Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.
Be careful.

He is not doing anything but keying and incorrect pass code an then keying his passcode 1111.
Watch it! There many out there just trying to call people's attention.
If you try this many times you will disable your iPhone check your settings.
 
You can. Did you read? You can disable Notification Center and Control Center on the Lock screen. That would avoid what''ver is going on here.

That said, I've been unable to reproduce this hack on my iPhone 4.

This isn't the first lockscreen exploit found that leads to data vulnerability. Each I know of has been attributed to additional features made available via the lockscreen. Features that go beyond simply unlocking the phone. Another such hole was the emergency call feature.

A simple way to stop it for security conscientious people, companies, government agencies, &c is to allow a full lock down option.
 
this is bad

I think someone inside apple quality assurance opened his mouth :D:D:D:D:D, i don't know how this guys make this....:eek:
 
With passcode lock setting to "immediately", I am unable to duplicate this behavior whatsoever. The video demo does not seem to indicate the device's passcode lock setting period, so I do not buy this story until further proof.


You are incorrect. I can still get all my photos and contacts to appear with the require passcode set to immediately.
 
Apple really needs to implement a full lockdown lockscreen option. Where all you can do is swipe to unlock. No playing music, emergency dialing, answering calls, silencing alarm, &c. Just complete and total lockdown for people with sensitive information.

Locking you out from emergency calls is probably not the best idea. Allowing it has nothing to do with any information on the phone, sensitive or not.
 
Works with my iPhone 5, iPad mini and iPad 3 - the timing seemed to be more of an issue with the iPad 3 where it took serveral attempts to make it work.
 
Easy solution is turn off control center in lock screen. Could replicate when it was on...with many attempts...but couldn't, of course, when it was turned off.

And for those concerned about access to siri in lock screen just disable access in passcode settings. This can also be done for passbook, reply with message and voice dial.

If you use passcode for security then why not turn off the features that have access to the phone when locked?

My important apps like banking etc have an extra passcode or pin which has no bypass. If I lose my phone and someone can see my pictures or send pictures from contacts they are welcome to do it.

I tested the new activation lock feature today and put my phone in lost mode through iCloud and put my home phone number in custom message if found. Couldn't access without apple id no matter what I tried.
 
So, do people use iOS 7 anymore, or do we just want it so we can exploit it? :p

I tried this and it not only works, but you can access everything.

The issue is, you access the camera from the lock screen, but you don't need to press the sleep/wake button, just click Home as normally, and rather than going back to the lock screen, you'll go back to the Home screen instead

From there you've just completely by-passed and your Home free.

Of course, for this to all work you need physical access to said device.

I like these kinds of deals. apple restricts stuff one minute, breaks it the next. Well done.
 
Last edited:
Really?

That's why it should be a death penalty if you steal anything like a phone or a car from someone.

If it was, no one would do it.

Also, what jackass has time to figure out gyrations like that. Can you actually make money doing it, or is it like the drunk at the bar that can pull quarters from behind girls ears? A cheap parlor trick.
 
wow, I feel so vulnerable now. :rolleyes: you still have to get the phone from my pocket and have knowledge of this security flaw.... I'll sleep well tonight that my phone is safe.

I agree Nacho! If someone can "take" my phone, they surely deserve to have it more than I, in which case, I can never expect to retain possession of ANY item I may want to purchase again! Now, dont that suck a.....
 
…..One of the reasons I wait a week or two before upgrading.

A sound policy.

…..Update: Apple has told AllThingsD that it is working on a fix.

"Apple takes user security very seriously," Apple spokeswoman Trudy Muller told AllThingsD. "We are aware of this issue, and will deliver a fix in a future software update."

Article Link: iOS 7 Lock Screen Vulnerability Gives Access to Photos, Email

Comforting words. Any company can say this, but with Apple you always feel confident that they mean it, and will deliver on that promise.
 
You'd think Apple could afford some testing talent to find these important security bugs prior to a release.
 
Is there any particular reason the control centre screen should be accessible on the lock-screen? I could understand a simplified one for quickly opening the calculator or other handy fast-access widgets, but surely full access is just asking for trouble?
 
I've always wondered how people stumble upon these vulnerabilities, then turn around and are even able to recreate them.

Some of it may be internal but then again there are some smart people out there, look at the jailbreak people.

It's all about knowing how a device work in it's different states.

A lot of exploits are just a variation of another known exploit. You try that first and then go from there.
 
I'm thinking the exact same thing!!

This reminds me of old videogame magazines I used to buy when younger... And that time there was no widespread Internet like we have today... I always wondered how they could discover those fatalities, brutalities, etc :D

----------

Well if people didn't do that, then these problems wouldn't be fixed...

Maybe he's a developer, Mr Busy Man
 
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.