iOS 11 patches an exploit that could be used to crack an iPhone 7 or iPhone 7 Plus passcode using a $500 hardware hacking solution, Apple confirmed to TechCrunch this afternoon.

The exploit, demonstrated by YouTube user EverythingApplePro yesterday, was never really of any concern to iPhone users because of the extreme parameters required to make it work in a timely manner, according to TechCrunch. It uses a $500 piece of hardware, requires physical access to an iPhone 7 or 7 Plus, realistically only works with a 4 digit passcode, and slows down drastically more than 10 minutes after an iPhone's passcode was last changed.


The "box" shown off in the video is similar to tools used by law enforcement officials, and while passcode-guessing hardware like this does not normally work at this speed because iOS devices lock you out after several failed passcode entry attempts, there is a bug in iOS 10 that makes it possible to guess a passcode over and over for a short period directly after the passcode has been changed. TechCrunch explains:

On iOS 10, there is a "bug" for lack of a better term, that allows repeated, rapid guesses of the passcode if you've changed it within the last minute or so. This allows the box to work within that period. Once another threshold is crossed -- say 10 minutes after a passcode is changed -- you no longer have the freedom to guess rapidly.

Without the rapid guessing enabled by the iOS 10 bug, it takes much, much longer for a solution like box to get into an iPhone because it's slowed down by Apple's passcode timeout. A six digit passcode (now the default on iOS devices) that had not been changed recently would take approximately 9.5 years to crack, for example.

According to Apple, the behavior that allows the box to work has been patched as of iOS 11 beta 4.

Top Rated Comments

Tycho24 Avatar
87 months ago
So basically don't use your iPhone 7 until iOS 11 comes out lol.
Or don’t change your passcode then give your phone to some shady looking dude with a $500 password cracking tool in his hands, within 10 minutes... until iOS 11 comes out?
Score: 20 Votes (Like | Disagree)
dannys1 Avatar
87 months ago
He sneakly didn't mention in the video that the passcode needed to be changed in the last ten minutes.

I wonder what made them bring this useless tool to market.
Score: 14 Votes (Like | Disagree)
Mercifull Avatar
87 months ago
He sneakly didn't mention in the video that the passcode needed to be changed in the last ten minutes.

I wonder what made them bring this useless tool to market.
To flog to YouTubers hoping to make money from adverts.
Score: 10 Votes (Like | Disagree)
ArtOfWarfare Avatar
87 months ago
If not you get guys like these who think they're "hackers" by selling an overpriced iterative pin code guesser hahahaha
They don't think they're hackers - they know how simple the product is. The person buying it thinks they're a hacker because they have the product.
Score: 8 Votes (Like | Disagree)
luvbug Avatar
87 months ago
This "tool" seems to be about as effective as penis enlargement products, although I have no personal experience with this passcode generator :)
Score: 8 Votes (Like | Disagree)
Westside guy Avatar
87 months ago
I wonder if this was an intentional choice by the programming team? I could see someone arguing that "right after changing the passcode, people are going to be more prone to mistakes - so let's not penalize them for the first few minutes".
Score: 6 Votes (Like | Disagree)

Popular Stories

maxresdefault

Apple Announces 'Let Loose' Event on May 7 Amid Rumors of New iPads

Tuesday April 23, 2024 7:11 am PDT by
Apple has announced it will be holding a special event on Tuesday, May 7 at 7 a.m. Pacific Time (10 a.m. Eastern Time), with a live stream to be available on Apple.com and on YouTube as usual. The event invitation has a tagline of "Let Loose" and shows an artistic render of an Apple Pencil, suggesting that iPads will be a focus of the event. Subscribe to the MacRumors YouTube channel for more ...
Apple Vision Pro Dual Loop Band Orange Feature 2

Apple Cuts Vision Pro Shipments as Demand Falls 'Sharply Beyond Expectations'

Tuesday April 23, 2024 9:44 am PDT by
Apple has dropped the number of Vision Pro units that it plans to ship in 2024, going from an expected 700 to 800k units to just 400k to 450k units, according to Apple analyst Ming-Chi Kuo. Orders have been scaled back before the Vision Pro has launched in markets outside of the United States, which Kuo says is a sign that demand in the U.S. has "fallen sharply beyond expectations." As a...
Apple Silicon AI Optimized Feature Siri

Apple Releases Open Source AI Models That Run On-Device

Wednesday April 24, 2024 3:39 pm PDT by
Apple today released several open source large language models (LLMs) that are designed to run on-device rather than through cloud servers. Called OpenELM (Open-source Efficient Language Models), the LLMs are available on the Hugging Face Hub, a community for sharing AI code. As outlined in a white paper [PDF], there are eight total OpenELM models, four of which were pre-trained using the...
iPad And Calculator App Feature

Apple Finally Plans to Release a Calculator App for iPad Later This Year

Tuesday April 23, 2024 9:08 am PDT by
Apple is finally planning a Calculator app for the iPad, over 14 years after launching the device, according to a source familiar with the matter. iPadOS 18 will include a built-in Calculator app for all iPad models that are compatible with the software update, which is expected to be unveiled during the opening keynote of Apple's annual developers conference WWDC on June 10. AppleInsider...
iOS 17 All New Features Thumb

iOS 17.5 Will Add These New Features to Your iPhone

Sunday April 21, 2024 3:00 am PDT by
The upcoming iOS 17.5 update for the iPhone includes only a few new user-facing features, but hidden code changes reveal some additional possibilities. Below, we have recapped everything new in the iOS 17.5 and iPadOS 17.5 beta so far. Web Distribution Starting with the second beta of iOS 17.5, eligible developers are able to distribute their iOS apps to iPhone users located in the EU...