Slashdot Mirror


Apple Just Killed The 'GrayKey' iPhone Passcode Hack (forbes.com)

Apple's newest version of iOS has rendered the GrayKey hacking tech useless, a report said Wednesday. How Apple pulled it off wasn't immediately clear, but it would have a huge implication for the law enforcement agencies around the world that have relied on GrayKey to break into locked iPhones. Forbes reports: Apple has put up what may be an insurmountable wall. Multiple sources familiar with the GrayKey tech tell Forbes the device can no longer break the passcodes of any iPhone running iOS 12 or above. On those devices, GrayKey can only do what's called a "partial extraction," sources from the forensic community said. That means police using the tool can only draw out unencrypted files and some metadata, such as file sizes and folder structures.

Previously, GrayKey used "brute forcing" techniques to guess passcodes and had found a way to get around Apple's protections preventing such repeat guesses. But no more. And if it's impossible for GrayKey, which counts an ex-Apple security engineer among its founders, it's a safe assumption few can break iPhone passcodes. Police officer Captain John Sherwin of the Rochester Police Department in Minnesota said of the claim iOS 12 was preventing GrayKey from unlocking iPhones: "That's a fairly accurate assessment as to what we have experienced."

85 comments

  1. Go, Apple! by TheFakeTimCook · · Score: 5, Insightful

    Apparently STILL the only phone OEM STILL looking out for the USER'S Privacy...

    1. Re:Go, Apple! by DigitAl56K · · Score: 1

      Apparently STILL the only phone OEM STILL looking out for the USER'S Privacy...

      Is that true?

      Does anyone know how Pixel stands up against like tools?

    2. Re:Go, Apple! by Highdude702 · · Score: 3, Insightful

      Its a phone made by google. I wouldn't bet too much on privacy. Who knows about encryption though..

    3. Re:Go, Apple! by known_coward_69 · · Score: 2

      last I read, only IOS had the entire file system encrypted

    4. Re: Go, Apple! by MachineShedFred · · Score: 1

      Hilarious to see people bashing apple for positioning data security over fashion.

      GTFO.

      --
      Slashdot still doesnâ(TM)t support Unicode after it was added to the HTML standard in 1997.
    5. Re:Go, Apple! by Anonymous Coward · · Score: 0

      Mayhap.

      I'm thinking though (unfortunately), that Grabkey has another exploit sitting on the shelf, waiting. And since they probably get fed info from the NSA and Mossad and who knows else, in order to assist law enforcement via Grabkey.. they might have some nice pre-0-days waiting on that shelf.

      If so, Apple might need to step it up a bit, in order to keep ahead of them. Not really blaming Apple here... but it might sadly be the truth.

    6. Re: Go, Apple! by saloomy · · Score: 0

      The anonymous ass-hat is exhibiting confirmation bias. He can't believe in such an important decision like which $1000 phone to purchase, he made the wrong choice. He isn't mentally equipped to say "hmm, maybe I should have made a different choice. The other ones are far more concerned with my privacy than the one I chose."

      He has no argument to stand on, so he throws feces around hoping no one will judge his bad decisions

    7. Re:Go, Apple! by Raistlin77 · · Score: 0

      It's Android. From Google. It was compromised before you even opened the box.

    8. Re: Go, Apple! by Anonymous Coward · · Score: 0

      Lol, i like how they use words like "insurmountable".

      If it's patched in software, it's broken in software.

      Even assuming that the article is true, the fact that you can still extract metadata on a locked device?!?

      The vulnerability is still there. I have no idea why words like unbreakable were used when it's still a huge issue.

      You should be able to get NOTHING out of a locked device asides from what kind of device it is ... and even then, that's being generous.

      Android devices refuse to even appear on a computer unless the phone is unlocked, provide zero opportunity for even gathering metadata.

    9. Re:Go, Apple! by Riceballsan · · Score: 1

      depends on who you are meaning privacy from. Microsoft is huge on handing things over to big G without permission, google historically gives the absolute minimum required by law. Google absolutely sucks at privacy in terms of what they keep for themselves, but for the most part they aren't eager to hand it out.

    10. Re:Go, Apple! by Highdude702 · · Score: 1

      Either... Unfortunately that sounds like most companies these days. Its hard out here in the streets of the interweb.

    11. Re:Go, Apple! by Anonymous Coward · · Score: 0

      No, they are just removing the competition. Apple wants you to believe your data is secure, while they exclusively mine your data.

