Apple patched an iOS lock screen bypass without crediting its discovery

Apple fixed a recently unearthed lock screen bypass with the release of iOS 15.0.1, but failed to publicly recognize the weakness or the person who discovered it.
iOS Lock Screen BypassIn September, researcher Jose Rodriguez detailed an iOS vulnerability that enables attackers to bypass a secured iPhone lock screen and access notes through a combination of VoiceOver and common sharing tools.Rodriguez published a proof of concept on his YouTube channel on Sept. 20, illustrating methods by which a user's notes can be copied and sent to another device. The researcher did not disclose the vulnerability to Apple prior to going public, saying at the time that he was "giving away" the exploit in hopes of shedding light on problems related to the tech giant's Bug Bounty Program.

Read more...

from AppleInsider News https://ift.tt/3F3a8AK
Apple patched an iOS lock screen bypass without crediting its discovery Apple patched an iOS lock screen bypass without crediting its discovery Reviewed by Ghaniiero on octobre 01, 2021 Rating: 5

Aucun commentaire:

Fourni par Blogger.