iPhone Does Apple have a bug bounty? I found a way to bypass the locksceen.

-Ray-

macrumors regular
Original poster
Jul 2, 2011
221
137
Pennsylvania
As the title suggests, I found a major flaw in iOS 12 with the iPhone X that allows me to bypass the lockscreen and have full access to the device without a passcode.

The bug is pretty simple to reproduce and because of the nature of it I will not be releasing it publically until I have submitted it to the proper channels such as Apple or verified security researchers.

I have not tested other devices yet. I’ve been able to successfully reproduce the bug on the X several times as it does not require complicated steps.
 

I7guy

macrumors Core
Nov 30, 2013
22,606
10,472
Gotta be in it to win it
It’s it’s truly a bypass and you discovered it, chances are others have as well and will be or is fixed in iOS 12.1.

To answer your question try Apple.com/security.
 

-Ray-

macrumors regular
Original poster
Jul 2, 2011
221
137
Pennsylvania
It’s it’s truly a bypass and you discovered it, chances are others have as well and will be or is fixed in iOS 12.1.

To answer your question try Apple.com/security.
I just tested it and it works with iOS 11 as well.
 

keysofanxiety

macrumors G3
Nov 23, 2011
9,537
25,262
As the title suggests, I found a major flaw in iOS 12 with the iPhone X that allows me to bypass the lockscreen and have full access to the device without a passcode.

The bug is pretty simple to reproduce and because of the nature of it I will not be releasing it publically until I have submitted it to the proper channels such as Apple or verified security researchers.

I have not tested other devices yet. I’ve been able to successfully reproduce the bug on the X several times as it does not require complicated steps.
Is it where you look at it, swipe up, and it unlocks without needing your passcode? Because my X has had that bug since launch :mad: :p
 

I7guy

macrumors Core
Nov 30, 2013
22,606
10,472
Gotta be in it to win it
Why even create a thread for this? If you could figure out an exploit you can figure out how to contact Apple. You’re not going to disclose the “vulnerability” for scrutiny so the thread will go around in endless circles with conjecture.
 

-Ray-

macrumors regular
Original poster
Jul 2, 2011
221
137
Pennsylvania
Why even create a thread for this? If you could figure out an exploit you can figure out how to contact Apple. You’re not going to disclose the “vulnerability” for scrutiny so the thread will go around in endless circles with conjecture.
Because all I could find was news articles and no specific reference from Apple at all.
 
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.