Don’t trust anything you can’t see – a valuable lesson for anyone. But, why shouldn’t you trust your own phone? Egyptian programmer Sherif Hashim has discovered a vulnerability in the most recent version of iOS (7.1.1) that allows hackers to physically access your contacts without unlocking your phone.
This video shows the steps that Hashim took to access the iPhone through the lock screen by using Siri:
This flaw is present in all iPhone versions running Siri, and is capable of revealing far more than just phone numbers. Hackers can potentially gain access to any information from the contact card, such as your contact’s home or email addresses. You don’t want hackers to know where you, your friends, or family live, and you risk more than just data theft – the rest of your valuables could very well be on the line.
Fortunately, this can only occur when a hacker is in physical possession of your phone. Though this vulnerability is somewhat limited because of this, it is still a good idea to turn Siri off from your Passcode options via the General settings of the device. Otherwise, you risk the deceptively-faithful iOS app betraying your contact information to a thief. Don’t let them smooth-talk their way through Siri.
For more updates and information concerning the latest vulnerabilities, patches, and updates, contact PACE Technical Services at 905.763.7896. Knowledge is power, and we’ll give you all the information you need to protect yourself from the latest threats and vulnerabilities.