    12. Re:Go, Apple! by Cmdln+Daco · · Score: 0

      Its Closed Source. From Apple. And the iGadgets are known to send packets of encrypted data to Apple servers when linked to a wifi connection.

      What's in the big packets? Who knows? It's encrypted.

      You can trust Apple. You know you want to trust Apple. Just do it.

    13. Re: Go, Apple! by Anonymous Coward · · Score: 0

      Funny that they're able to extract information from it if the whole file system is encrypted.

    14. Re:Go, Apple! by Anonymous Coward · · Score: 0

      Your hysterically wrong. But keep shilling.

    15. Re: Go, Apple! by Anonymous Coward · · Score: 0

      Apple still collects user info/data [1], they just don't sell ads. The collected info is still at risk from court orders and hackers.

      [1] https://www.google.ca/search?q=iphone+unlocked+touchid+times+per+day&oq=iphone+unlocked+touchid+times+per+day

    16. Re:Go, Apple! by TheFakeTimCook · · Score: 1

      Apparently STILL the only phone OEM STILL looking out for the USER'S Privacy...

      Is that true?

      Does anyone know how Pixel stands up against like tools?

      Well, considering there isn't such a tool for Android phones, I'd say that is your answer.

    17. Re:Go, Apple! by TheFakeTimCook · · Score: 0

      Its Closed Source. From Apple. And the iGadgets are known to send packets of encrypted data to Apple servers when linked to a wifi connection.

      What's in the big packets? Who knows? It's encrypted.

      You can trust Apple. You know you want to trust Apple. Just do it.

      What "big packets?

      Define "Big"

      Define the frequency.

      I'll wait.

    18. Re:Go, Apple! by Anonymous Coward · · Score: 0

      Already bypassed.

    19. Re:Go, Apple! by Paradise+Pete · · Score: 1

      You can trust Apple. You know you want to trust Apple. Just do it.

      Of course you can't trust them. But you can distrust them less.

    20. Re: Go, Apple! by sg_oneill · · Score: 1

      It's an option. Some users prefer not to so as to parse backups for files. Or at least it used to be, not sure now

      --
      Excuse the Unicode crap in my posts. That's an apostrophe, and slashdot is busted.
    21. Re:Go, Apple! by AmiMoJo · · Score: 1

      Are there any high end phones that aren't encrypted by default now? Has anyone cracked the latest Galaxy S or Pixel phones?

      Apple is obviously the biggest target and thus gets the most attention from crackers.

      --
      const int one = 65536; (Silvermoon, Texture.cs)
      SJW, n: "Someone I don't like, and by the way I'm a fuckwit" - AC
    22. Re:Go, Apple! by pgmrdlm · · Score: 1

      Starting with iOS 4, Apple included a âoedata protectionâ feature to encrypt all data stored a device. But unlike Android, Apple doesn't use the full-disk encryption paradigm. Instead, they employ a file-based encryption approach that individually encrypts each file on the device.Nov 24, 2016

      https://www.google.com/search?q=does+android+encrypt+file+system&ie=utf-8&oe=utf-8&client=firefox-b-1

      --
      Anonymous comments are as pathetic as the anonymous "sources" that contaminate gutless journalism from the New York Time
    23. Re:Go, Apple! by Anonymous Coward · · Score: 0

      When is the last time you read about the FBI taking an Android manufacturer to court because they could not break into the phone? That's right, you haven't, because the FBI has never had the need.

    24. Re:Go, Apple! by TheFakeTimCook · · Score: 1

      Are there any high end phones that aren't encrypted by default now? Has anyone cracked the latest Galaxy S or Pixel phones?

      Apple is obviously the biggest target and thus gets the most attention from crackers.

      Doesn't that statement fly directly in the face of all you Slashtards CONSTANTLY crowing about how ANDROID has the most marketshare, and thus would also be the BIGGEST TARGET?

      You idiots are just like Trump: You'll say ANYTHING to advance whatever LIE du jour...

    25. Re:Go, Apple! by AmiMoJo · · Score: 1

      iPhones are the most common type of phone that law enforcement are likely to encounter, simply because there are so few models and they all share common software. After that it's probably Samsung Galaxy phones.

      Overall Android is the large majority of the market, but there are so many different handsets all with different techniques needed to unlock them, if it can be done at all...

