May 23, 2025
It Only Takes Six Minutes to Reveal Your iPhone Passwords [Video]

It Only Takes Six Minutes to Reveal Your iPhone Passwords [Video]

Posted February 10, 2011 at 12:33pm by iClarified
Researchers at the German Fraunhofer Institute for Secure Information Technology have demonstrated that it only takes six minutes to reveal the passwords stored in your iPhone keychain, reports PCWorld.

The researchers jailbreak the device then install SSH. They then copy a keychain access script to the phone. The script uses system functions to access entries in the keychain and outputs the details to the attacker.

The attack works because the cryptographic key on current iOS devices is based on material available within the device and is independent of the passcode, the researchers said. This means attackers with access to the phone can create the key from the phone in their possession without having to hack the encrypted and secret passcode.


"As soon as attackers are in the possession of an iPhone or iPad and have removed the device's SIM card, they can get a hold of e-mail passwords and access codes to corporate VPNs and WLANs as well," said the researchers in a statement. "Control of an e-mail account allows the attacker to acquire even more additional passwords: For many web services such as social networks the attacker only has to request a password reset."

This type of attack could be prevented by remotely wiping a lost or stolen device using Find My iPhone.

You can see the attack being demonstrated in the video below...

Read More [via PCWorld]



Add Comment
Would you like to be notified when someone replies or adds a new comment?
Yes (All Threads)
Yes (This Thread Only)
No
iClarified Icon
Notifications
Would you like to be notified when we post a new Apple news article or tutorial?
Yes
No
Comments (2)
You must login or register to add a comment...
mat
mat - February 11, 2011 at 8:20am
yes it is. anybody knows how that alpine password got revealed ? was it from some apple employee ?
anonimous
anonimous - February 11, 2011 at 6:05am
So... jailbroken iphone with CHANGED 'alpine' password is more safe than clean one?
Recent. Read the latest Apple News.
RECENT
Tutorials. Help is here.
TUTORIALS
Where to Download macOS Sonoma
Where to Download macOS Ventura
AppleTV Firmware Download Locations
Where To Download iPad Firmware Files From
Where To Download iPhone Firmware Files From
Deals. Save on Apple devices and accessories.
DEALS