Any iOS device can be hacked with modified charger


Recommended Posts

Security researchers have discovered a way to push software onto an iOS device using a modified charger. The team at George Institute of Technology says its charger was able to upload arbitrary software to an iOS device within one minute of it being plugged in. According to the researchers, "all users" are at risk, as the hack doesn't require any user interaction. Hackers are even capable of hiding the applications, so they don't show up in the device's app list. It's not clear if the charger is able to upload malicious code ? Apple's iOS devices, by default, are "sandboxed" and will only install and run properly signed apps ? but this is a worrying development regardless.

The charger itself is fairly large ? it's based on the BeagleBone, a tiny Linux PC the size of a credit card ? so it's unlikely to be able to be scaled down to fit in a regular iPhone or iPad charger casing anytime soon. The hack and charger will be demonstrated at the Black Hat security conference in July. During a presentation of their findings, the researchers will detail how USB capabilities are able to bypass Apple's defense mechanisms, and explain what Apple can do to make hacks like this one harder to pull off.

http://www.theverge.com/2013/6/3/4390808/ios-malicious-charger-hack-georgia-tech-institute-black-hat-2013

I think the big question regarding vulnerability is if what is uploaded can be executed. I mean if it is able to put some code on your phone, that is far from good...but if they can RUN it...that is a different story altogether.

This topic is now closed to further replies.
  • Posts

    • Ridiculous claim that the labor cost difference of $6000 annually would increase cost per phone by $200. The employees produce 3 phones per month or what?
    • Sparkle 2.20.1 by Razvan Serea Sparkle is a free, open-source Windows optimization tool designed to make your PC faster, cleaner, and more private. With Sparkle, you can easily debloat Windows by removing unnecessary apps and services, disable Microsoft tracking to enhance privacy, and apply performance tweaks to boost speed. Its cleaner removes junk and temporary files, while every change is safe and fully reversible. Sparkle also features a modern, user-friendly interface with automatic updates, making system maintenance simple. Explore over 39 tweaks, from disabling telemetry and hibernation to optimizing network and game settings, all aimed at customizing and enhancing your Windows experience. Sparkle supports Windows 10 and 11. Sparkle 2.20.1 changelog: You can now change the Animation Direction from Up, Left, or Off. Added configurable animation direction (Up, Left, Off) for improved accessibility Added TTL caching to the system info backend Refactored tweak application flow to await NvidiaProfileInspector Improved IPC listener cleanup to correctly remove specific listeners Fixed online status not updating after successful network requests Updated system info tests to support backend caching Removed electron-toolkit utils dependency in favor of internal is.dev helper Fixed unwanted files and folders being included in application bundles Download: Sparkle 2.20.1 | Portable | ~100.0 MB (Open Source) Links: Sparkle Website | Github | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • Never used the G7 Pro, but I've never had a good experience with that style of d-pad and fighting games.
    • And I just bought a seat cushion for my mesh chair. The chair feels nice but the first time I sat in it with boxers, I realized I don't like the feel of mesh on my legs. 😂
    • "This Dell 27 inch 4K 120Hz IPS monitor is really cheap after a very long time" ... Lol.
  • Recent Achievements

    • Dedicated
      Asgardi earned a badge
      Dedicated
    • Conversation Starter
      jessse3334 earned a badge
      Conversation Starter
    • Reacting Well
      JuvenileDelinquent earned a badge
      Reacting Well
    • One Month Later
      Excellence2025 earned a badge
      One Month Later
    • Week One Done
      Excellence2025 earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      499
    2. 2
      +Edouard
      247
    3. 3
      PsYcHoKiLLa
      153
    4. 4
      Steven P.
      84
    5. 5
      macoman
      64
  • Tell a friend

    Love Neowin? Tell a friend!