      --
      const int one = 65536; (Silvermoon, Texture.cs)
      SJW, n: "Someone I don't like, and by the way I'm a fuckwit" - AC
    26. Re:Go, Apple! by Anonymous Coward · · Score: 0

      Or it may be that, at least in the US, Android is typically used by those "nerdy types", while Apple is used by non-tech people. Most criminals are probably going to be non-tech types, and thus more likely to use Apple. But hey, who doesn't love a good conspiracy theory.

    27. Re:Go, Apple! by TheFakeTimCook · · Score: 0

      iPhones are the most common type of phone that law enforcement are likely to encounter, simply because there are so few models and they all share common software. After that it's probably Samsung Galaxy phones.

      Overall Android is the large majority of the market, but there are so many different handsets all with different techniques needed to unlock them, if it can be done at all...

      Nice try.

      Bullshit.

    28. Re:Go, Apple! by Anonymous Coward · · Score: 0

      lol - no such thing as privacy on the internet or in public.

      In the end, however, won't matter - as greykey can still get filenames and some metadata. Any of which points to a crime being committed makes it easier for them to get a judge to tell the owner to unlock the phone or be held in contempt.

    29. Re:Go, Apple! by AmiMoJo · · Score: 2

      https://deviceatlas.com/blog/m...

      Top 9 best selling phones in the US are iPhones.

      --
      const int one = 65536; (Silvermoon, Texture.cs)
      SJW, n: "Someone I don't like, and by the way I'm a fuckwit" - AC
    30. Re:Go, Apple! by TheFakeTimCook · · Score: 0

      https://deviceatlas.com/blog/m...

      Top 9 best selling phones in the US are iPhones.

      Fascinating to see you try to refute the attitude of all Fandroids on Slashdot... When it suits your purposes.

    31. Re:Go, Apple! by TheFakeTimCook · · Score: 1

      Starting with iOS 4, Apple included a âoedata protectionâ feature to encrypt all data stored a device. But unlike Android, Apple doesn't use the full-disk encryption paradigm. Instead, they employ a file-based encryption approach that individually encrypts each file on the device.Nov 24, 2016

      https://www.google.com/search?...

      Yep, that's an option in APFS, which iOS uses.

    32. Re:Go, Apple! by Anonymous Coward · · Score: 0

      I wouldn't trust a Pixel phone to be able to stand up to GOOGLE.

      Given that FBI types tend to have a corrupt judge on speed dial, a lawful warrant is never more than a phone call away. "Ah, I see you have a lawful warrant. Let me just remotely unlock that pho- There you go, done. While I'm at it, here's a link to everything we have on file. It's about 15 gigs worth of info so I can't just email it do you."

  2. For now by Anonymous Coward · · Score: 0

    For now.

    1. Re:For now by Joe_Dragon · · Score: 0

      till the find the china backdoor that apple put in.

    2. Re:For now by bob4u2c · · Score: 2

      Exactly. You want a secure phone that nobody can hack, they don't exist!

      Whenever you save or do something on your phone, take a moment to think: can this be used against me? If it can, don't save or do it!

      And just to throw the police off create a bunch of files like "masterUSPlan.doc" with nothing but wombat images. Then when asked about the "wombats" you know they have dug into your phone and you can tell them all about how wombats have ruined your life.

    3. Re:For now by SuperKendall · · Score: 0

      As opposed to the wide-open China front door that Google put in Android.

      --
      "There is more worth loving than we have strength to love." - Brian Jay Stanley
    4. Re: For now by StikyPad · · Score: 1

      Fuck, man, how did you know about the wombats??? Are you working for them? They're INSIDE THE HOUSE now. I can hear them in the walls. Nobody believes me!!

  3. They didn't render it 'useless' by Anonymous Coward · · Score: 0

    They rendered it obsolete. It has merely been depreciated for something new and improved.

  4. Good! by Anonymous Coward · · Score: 0

    I don't like apple, but at least there is a company that is willing to stand up for privacy and encryption.

  5. Still pretty useful to police by SuperKendall · · Score: 0

    It still could be useful to pull out some un-encrypted content - I think maybe recent photos would not be encrypted for example, and any app that did not specify to encrypt app storage with app not active would not have encrypted databases either (though many do).

    Not sure if the contact database would be encrypted, but probably...

    --
    "There is more worth loving than we have strength to love." - Brian Jay Stanley
    1. Re:Still pretty useful to police by Anonymous Coward · · Score: 1

      No, all "content" is encrypted. It's the meta data (file sizes, folder structure) that is unencrypted.

