The tool to extract data from the locked iPhone is sold publicly for VND 35 million

Tram Ho

Elcomsoft is a famous Russian security firm, known for a long time to create specialized software to crack iPhone passwords. Recently, the company has just added a new feature to its iOS Forensic Toolkit, which allows extracting a range of important data on iPhone models running iOS 12 to iOS 13.3.

Xuất hiện công cụ cho phép xuất email, mật khẩu từ iPhone bị khóa bằng lỗ hổng bảo mật của Apple - Ảnh 1.

After updating the iOS Forensic Toolkit to 5.21, users can easily extract a portion of data from iCloud Keychain, which is used to store information about username, web password, information. credit card … for applications and online services.

The list of affected devices includes iPhone 5s to iPhone X, all iPad models from iPad mini 2 to iPad 2018, iPad 10.2, first-generation iPad Pro 12.9 and iPad Pro 10.5. Reportedly, the tool works on the security checkm8 vulnerability, meaning that devices using Apple’s A7 to A11 chips are affected.

Xuất hiện công cụ cho phép xuất email, mật khẩu từ iPhone bị khóa bằng lỗ hổng bảo mật của Apple - Ảnh 2.

Elcomsoft said iOS Forensic Toolkit can now even extract data from an iPhone / iPad in BFU mode (Before First Unlock – before first unlocking). This is the most secure state of an iOS device, because it has just been rebooted and the user has not successfully unlocked it with a password.

According to Elcomsoft, “almost all data” stored on iOS devices remains encrypted until the user unlocks the iPhone with a password after rebooting. However, they have found a number of Keychain containing credentials for email accounts, passwords that can be easily extracted even in BFU mode by using security holes in Apple’s bootrom.

In addition to exporting data when the iPhone / iPad is locked, the toolkit has many other features, providing access to all protected information such as SMS, email, call history, contacts, history. Web browsing, voicemail, account information, location history, messages, application data and Apple ID passwords in plain text state.

Xuất hiện công cụ cho phép xuất email, mật khẩu từ iPhone bị khóa bằng lỗ hổng bảo mật của Apple - Ảnh 3.

Elcomsoft’s iOS Forensic Toolkit is primarily used for law enforcement agencies, although businesses and even individuals can buy it. Russian security company is selling this software for $ 1495 (about 34.6 million), supports both Windows and macOS.

The appearance of tools that allow data extraction on iPhone / iPad may affect some users, but you do not need to worry because they require direct device connection. iOS to the computer via a physical cable, not remotely. On the other hand, the price of iOS Forensic Toolkit is also extremely expensive and not everyone is willing to spend such a large amount of money to use it for malicious purposes.

Share the news now

Source : Trí Thức Trẻ