Apple's Auto-Reboot Security Feature Just Got Dunked On by GrayKey
Apple thought a 72-hour inactivity reboot would stop the feds from snooping on seized phones. Turns out, Magnet Forensics is already two steps ahead. Another day, another high-stakes game of cat and mouse in the world of digital privacy.
When Apple introduced the inactivity reboot in iOS, privacy advocates cheered for what looked like a solid defense against prying eyes. The idea was simple: if a phone sits untouched for three days, it triggers a security lock that makes it much harder for forensic tools to crack the encryption. It was essentially a digital kill-switch for police access.
However, Magnet Forensics, the wizards behind the notorious GrayKey tool, didn't find this very amusing. They recently unveiled GrayKey Preserve, a hardware-software combo that forces an iPhone to stay in the more vulnerable AFU (After First Unlock) state indefinitely. By essentially putting the device on life support, they prevent it from ever hitting that deep-freeze BFU (Before First Unlock) mode where the real security lives.
The tech is surprisingly slick: it mimics a state that keeps the phone's memory from flushing, even after a reboot. The result is a persistent window for law enforcement to bypass passcodes and scrape data, effectively nullifying Apple's recent patch. It seems that for every wall Cupertino builds, someone in the surveillance industrial complex is already selling a ladder.
Privacy is becoming a luxury item that resets every 72 hours, provided the hardware isn't smarter than the law. In the end, the real takeaway is that your device's security is only as strong as the next software update from a vendor you've never heard of.
Source: 404 Media
Comments
Help shape the next version: Add context or suggest a correction. AI review can add points toward a rewrite. Reviews and updates may take time; a full meter does not guarantee a new version.