      No photos, videos, etc, are left unencrypted.

    2. Re:Still pretty useful to police by Anonymous Coward · · Score: 0

      Actually, the article is likely a bit off about that. The iPhone uses encrypted APFS, you shouldn't be able to get much other than "yep, there's a file system there".

    3. Re: Still pretty useful to police by MachineShedFred · · Score: 3, Informative

      When you activate a PIN / Touch ID / FaceID it uses the computed has as an encryption key for the entire user filesystem. Everything gets encrypted, and has for years.

      --
      Slashdot still doesnâ(TM)t support Unicode after it was added to the HTML standard in 1997.
    4. Re: Still pretty useful to police by saloomy · · Score: 1

      No, not exactly. But close.

      Those hashes are used to reverse a hash of a master key for your system which unlocks the file system. That way, both that hash and your pin code work. You need a master key, and then your authentication vectors re-encrypt the master key. You therefore have multiple avenues of logging in and authenticating, because each way provides you with a key you can unlock

    5. Re:Still pretty useful to police by Anonymous Coward · · Score: 1

      For 6+ year, everything on iOS is encrypted all the time and you can't turn it off.

      All that changes is policy around how the key material is managed - some of that policy is mandatory access controls and some of it is discretionary.

    6. Re: Still pretty useful to police by Anonymous Coward · · Score: 0

      Apple just needs to add a delay loop, or costly computation, and also present a false file structure for wrong keys, that when used, add wait out periods. That will slow them.

    7. Re:Still pretty useful to police by gnasher719 · · Score: 1

      No, all "content" is encrypted. It's the meta data (file sizes, folder structure) that is unencrypted.

      Everything is encrypted at least with a key built into the CPU, and a key stored on the flash drive. The key on the flash drive means that the whole iPhone can be erased in a millisecond by erasing that key. _Most_ things use the passcode as an additional key.

      Things that don't use the passcode are those that Apple wants to be available even if you don't unlock your phone. For example, you can _take_ photos without unlocking the phone, and those photos could be extracted until you unlock your phone and then they get encrypted. Photos taken while the phone is unlocked are encrypted immediately.

  6. Welcome! by bmimatt · · Score: 0

    Today's edition of slashdot: "Everything mobile - phone edition"

    1. Re:Welcome! by Anonymous Coward · · Score: 0

      Nobody uses desktop computers anymore, grandpa.

    2. Re:Welcome! by Cmdln+Daco · · Score: 1

      Only the people in charge use desktop computers, junior.

      Including the people who write the 'apps' they allow you to run on your little gadgets.

    3. Re:Welcome! by Anonymous Coward · · Score: 0

      OK Uncle Bob, we've moved onto tablets with keyboards!

  7. THERE WILL BE CONSEQUENCES FOR YOUR LIES KEN DOLL by Anonymous Coward · · Score: 0

    THERE WILL BE CONSEQUENCES FOR YOUR LIES KEN DOLL

    Filter error: Don't use so many caps. It's like YELLING.

  8. THERE WILL BE CONSEQUENCES FOR YOUR LIES KEN DOLL by Anonymous Coward · · Score: 0

    THERE WILL BE CONSEQUENCES FOR YOUR LIES KEN DOLL

    Filter error: Don't use so many caps. It's like YELLING

  9. Don't forget about the baseband by Anonymous Coward · · Score: 0

    I couldn't give a shit about what security features an operating system claims to offer when I own the baseband...

    1. Re: Don't forget about the baseband by Anonymous Coward · · Score: 0

      Owned baseband still can't access encrypted user storage without the OS letting it, and that's what the LEOs want.

  10. Is GreyKey stopped at that level, that is question by SuperKendall · · Score: 2

    Actually, the article is likely a bit off about that. The iPhone uses encrypted APFS, you shouldn't be able to get much other than "yep, there's a file system there".

    What I was getting at is that I thought GreyKey was still getting past the basic whole file system encryption, but that it was stymied getting to individual app files that had been encrypted until the app opened...

    That's how I read it anyway, otherwise why even bother to mention GreyKey could "still access unencrypted files" if it couldn't even get to the filesystem? It implies it can see some files at all.

    Could just be bad wording on the part of the summary or article but the fact it mentions files makes me suspect it can still get into the filesystem.

