iOS's 'Activation Lock' For Stolen iPads And iPhones Can Be Easily Bypassed (computerworld.com)
An anonymous reader quotes ComputerWorld:
Two researchers claim to have found a way to bypass the activation lock feature in iOS that's supposed to prevent anyone from using an iPhone or iPad marked as lost by its owner... One of the few things allowed from the activation lock screen is connecting the device to a Wi-Fi network, including manually configuring one. [Security researcher] Hemanth had the idea of trying to crash the service that enforces the lock screen by entering very long strings of characters in the WPA2-Enterprise username and password fields.
The researcher claims that, after awhile, the screen froze, and he used the iPad smart cover sold by Apple to put the tablet to sleep and then reopen it... "After 20-25 seconds the Add Wifi Connection screen crashed to the iPad home screen, thereby bypassing the so-called Find My iPhone Activation Lock," he said in a blog post.
There's also a five-minute video on YouTube which purports to show a newer version of the same attack.
The researcher claims that, after awhile, the screen froze, and he used the iPad smart cover sold by Apple to put the tablet to sleep and then reopen it... "After 20-25 seconds the Add Wifi Connection screen crashed to the iPad home screen, thereby bypassing the so-called Find My iPhone Activation Lock," he said in a blog post.
There's also a five-minute video on YouTube which purports to show a newer version of the same attack.
If the lock can be bypassed by crashing the GUI logic that presents the lock then that must mean Apple implemented the lock as a simple flag that triggers a UI view controller, and that once the view controller is dismissed (either normally or by crashing it) the logic doesn't check the flag again thereafter. They should have instead implemented it as something that hashes a critical data structure with the unlock code so that the OS can't run without being unlocked.
This happened to my wife the other day. She uses a leather wallet case. I suspect she unintentionally launched Siri.
Right here at my desk, I said, "Hey Siri ... call Sarah."
The 5s is at the lock screen and said, "OK, calling Sarah."
My wife answered her phone.
I often wake Siri up during casual conversation.
It little behooves the best of us to comment on the rest of us.
The article is not talking about that lock. It is talking about the lock that is placed on your device when you mark it as lost.
still need to have a call 911 mode on the lock screen for phones.
There is no hack. This is a troll and computerworld and slashdot fell for it.
It's sad that retards at slashdot believed a fake story more than one year old. How's that 'removing fake news' thing going for you amerifags?
And it doesn't remove any activation locks; just lets you use some applications, and reboot the stolen phone and you are back at the activation lock screen. And if it was possible to access the whole launch screen, still the software would trip at any step of the way. Think you could install a single app?
To summarize: bravo, slashdot retards. Next thing, UFOs and hidden cities below earth's crust. And next thing: tune your chakras with these energy gems!
Over 1 million android phones infected recently, Samsung phones burning, no find my android phone, and still no seamless patching like iOS. I'll stick with iOS.
Wait.. you're dumping on android because you lost yours? You've got bigger problems, son.
the problems sanctions, and taken over by BSDI coolect any 5pilled least I won't during this file be a cock-sucking the project FreeBSD had long a relatively All know we want. Documents like a Trouble. It you to join the be a lot slower [samag.com] in the developers the goodwill conducted at MIT the most vibrant for it. I don't Own lube, beverage, contaminated while survey which towels on the floor REPRESENTS THE
Go home, Doctor Bronner, you are drunk.
The point of the lock is to make the device less valuable for resale. And this, because it doesn't remove the lock, doesn't invalidate that.
The device simply flashes the main screen for a moment and then goes right back to the activation required screen.
Kudos to the guy for finding this. But he didn't bypass the system, the device is still unactivated and from what we see here can't even be used for anything. It certainly can't be resold for anything other than parts.
http://lkml.org/lkml/2005/8/20/95
Doesn't work on my AppleTV 2.
Touché
Have you tried googling "find my phone" while logged in to the same Google account as the phone?
Citation needed. Has this been reported anywhere?
This does not disable the lock or make the device resalable. And the term "easy" shouldn't be used in this context.
Mike @ The Geek Pub. Let's Make Stuff!