


Another video by the group outlines a scenario in which a knowledgeable criminal could steal an iPhone 5s running iOS 7, use Control Center on the lock screen (enabled by default) to turn on Airplane Mode and disable the device’s connectivity, then using a fingerprint mold to bypass the lock screen and disable other various security features. Ultimately, the group shows how an attacker could conceivably gain complete control of a victim's device, Apple ID, and even other services such as Google accounts.

The group ends the video by suggesting Apple do the following to increase security efficiency in iOS 7:

1. Make Airplane Mode inaccessible from the lock screen by default and require PIN after setting Airplane Mode or removing SIM Card
2. Warn users not to store password-reset email accounts on iDevices
3. When device is lost for good, advise users to revoke its privileges
4. Do not inform potential attackers how the device is protected
5. Upon reconnecting to the Internet, iOS should not allow email retrieval before the device’s wipe- or don’t-wipe status can be retrieved


Aside from any future changes Apple may make to increase security, users can already prevent the simple bypass of the Remote Wipe feature by turning off access to Control Center from the lock screen.

iOS 7 has recently been the subject of much praise by security officials, including the New York Police Department, which passed out flyers in New York City recommending users to update to iOS 7, along with government officials who have praised iOS 7’s Activation Lock. Meanwhile, Touch ID has been the subject of much scrutiny since its release, with U.S. Senator Al Franken sending a letter to Tim Cook asking a number of questions about the security of the system and the exact fingerprint storage process. Apple has also published an extensive knowledge base article about the benefits of the Touch ID system to alleviate some consumer concerns.

Top Rated Comments

Technarchy Avatar
114 months ago
So far it looks like Touch ID is a pain in the ass to bypass.
Score: 20 Votes (Like | Disagree)
smiddlehurst Avatar
114 months ago
I hope Apple will listen.

I have seen a lot of "not thought of / invented here" attitude.

Not saying they don't, but it takes a lot of crying on many occasions.

Listen to.... what, exactly?

Pretty much all security can be bypassed if you have physical access to the device and enough time / money / resources / skill. Security on phones is no exception to this, indeed they can be far less secure than say a desktop as if it's stolen with other items those items often provide data to help bypass that security.

Touch ID is simply another form of pass code and all pass codes do is try to discourage the 'casual' theft of phones for resale and prevent a typical thief from accessing your data. Touch ID isn't suddenly going to turn a device into a digital Fort Knox. What it will do is actually far more useful - it removes a pain point and makes using a pass code far easier and more convenient (dare I say, even makes it a little bit fun). That, in turn, will see a far higher percentage of iOS devices having some form of security active and that will make them a less attractive target.

The only time anyone really needs to worry about this is if someone figures out a genuine bypass that removes security and gives full access to the phone that can be done simply and easily. Everything else is just grandstanding for media attention.
Score: 3 Votes (Like | Disagree)
Slim02 Avatar
114 months ago
Well people stop calling the bypass a damn hack.. It is not a hack because there is nothing being hack...
Score: 3 Votes (Like | Disagree)
Iampr Avatar
114 months ago
Why not just set a restriction (Settings | General | Restrictions) on making changes to accounts? Then the find my iPhone can't be turned off without knowing an additional 4 digit code
Score: 3 Votes (Like | Disagree)
caliguy Avatar
114 months ago
I want to see them bypass the sensor with "real world" fingerprints. Take the iPhone sitting on my desk and lift one of those smudges...
Score: 3 Votes (Like | Disagree)
fallenjt Avatar
114 months ago
How the hell can you get that fingerprint on the glass so easily? You coated your finger with some type of grease? I press my thumb hard on the glass and got no fingerprint at all after multiple times. Your method may work in theory, but in reality, you wont be able to get a fringerprint from iPhone screen. Even if you can get that print, it must be the correct fingerprint on file.
Somehow, middle finger can work the best for touch ID because you dont use it to operate the phone ever, but thumb and index fingers.
Score: 2 Votes (Like | Disagree)

Popular Stories

maxresdefault

M2 13-Inch MacBook Pro With 256GB SSD Appears Slower Than Equivalent M1 in Real-World Speed Tests

Monday June 27, 2022 1:57 pm PDT by
Benchmark testing has indicated that the 256GB variant of the 13-inch MacBook Pro with M2 chip offers slower SSD performance than its M1 equivalent, and now real-world stress testing by YouTuber Max Yuryev of Max Tech suggests that the 256GB SSD in the 13-inch MacBook Pro is also underperforming in day-to day-usage. The M2 MacBook Pro with 256GB SSD and 8GB RAM was slower than the M1 MacBook ...
M2 Pro and Max Feature