    --
    "There is more worth loving than we have strength to love." - Brian Jay Stanley
  11. They also fixed "noisy wired headphones" issue by Anonymous Coward · · Score: 0

    Maybe related to this improvement.... I noticed that my earbuds no longer initiate "voice command" when they produce static... This previously was listed as "unfixable" on the support.apple.com forum. Basically... the voice command interrupt was only fixed by replacing the earbuds. That's no longer the case... you can plug in staticful wired earbuds and nada... coincidence?

  12. If I were a tech savvy terrorist by taustin · · Score: 2

    I'd be wondering right now whether they actually can't crack my iPhone, or if they're just saying that so that I will keep using it, thinking it's "safe."

    1. Re: If I were a tech savvy terrorist by Anonymous Coward · · Score: 0

      Wait a few weeks, they'll reactivate greykey. Soon enough.

      Adding these padding months provide delay discovery

    2. Re:If I were a tech savvy terrorist by Anonymous Coward · · Score: 0

      If you were a tech-savvy terrorist then you would just use some generic encryption program instead of trusting some OS and hardware to do things automatically for you. MS-DOS is a good enough OS as long as you remember to use PGP.

    3. Re:If I were a tech savvy terrorist by Cmdln+Daco · · Score: 1

      MS-DOS isn't really good enough, because the communications has to sit somewhere on the machine queued up for the PGP program to encrypt.

    4. Re: If I were a tech savvy terrorist by Anonymous Coward · · Score: 0

      This could be theoretically fixed by creating a smart charging cable for the iPhone. When you pair your charger with your iPhone the first time, it creates a key pair that still requires a passphrase, whatever so as to prevent thieves or others from accessing your phone. Any other charger will render the device erased and ready for re-setup, I for one would use it since I don't share chargers with anyone. If the charger has been tampered with, you cannot use it, the iPhone will reject it and you must pair another once the phone is unlocked.

    5. Re:If I were a tech savvy terrorist by stealth_finger · · Score: 1

      I'd be wondering right now whether they actually can't crack my iPhone, or if they're just saying that so that I will keep using it, thinking it's "safe."

      If I were a terrorist I wouldn't be keeping anything on my phone, i or otherwise.

      --
      Wanna buy a shirt?
      https://www.redbubble.com/people/stealthfinger/shop?asc=u
    6. Re: If I were a tech savvy terrorist by Anonymous Coward · · Score: 0

      i have ipv6-compatible ethernet cables that do this. very secure.

    7. Re:If I were a tech savvy terrorist by Dixie_Flatline · · Score: 1

      If you were a tech savvy terrorist, you would've started using a much longer passcode a long time ago. The system only worked quickly on 4-digit passcodes (6.5 minutes), and 6-digit codes were reportedly up to 11 hours, which is 660 minutes or 10 times longer. Even if we assume that simple pattern held (every 2 digits increases the time by a factor of 10), a 10 digit code would be 1100 hours or 45 days, and a 14 digit code would be 12.5 years. In all likelihood, the rate of increase was considerably worse than that.

      Really, this system only worked on complete dummies that were doing crime with a phone that just came out of the box. They deserved to get caught.

  13. Re:Is GreyKey stopped at that level, that is quest by Anonymous Coward · · Score: 0

    Nope. Of course goosesteppers like yourself can still hope.

  14. Re:Let's keep the bombers secure by fattmatt · · Score: 1

    LOL

  15. Already blocked since iOS 11.4.1? by manu0601 · · Score: 1

    I thought they already addressed Graykey in iOS 11.4.1

    1. Re:Already blocked since iOS 11.4.1? by Anonymous Coward · · Score: 0

      And from what I've read, GK cannot really handle passwords over 12 characters w/o it taking forever and a day to crack them. 6 is the bare minimum. 12+ is recommended.

  16. Re: Let's keep the bombers secure by Anonymous Coward · · Score: 0

    Too bad. The phone can't tell the difference. So you can have security, or you can pretend that accessing a phone in the physical possession of police has ever or will ever lead to the prevention of any kind of terrorist attack.

    I know which one I'll choose, and it's not letting cops have access to anything they want. I'm giving up absolutely nothing and gaining more freedom. You would give up freedom to gain nothing.

  17. Re:Is GreyKey stopped at that level, that is quest by tlhIngan · · Score: 2

    What I was getting at is that I thought GreyKey was still getting past the basic whole file system encryption, but that it was stymied getting to individual app files that had been encrypted until the app opened...

