A new unpatchable flaw in Apple chips opens the door to an iPhone jailbreak 


A company that sells spyware and hacking tools to government agencies has published details of a vulnerability in Apple chips that can potentially help hackers unlock older iPhones.

This release opens the door for other researchers who specialize in finding iOS vulnerabilities, such as those working for governments or their contractors, to develop effective hacks for iPhones, provided they can find additional vulnerabilities to chain together with this one. This could help security researchers develop a so-called iPhone jailbreak, a technique to hack into Apple’s mobile operating system and remove all the restrictions the company puts on it.

The release is also a reminder that while Apple has made iPhones extremely hard to hack, there are and will always be vulnerabilities that sophisticated hackers can take advantage of to break in.

On Friday, Paradigm Shift, an offensive cybersecurity company based in Barcelona, published a blog post about the vulnerability, which it dubbed “usbliter8.” The company also published a proof of concept that shows how to exploit the vulnerability, which requires physical access to the target phone. 

The flaw and related exploit affect iPhones that have Apple-made chips A12 and A13, which were released in 2018 and 2019, and are included in older iPhones such as the XS, XR and up to the iPhone 11.

The release of usbliter8 is significant in the world of security research and spyware and hacking tools’ makers, but it does not mean that older iPhones are easily hackable by anyone. 

The bug found by Paradigm Shift affects the iPhone’s Boot ROM, which is the first piece of code that runs when an iPhone is turned on and, consequently, its first line of defense against hackers. To hack an iPhone with physical access to it — meaning having the ability to connect a cable to it — hackers need to first exploit the Boot ROM. Now, they can do that thanks to usbliter8, which allows them to potentially defeat and bypass further security checks.

Paradigm Shift wrote in its blog that “as these vulnerabilities reside in immutable code, affected users should be aware that migrating to newer hardware remains the most effective mitigation.” 

In other words, given that the Boot ROM is burned into the chip, it can’t be changed and flaws in it cannot be patched.

Generally speaking, companies that sell systems to hack iPhones seized by authorities, such as Cellebrite and Magnet Forensics need, and likely already have at their disposal, techniques similar to usbliter8 to break into iPhones. However, hackers still need to incorporate other techniques to access the user data stored in the phone.

Public iPhone jailbreaks were relatively widespread in the past, but they have become rarer in the last decade. Jailbreaking an iPhone is often the first step to research other vulnerabilities on the system. Researchers — intent on finding valuable iPhone flaws and ways to exploit them — have few incentives to release that information publicly, because that would lead to Apple fixing the flaws and setting the researchers back.

Paradigm Shift did not respond to a series of questions related to usbliter8.

When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.



Source link

  • Related Posts

    ‘The Bear’ Season 5 Release Schedule: When to Watch the New Episodes

    Get ready to let it rip and shout, “Yes, Chef!” one more time — The Bear is coming back for its fifth and final season. It’s been a year since…

    The best Prime Day deals we found on our favorite gear

    Amazon’s Prime Day is on, and it’s happening for the next four days. Prime members can jump into the deals now until the sale officially ends at 3:01AM ET /…

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    You Missed

    Harvest Declares Big Pharma Split Corp. June 2026 Distributions

    Officials lift water supply alert as stormwater pressure eases in Edmonton – Edmonton

    Officials lift water supply alert as stormwater pressure eases in Edmonton – Edmonton

    Two Roads to Fast Clinical Trials, and the US Takes Neither

    Two Roads to Fast Clinical Trials, and the US Takes Neither

    ‘The Bear’ Season 5 Release Schedule: When to Watch the New Episodes

    ‘The Bear’ Season 5 Release Schedule: When to Watch the New Episodes

    IPL 2027 – LSG and DC complete high-profile Rishabh Pant-Kuldeep Yadav trade

    IPL 2027 – LSG and DC complete high-profile Rishabh Pant-Kuldeep Yadav trade

    Sarah Jessica Parker Wore the Heels Trend That Always Works With Midi Skirts

    Sarah Jessica Parker Wore the Heels Trend That Always Works With Midi Skirts