Apple's Upcoming M2 Pro Chip for High-End MacBook Pro and Mac Mini Will Reportedly Be 3nm

Monday June 27, 2022 7:31 am PDT by
TSMC will manufacture Apple's upcoming "M2 Pro" and "M3" chips based on its 3nm process, according to Taiwanese industry publication DigiTimes. "Apple reportedly has booked TSMC capacity for its upcoming 3nm M3 and M2 Pro processors," said DigiTimes, in a report focused on competition between chipmakers like TSMC and Samsung to secure 3nm chip orders. As expected, the report said TSMC will...
iPhone 11 Pro vs iPhone 14 Pro

iPhone 11 Pro vs. 14 Pro: New Features to Expect if You've Waited to Upgrade

Monday June 27, 2022 11:22 am PDT by
With many customers choosing to upgrade their iPhone every two or three years nowadays, there are lots of iPhone 11 Pro users who might be interested in upgrading to the iPhone 14 Pro later this year. Those people are in for a treat, as three years of iPhone generations equals a long list of new features and changes to look forward to. Below, we've put together a list of new features and...
original iphone 2007

15 Years Ago Today, the iPhone Went On Sale

Wednesday June 29, 2022 4:43 am PDT by
Fifteen years ago to this day, the iPhone, the revolutionary device presented to the world by the late Steve Jobs, officially went on sale. The first iPhone was announced by Steve Jobs on January 9, 2007, and went on sale on June 29, 2007. "An iPod, a phone, an internet mobile communicator... these are not three separate devices," Jobs famously said. "Today, Apple is going to reinvent the...
tesla carplay hack

Tesla Apple CarPlay Hack Updated to Work With Any Tesla Model

Monday June 27, 2022 3:38 am PDT by
Polish developer Michał Gapiński has released a new and improved version of his "Tesla Android Project" which brings Apple's CarPlay experience to more Tesla vehicles than ever before. According to Gapiński, version 2022.25.1 provides "100% functional CarPlay integration for any Tesla," and comes with several new features and bug fixes. The project now supports DRM video playback so that...
13 inch macbook pro m2 mock feature 2

Base 13-Inch MacBook Pro With M2 Chip Has Significantly Slower SSD Speeds

Sunday June 26, 2022 2:52 pm PDT by
Following the launch of Apple's new 13-inch MacBook Pro with the M2 chip, it has been discovered that the $1,299 base model with 256GB of storage has significantly slower SSD read/write speeds compared to the equivalent previous-generation model. YouTube channels such as Max Tech and Created Tech tested the 256GB model with Blackmagic's Disk Speed Test app and found that the SSD's read and...
maxresdefault

Video Comparison: M2 MacBook Pro vs. M1 MacBook Pro

Tuesday June 28, 2022 2:45 pm PDT by
Apple last week launched an updated version of the 13-inch MacBook Pro, and it is the first Mac that is equipped with an updated M2 chip. As it's using a brand new chip, we thought we'd pick up the M2 MacBook Pro and compare it to the prior-generation M1 MacBook Pro to see just what's new. Subscribe to the MacRumors YouTube channel for more videos. For the video comparison, we're using the...
iPhone vs Galaxy Larger

Apple Executive Says Samsung Copied the iPhone and Simply 'Put a Bigger Screen Around It'

Tuesday June 28, 2022 8:59 am PDT by
The Wall Street Journal's Joanna Stern today shared a new documentary about the evolution of the iPhone ahead of the 15th anniversary of the device launching on June 29, 2007. The documentary includes an interview with Apple's marketing chief Greg Joswiak, iPhone co-creator Tony Fadell, and a family of iPhone users. One segment of the interview reflects on Android smartphones gaining larger...
widgets ios 16 feature

Gurman: iPhone 14 Pro to Feature Always-On Display Showing iOS 16's New Lock Screen Widgets

Sunday June 26, 2022 7:36 am PDT by
iPhone 14 Pro models are widely expected to feature always-on displays that allow users to view glanceable information without having to tap to wake the screen. In the latest edition of his Power On newsletter for Bloomberg, Mark Gurman said the feature will include support for iOS 16's new Lock screen widgets for weather, fitness, and more. "Like the Apple Watch, the iPhone 14 Pro will be...