FBI Plans to Keep iPhone Hacking Method Secret [Update: Confirmed]

MacRumors

macrumors bot
Original poster
Apr 12, 2001
7,429
8,491



The United States Federal Bureau of Investigation will keep the method that it used to hack into the iPhone used by San Bernardino shooter Syed Farook a secret, reports The Wall Street Journal. Citing sources with knowledge of the FBI's plans, the report suggests the FBI will tell the White House that an internal government review does not make sense because it "knows so little" about the hacking tool that was employed.

A government review under the U.S. Vulnerabilities Equities Process, which allows federal agencies to determine whether or not critical security flaws should be shared with companies, would potentially lead to an order to disclose the security vulnerability to Apple. Without a review, Apple may not find out how the iPhone was breached.

The decision, and the technical and bureaucratic justification behind it, would likely keep Apple in the dark about whatever security gap exists on certain models of the company's phones, according to people familiar with the discussions.
The Wall Street Journal's report comes following a statement made by FBI Director James Comey at a cybersecurity event in Washington D.C., which was shared by Reuters. According to Comey, the FBI is still in the process of determining whether or not a government review should move forward.
"We are in the midst of trying to sort that out," Comey said. "The threshold (for disclosure) is, are we aware of the vulnerability, or did we just buy a tool and don't have sufficient knowledge of the vulnerability to implicate the process?"

"We are close to a resolution," he added at a cybersecurity event at Georgetown University in Washington, D.C.
Sources that spoke to Reuters say the Vulnerabilities Equities Process is not set up to handle flaws that are discovered and owned by private companies, with Comey's statement suggesting the FBI does not own the method used to hack the iPhone.

To break into Farook's iPhone 5c, the FBI employed the help of "professional hackers," paying upwards of $1.3 million for a tool exploiting a security vulnerability. While Apple would like details on the flaw so a fix can be implemented, the FBI can keep using the vulnerability so long as it remains unpatched.

The FBI has said the method used to break into the iPhone 5c does not work on the iPhone 5s and later, but it can be used to access iPhone 5c devices running iOS 9.

Update 4/27: In a statement shared by The New York Times, the FBI has confirmed that it will not give Apple details on the hacking method used to break into the iPhone.
"The F.B.I. purchased the method from an outside party so that we could unlock the San Bernardino device," Amy S. Hess, executive assistant director for science and technology, said in a statement.

"We did not, however, purchase the rights to technical details about how the method functions, or the nature and extent of any vulnerability upon which the method may rely in order to operate. As a result, currently we do not have enough technical information about any vulnerability that would permit any meaningful review" by the White House examiners, she said.
Note: Due to the political nature of the discussion regarding this topic, the discussion thread is located in our Politics, Religion, Social Issues forum. All forum members and site visitors are welcome to read and follow the thread, but posting is limited to forum members with at least 100 posts.

Article Link: FBI Plans to Keep iPhone Hacking Method Secret [Update: Confirmed]
 

Gix1k

macrumors 68030
Jun 16, 2008
2,869
306
Their plans will fail. The hack will become public at some point.
Had Apple helped, they'd always know where the hole was and could do things to patch it. Now all they know is there's a hole in the ecosystem and no telling if it'll ever be revealed until there's another "fappening" times 10


It doesn't matter, A7 and up isn't vulnerable anyway.
You don't believe that....
 

Mike MA

macrumors 68020
Sep 21, 2012
2,026
1,623
Keep spending our tax money on useless sh.t
Well, after the Paris terrorism attacks a cell phone of one of the terrorists was found and helped to identify some others persons involved. So it basically was worth trying. I'm not judging the legal aspect though.
 
Last edited:

WissMAN

macrumors regular
Jun 19, 2009
146
14
Lone Star state
No surprise that the FBI won't share what they have learned on how to hack an iPhone. But don't be surprised, when Apple builds a new OS which they themselves can't figure way to hack.

I think the whole thing was mishandled from the beginning.
 
  • Like
Reactions: TimSHB

ctdonath

macrumors 65816
Mar 11, 2009
1,468
421
Their plans will fail. The hack will become public at some point.
I don't understand why so many people think the "hack" is so trivial and easily shared. This is something which a professional computer forensic service demanded a million dollars for, and presumably needed the better part of it to perform. The general concept/weakness was suspected by many engineers for a long time, and not done precisely because if the high cost & effort & specialized hardware required.

Insofar as the hack only works for a particular security option on an obsolete model iPhone, Apple has assured & assuredly has corrected the weakness, and requires physical & destructive possession of the device, unlikely that anyone would find the hack details useful even if revealed in detail AND had the significant funds necessary.