Apple to Give Security Researchers 'Special' iPhones for Bug Testing, macOS Bug Bounty Program Coming

Apple is planning to give security researchers access to special iPhones that will make it easier for them to find security vulnerabilities and weaknesses, reports Forbes, citing sources with knowledge of Apple's plans.

Apple is going to announce the new program at the Black Hat security conference in Las Vegas, which kicked off earlier this week and is continuing until Thursday.

iphonexrcolors1
The "special" iPhones will be similar to "dev devices," aka iPhones that are not as locked down and that will better allow security researchers to locate bugs.

What makes these iPhones special? One source with knowledge of the Apple announcement said they would essentially be "dev devices." Think of them as iPhones that allow the user to do a lot more than they could on a traditionally locked-down iPhone. For instance, it should be possible to probe pieces of the Apple operating system that aren't easily accessible on a commercial ‌iPhone‌. In particular, the special devices could allow hackers to stop the processor and inspect memory for vulnerabilities. This would allow them to see what happens at the code level when they attempt an attack on iOS code.

The iPhones won't be identical to the developer iPhones that are provided to Apple's internal staff, as they won't be as open. They are described as "lite" versions of the developer devices by Forbes, with security researchers unlikely to be able to decrypt the ‌iPhone‌'s firmware.

‌iPhone‌ prototypes created for Apple's internal staff are popular with security researchers and hackers and can fetch quite a lot of money, as noted in a report earlier this year from Motherboard. Described as "pre-jailbroken devices," the iPhones are valuable because they can be used to find vulnerabilities both by those who have good intentions and those who have bad intentions.

Releasing a similar device to security researchers who participate in the bug bounty program will perhaps allow Apple to better locate serious bugs, leading to faster fixes.

Apple is also planning to announce a new macOS bounty program, which will provide rewards to people who find and report security vulnerabilities in macOS.

Apple's announcements could perhaps come on Thursday, which is when Ivan Krstić, Apple's head of security engineering, is set to offer a "Behind the Scenes" look at iOS and macOS.

Top Rated Comments

SRLMJ23 Avatar
24 months ago
About damn time Apple offered a bug bounty program for macOS!

:apple:
Score: 13 Votes (Like | Disagree)
Quu Avatar
24 months ago
This is really great news. They are serious about our security and it shows.
Score: 6 Votes (Like | Disagree)
szw-mapple fan Avatar
24 months ago
I am now a researcher. Where is my phone? lol
If you're the kind of researcher Apple would send a phone to, the cost of an iPhone would be peanuts to you :p
Score: 3 Votes (Like | Disagree)
jzuena Avatar
24 months ago
I was planning on going to Ivan Krstic's "Behind The Scenes of iOS and Mac Security" Thursday at 12:10 anyway. We'll see if they make the announcement then.
Score: 2 Votes (Like | Disagree)
MrTemple Avatar
24 months ago
Producing vulnerable phones? Will they ever stop copying Android?
Score: 2 Votes (Like | Disagree)
Shirasaki Avatar
24 months ago
Producing vulnerable phones? Will they ever stop copying Android?
I am amazed that even in 2019, this “android copy iOS” “iOS copy android” narrative is still around. Are we still in 2012?
About damn time Apple offered a bug bounty program for macOS!

:apple:
Yeah, especially macOS is a such “unpatched” operating system, security wise.
So they’re basically giving out jail broken iPhones? Wonder how much those will end up going for on the black market afterwards...
Nope. This is less locked down but not “jailbroken iPhone”. I guess these iPhones are registered and can download special iOS version OTA or something.
Internal testing iPhone, however, will still be quite popular in black market.
Score: 2 Votes (Like | Disagree)

Top Stories

apple watch 6s 202009

Bloomberg: Apple Watch Series 7 to Feature Thinner Screen Bezels, Faster Processor, and Updated Ultra Wideband Tech

Monday June 14, 2021 3:41 am PDT by
This year's Apple Watch Series 7 is likely to have thinner display bezels and use a new lamination technique that brings the display closer to the front cover, according to Bloomberg's Mark Gurman. From the report: The Cupertino, California-based tech giant is planning to refresh the line this year -- with a model likely dubbed the Apple Watch Series 7 -- by adding a faster processor,...
ios 15 home screen icons

iOS 15 Lets You Drag and Drop Images and Text Across Apps

Saturday June 12, 2021 3:17 pm PDT by
Apple this week previewed iOS 15, which is available now in beta for developers ahead of a public release later this year. One smaller but useful new feature added is the ability to drag and drop images, text, files, and more across apps on iPhone. MacStories editor-in-chief Federico Viticci demonstrated the new feature in a tweet: Using cross-app drag and drop on iPhone in iOS 15. Finally 🎉 #WW ...
studio buds family

