Paradigm Shift’s usbliter8 exploit targets Apple A12 and A13 SecureROM via USB DFU mode, creating an unpatchable hardware risk.

  • quick_snail@feddit.nl
    link
    fedilink
    English
    arrow-up
    4
    ·
    21 days ago

    This requires physical access. I don’t get it, why is this bad?

    Someone with physical access can already pull out the disk, clone it, and put in a different disk that boots to an identical looking login, but which actually relays the password back to the attacker.

    What more would this exploit allow an attcker with phsycal access that they wouldn’t already have before this exploit?

    • LemmyEntertainYou@piefed.social
      link
      fedilink
      English
      arrow-up
      2
      ·
      20 days ago

      People store a lot of sensitive information on their phones and iPhones are big targets for phone theft. Physical access is quite easy once the device is snatched from the owner’s hands.