New iOS 12 Version Fixes Recent Vulnerabilities That Allow Bypass Locking
Apple has not only fixed iPhone XS charging issues but also disabled two methods of lockscreen bypass with the recent iOS 12 update, version number 12.0.1. These were recently demonstrated by a researcher.
The iOS 12.0.1 patch notes state that there are two vulnerabilities, with the attributes CVE-2018-4379 and CVE-2018-4380. According to Apple, the first method allowed an attacker with physical access to an iOS device to access the share feature from the lock screen. The second method made it possible to view photos and contacts on a locked device under the same conditions. Apple thanks ‘videosdebarraquito’ for the discovery.
Videosdebarraquito is, among other things, a YouTube channel in the name of researcher Jose Rodriguez. He recently demonstrated the lock screen bypasses there. In both cases, it is a complicated procedure with many different steps, with the researcher using Siri from the lock screen and the VoiceOver function, among other things.
It’s not the first time iOS has faced a lock screen bypass; this also happened in previous versions. It is also not the first time for Rodriguez that he has discovered such a vulnerability, he already did that in iOS 7. The new version of iOS was released on Monday and resolves charging problems with the iPhone XS and XS Max, among other things.