A tiny device can be used to put your iPhone, and perhaps Android phones as well, into an endless reboot loop — and while there is a way to mitigate the attack, it's far from ideal.
The device is called Flipper Zero and is typically used for penetration testing, meaning security experts use it to test another device's wireless security. It's not exactly obscure; it can easily be bought online for $169 in the U.S. or €165 in Europe.
Described as a "portable multi-tool for pentesters and geeks in a toy-like body," Flipper Zero can interact with various types of wireless systems, including garage door remotes, TVs, NFC readers, RFID readers, and Bluetooth devices.
The device has been around since 2020 (we actually covered it back then), but Ars Technica and TechCrunch have recently highlighted how Flipper Zero can be used to essentially incapacitate an iPhone by sending an endless flurry of Bluetooth requests. On the victim's iPhone, these could look like a request to connect with a TV, which keep popping up until the phone eventually reboots. This is not a new type of attack, but Flipper Zero is cheap, small, portable, and makes it a lot easier to do.
Security researcher Jeroen van der Ham said he experienced this attack himself. He then set out to replicate it himself in a controlled environment, and he managed to crash an iPhone, though the attack only fully worked on iPhones running iOS 17 or newer.
Here's the problem: You cannot permanently deny these types of request on an iPhone. You can deny the connection, but the requests will keep popping up. The only thing you can really do at this point is to turn Bluetooth off completely, but then your wireless headphones and other Bluetooth accessories will be disconnected from your iPhone, which is hardly ideal. Note that you cannot just switch Bluetooth off in the Control Center; you have to turn Bluetooth off in the phone's Settings to mitigate the attack. Van der Ham says he contacted Apple about the issue but did not hear back from the company.
There are reports saying that Flipper Zero can be used to perform a similar attacks on other devices, such as Android phones and Windows devices, though it's unclear whether it can be used to crash them. Additionally, Android phones do have an option to turn off notifications for Bluetooth connection requests making this a lot less of a nuisance.
Copyright © 2023 Powered by
This $169 device can put your iPhone in a reboot loop. Here's what you can do.-风花雪夜网
sitemap
文章
4277
浏览
78183
获赞
46
Xiaomi Mi 10T Pro has a 144Hz display, 5,000mAh battery
Xiaomi's flagship phones have been following the same pattern for years: Low price, top specs, few cFisker Ocean wants to be a sustainable, affordable electric SUV
Fisker's upcoming SUV first promised to be affordable enough. Now it's promising to be environmental10 things to fantasize about doing once coronavirus is over
Most people in the United States are on their third or fourth week of self-quarantine. Some states aFisker Ocean wants to be a sustainable, affordable electric SUV
Fisker's upcoming SUV first promised to be affordable enough. Now it's promising to be environmentalTwitter's latest big ban highlights skewed definition of bad behavior
At long last, Twitter has permanently banned Bill Mitchell from its little corner of the internet. JThe 14 best tweets of the week, from soup tubes to Flavortown
Phew, another week of quarantine down. This one feel long to you? Same, pal, same.Anyway, we've doneStop comparing coronavirus to other deadly viruses
The new coronavirus has some stark differences from other relatively recent, grim outbreaks of diseaHere are the 13 best tweets of the week
Another week down in quarantine — or at least, if you're in the U.S., you almost certainly shoSamsung, stop trying to make the Galaxy Buds Live happen
Samsung has basically confirmed its new earbuds will be called the Galaxy Buds Live — not, sadToms Shoes hacker just wants you to stop and smell the roses
You're all justdigital slaves, man.That appears to be the thinking of whoever commandeered TOMS ShoeHinge rolls out in
Today the dating app Hinge launches Hinge Labs, the first dating app research program backed by behaYubico unveils security key with built
Yubico is showing off an upgraded security key that requires your fingerprint to activate the deviceTrump's letter to Turkish president is so ridiculous people didn't believe it was real
It's an especially concerning day to be living in Donald Trump's America.Shortly after House SpeakerTinder is making its 'Orientation' feature global and you can list up to 3
Tinder is making its Orientation feature global after debuting it one year ago.The dating app's feat5 weird old phones that should totally get the Razr treatment
Motorola made history by revealing the first foldable phone that actually looks kinda cool. As you m