iPhone Security Flaw - Screenshot!!

Discussion in 'iOS 11' started by paulv80, Oct 12, 2017.

  1. paulv80 macrumors newbie

    paulv80

    Joined:
    Oct 12, 2017
    #1
    Has anyone noticed with the new iOS 11 screenshot share feature you can get into someone’s phone without a passcode or fingerprint (iPhone 7 or higher). Huge security issue. Here are the steps I took to came across the bug.

    1. With phone locked, take screenshot.

    2. Tap and hold the screenshot to share

    3. Send screenshot via iMessage. IMO this shouldn’t even be allowed without unlocking your phone. This exposes all my contacts and their contact info

    4. Once the message is sent, you can tap and hold down any notification and it’ll open directly in the phone.

    5. Now my phone is unlocked. I didn’t have to put my passcode in or use my fingerprint.

    I’m using an iPhone 7 Plus with ISO 11.0.3
     
  2. melancholy macrumors 6502

    melancholy

    Joined:
    Aug 25, 2016
    #2
    ... are you sure you didn’t accidentally scan your fingerprint when taking a screen shot? You need skin contact when pressing the home button on the iPhone 7. I just tried taking a screenshot with my nail on 6s and the share button didn’t show when it was locked
    --- Post Merged, Oct 12, 2017 ---
    Look at the status bar, when it’s locked, share button is missing. When it’s unlocked, the share button is present. B82FFAA2-089C-487E-B750-88B0A3FC56D8.png 666B88AA-A2BB-48DE-B47C-FB152688DBCA.png
     
  3. paulv80 thread starter macrumors newbie

    paulv80

    Joined:
    Oct 12, 2017
    #3
    Haha yup, that’s it! Thanks
     
  4. Ntombi macrumors 68040

    Ntombi

    Joined:
    Jul 1, 2008
    Location:
    Bostonian exiled in SoCal
    #4
    I just did the same experiment, using a non-Touch ID finger and got the result melancholy did. No share option.
     
  5. dcp10 macrumors 6502

    Joined:
    Jul 30, 2010
    #5
    Same here, no share sheet when my phone is locked

    OP, try again with an unregistered finger
     

Share This Page

4 October 12, 2017