    That's how I read it anyway, otherwise why even bother to mention GreyKey could "still access unencrypted files" if it couldn't even get to the filesystem? It implies it can see some files at all.

    Could just be bad wording on the part of the summary or article but the fact it mentions files makes me suspect it can still get into the filesystem.

    That's because people assume GrayKey is a magical box that you plug in and have full access to the device. It's not even close to how it works.

    First, it basically does a tethered jailbreak - and injects a special app because of it. (Jailbroken apps have full access to the system - that's the original meaning of the "jailbreak" - the app could break out of the OS jail it was put in to run). This app uses those abilities to crack the device PIN. Once the PIN is broken you take the phone and connect it to a PC and use it download all the data.

    What happened now is Apple changed things around that it can no longer crack the PIN - so either Apple patched the flaw that lead to the jailbreak, or fixed things that the injected app can't do the PIN search anymore. Thus the injected app only has the permissions a regular app has and access to whatever the OS allows it. Those are the limited "unencrypted" files. Likely it also cannot access the screen and thus you cannot answer the "App wants permission to access photos" dialogs as well to access photos.

  18. MORE THEATRE FOR THE MASSES by Anonymous Coward · · Score: 0

    More propaganda for the mass of couch potatoes.

    Next your be telling me Obama got the Nobel Peace Prize.

  19. Re: THERE WILL BE CONSEQUENCES FOR YOUR LIES KEN D by Anonymous Coward · · Score: 0

    Barbie: No means NO. #metoo

  20. Re:Is GreyKey stopped at that level, that is quest by gnasher719 · · Score: 1

    What I was getting at is that I thought GreyKey was still getting past the basic whole file system encryption, but that it was stymied getting to individual app files that had been encrypted until the app opened...

    Nobody ever got past the encryption. People managed to find the passcode - and if you have the passcode then you can unlock the phone and access all the files on it.

    Finding the passcode could be done in theory by trying out all passcodes. Apple prevents this or tries to prevent this by making you wait longer until you can try another passcode; more than an hour after ten attempts. Or you can set up your phone to erase everything after ten wrong attempts. _That_ protection is what they got around.

    But you can protect your phone: Trying a passcode takes 80 milliseconds _even if you got around any protection that Apple puts into place_. With a 6 digit passcode, that's a million combinations, it takes 80ms times a million to try all combinations, that's a bit less than a day. So you take ten digits, or eight letters and digits, and nobody can get in in your life time, independent of what Apple is doing.

    Of course what they are doing now makes sure that you cannot even crack a phone with a 4 digit code.

  21. Bad Times at the El Royale by itguy01 · · Score: 0

    I guess now they have to follow the law and get warrants. This is one of many reasons I am an Apple customer, they have their customers backs and want to make sure they deliver a secure, reliable product.

    --
    ~I bet you were looking down here for an awesome siggy like everyone else..sorry to disappoint~
  22. Re: THERE WILL BE CONSEQUENCES FOR YOUR LIES KEN D by Anonymous Coward · · Score: 0

    So "no means no" but then you say "pound me too". Talk about mixed signals..

  23. But if they have physical access of the phone by Anonymous Coward · · Score: 0

    Something I've never quite understood in all these stories. If someone has physical access to the phone that means they can theoretically bypass the phone itself and connect directly to the storage media. Then, if you know for example the length of the possible password, and have reverse engineered the code the phone itself uses to access encrypted data (or even have access to the phone's original source code), can't you just build a tool that brute force applies passwords and reads data from the storage media until the data is apparently valid?

    I get where the phone's OS starts imposing longer and longer times between invalid passwords, but if you're not using the phone's OS for access, then the only thing stopping the access is the encryption itself.

    What am I missing here?

    1. Re:But if they have physical access of the phone by andymadigan · · Score: 1

      I think the PIN/password is used to access the master key, which is kept in the Secure Element in the CPU silicon. The master key has far more possible values than the PIN - probably 256-bit. The Secure Element is presumably designed to make it impossible to directly extract the master key.

      So, when iOS wants to decrypt the hard drive it first has to retrieve the master key using the PIN.

      --
      The right to protest the State is more sacred than the State.
  24. Re:Is GreyKey stopped at that level, that is quest by SuperKendall · · Score: 1

    Thanks, I wasn't sure just what GreyKey was doing. Then I guess the idea they could "access unencrypted files" is just totally wrong, as there are none without a filesystem...

    --
    "There is more worth loving than we have strength to love." - Brian Jay Stanley