Beats Studio Buds Debuting Today With Active Noise Cancellation, Stemless Design, and More for $150

Monday June 14, 2021 8:00 am PDT by
We've seen a lot of teasers about the Beats Studio Buds over the past month since they first showed up in Apple's beta software updates, and today they're finally official. The Beats Studio Buds are available to order today in red, white, and black ahead of a June 24 ship date, and they're priced at $149.99. The Studio Buds are the first Beats-branded earbuds to truly compete with AirPods...
apple virtual game controller ios 15

Apple Makes New On-Screen Game Controller Available to Developers on iOS 15 and iPadOS 15

Saturday June 12, 2021 12:36 pm PDT by
During the Platforms State of the Union at WWDC this week, Apple unveiled a new API for iOS 15 and iPadOS 15 that enables developers to implement an on-screen virtual game controller in their iPhone and iPad games with just a few lines of code. While many iPhone and iPad games already offer on-screen controls, Apple's new virtual game controller is available to all developers, easy to add,...
ipad mini 6

Next iPad Mini Will Allegedly Feature Thinner Bezels, USB-C Port, and Touch ID Power Button

Friday June 11, 2021 1:13 pm PDT by
On his newly launched Front Page Tech website, leaker Jon Prosser has shared renders showing off the alleged design of the next-generation iPad mini, which he says are based on schematics, CAD files, and real images of the device. In line with details shared earlier this month by Bloomberg's Mark Gurman and Debby Wu, Prosser claims that the new iPad mini will feature slimmer bezels around...
maxresdefault

Apple Promotes iPad Pro in New Ad With 'The Little Mermaid' Musical Spin

Saturday June 12, 2021 7:01 am PDT by
In a currently unlisted ad on YouTube, Apple is promoting the versatility, portability, and power of the M1 iPad Pro in a fun musical inspired by The Little Mermaid's "Part of Your World" soundtrack. In the ad, which features the main character using an M1 iPad Pro, Magic Keyboard, and Apple Pencil, multiple users can be seen struggling with their old PCs indoors while hoping that they can...
passwords system preferences

macOS Monterey Features Dedicated Password Section in System Preferences, Built-In Authenticator and More

Friday June 11, 2021 2:32 pm PDT by
macOS Monterey makes several improvements to password management, positioning iCloud Keychain as an ideal password service to replace third-party services like Lastpass and 1Password. In System Preferences, there's a new "Passwords" section that houses all of your iCloud Keychain logins and passwords so they're easier to get to, edit, and manage. There's a similar Passwords section that's...
macos monterey tidbits feature copy

macOS Monterey Tidbits: Animated Memoji on Login Screen, Change the Color of the Mouse Pointer, and More

Friday June 11, 2021 10:27 am PDT by
We've highlighted several new features coming in macOS Monterey, such as Low Power Mode and the option to erase a Mac without reinstalling the operating system, but there are some smaller tidbits that we wanted to share. Animated Memoji on Login Screen One small but fun new feature in macOS Monterey is the addition of a personalized Memoji on the login screen, complete with animated facial...
m1 imac back

Some M1 iMac Models Shipping With Crooked Mountings

Monday June 14, 2021 12:50 pm PDT by
Some M1 iMacs appear to have a manufacturing defect that causes the display to be mounted on the stand in a way that's not perfectly aligned, leading to a crooked display. YouTuber iPhonedo over the weekend published a review of the M1 iMac, and he found that his machine appeared to be tilted on one side, a mounting disparity that was visibly noticeable and proved with a ruler. Another...
mr white ipod touch 5 protoype3

Unreleased iPod Touch 5 With Chamfered Edges and 30-Pin Dock Connector Shared Online

Thursday June 10, 2021 2:05 am PDT by
Occasional leaker Mr White has today shared interesting images on Twitter of what appears to be an old-school fifth-generation iPod touch prototype with chamfered edges and a brushed aluminum finish. The original iPod touch 5 that Apple released in October 2012 had a unibody anodized aluminum chassis with rounded edges, and was available in several colors, including slate. Another...