Become a fan of Slashdot on Facebook

 



Forgot your password?
typodupeerror
×
Iphone Security Cellphones Crime Government IOS Operating Systems Privacy The Courts Apple News Build Technology Your Rights Online

LAPD Hacked An iPhone 5s Before The FBI Hacked San Bernardino Terrorist's iPhone 5c (latimes.com) 47

According to recently released court papers, Los Angeles police investigators found a way to break into a locked iPhone 5s belonging to April Jace, the slain wife of "The Shield" actor Michael Jace. The detectives were able to bypass the security at around the same time period the FBI was demanding Apple unlock the iPhone 5c belonging to San Bernardino terrorist Syed Rizwan Farook. LAPD detective Connie Zych wrote on March 18, the department found a "forensic cellphone expert" who could "override the locked iPhone function," according to the search warrant. There's no mention of how the LAPD broke into the iPhone or what OS the iPhone was running (Note: iOS 8, which features improved encryption and security features, came out months after the killing). The information stored on the iPhone should help in the criminal case against Jace's husband, who is charged with the May 19, 2014, killing.
This discussion has been archived. No new comments can be posted.

LAPD Hacked An iPhone 5s Before The FBI Hacked San Bernardino Terrorist's iPhone 5c

Comments Filter:
  • by AbRASiON ( 589899 ) * on Thursday May 05, 2016 @07:52PM (#52057403) Journal

    https://en.wikipedia.org/wiki/... [wikipedia.org]

    I just looked it up because of this article, that was nearly a full 2 years ago. I imagine several significant holes in iOS have likely been patched by now.
    Apple are seemingly getting close to having an airtight phone, assuming you have it locked of course with a reasonable pass / pin. This seems like a good thing for the consumer.

    • Re: (Score:3, Informative)

      by Wrath0fb0b ( 302444 )

      Yes, iOS 7 was vulnerable to a very simple hardware hack:

      (1) Hook up your own battery emulator to replace the battery
      (2) Try a passcode, if it fails, cut power before the phone has a chance to write down the failure attempt
      (3) Profit (seriously, these hack-boxes were like $50k each while they worked)

      The solution on the phone side is reordering the events -- first execute failedAttempts++ and make sure it's synced to persistent storage, then evaluate the passcode and, if it's good, write failedAttempts=0 and

    • Yes, iOS 7 was vulnerable to a very simple hardware hack:

      (1) Hook up your own battery emulator to replace the battery
      (2) Try a passcode, if it fails, cut power before the phone has a chance to write down the failure attempt
      (3) Profit (seriously, these hack-boxes were like $50k each while they worked)

      The solution on the phone side is reordering the events -- first execute failedAttempts++ and make sure it's synced to persistent storage, then evaluate the passcode and, if it's good, write failedAttempts=0 and

      • by tlhIngan ( 30335 )

        Yes, iOS 7 was vulnerable to a very simple hardware hack:

        No, there are easier hacks in iOS7 - there have been many lock screen hacks that let you in without consuming attempts on your passcode.

        Just google for iOS7 lock screen bypasses and there's an ugly list of 3-4 different bugs. I believe even iOS 8 has similar lockscreen bypasses. Heck, even iOS9 had one using Siri until Apple fixed it server-side.

  • by peragrin ( 659227 ) on Thursday May 05, 2016 @08:01PM (#52057455)

    IOS 8 was released Sept of 2014. Or four months after the killing.

    The phone would have been running iOS 7at best.

    Let's have a big headline and dupe idiots into thinking it was hard.

    • parent deserves +5

      • by aitikin ( 909209 )

        parent deserves +5

        For pointing out the specific details of a statement that was generalized in TFS?

        (Note: iOS 8, which features improved encryption and security features, came out months after the killing).

        • Exactly then why make abig deal of it today? Because the phone was only hacked recently.

          It is making a big deal of Android 4.0 being hacked. Hence the sensational headline.

          Now if someone hacks ios9 phone then go for it.

    • by tom229 ( 1640685 )
      So iPhones were easy to break into all the way back in those dark ages 18 months ago, but are completely secure now? Got it. How's that koolaid taste anyways?
  • There's no mention of how the LAPD broke into the iPhone

    They probably just asked inmates to help out: they have experience and time.

  • Laos budget (Score:2, Informative)

    by Anonymous Coward

    Lapd has enormous budget, saw a documentary which said they had people stationed internationally. Mission creep on overdrive.

  • by Anonymous Coward

    "belonging to San Bernardino terrorist Syed Rizwan Farook". No, it belonged to the county of San Bernardino.

  • There is a reason FBI chose this huge terrorism case out of their huge load. They politicized everything in order to establish a precedent.
  • by Xabraxas ( 654195 )
    It was probably locked with a fingerprint.
    • The problem with fingerprints is they can force you to unlock it (with a warrant).

      Forcing you to say your password has 5th Amendment implications.

  • Illegal unless you're one of the good guys.

  • I think critically, so I own a Samsung and this doesn't apply to me yet - but indications are it soon will. Google has been encrypting their phones by default for a couple generation's and are warning OEMs they might require it for Android branding soon. As a society we need to stop the trend towards this nonsense.

    There's nothing on my phone worth encrypting. If there was, I'd encrypt it. However there's lots on my phone that I'd never want to lose. I do backups, but I don't get to it every day, every we
    • by heypete ( 60671 )

      Why not get the best of both worlds and have automated backups and an encrypted phone?

      If you're not comfortable with Google's various backup options (e.g. Google Photos' cloud backup), that's fine: there's alternatives. I use BitTorrent Sync to sync the camera folders on my and my wife's smartphones with our various computers and NAS. Not only does this make it easier to share photos and video with family (I find it easier to share from a computer, rather than from a phone), but it runs continuously so ther

      • by tom229 ( 1640685 )
        Of course I have discovered my own backup solutions that align to my ideals. I would still rather not have an encrypted device, that I don't need, just in case. Why am I supposed to be fine with something I don't need, or want? Data encryption should not be a default option simply because there are many real-world problems when using it, and few real-world cases where it's actually needed.The confusion likely arises with engineers trying to extend the ideals for default encrypted communications. There is no
        • by laird ( 2705 )

          Encrypted storage these days works quite well, and is built into Windows and MacOS at no cost. When we have employees working in insecure areas (such as shared offices) we encrypt their hard drives, and there's no noticeable performance impact. If they forget their credentials they lose access to their hard drive, but they also can't get to their email, calendar, file servers, etc., so that's hardly insurmountable.

          And the value of encrypting storage is pretty high - if a laptop is lost or stolen, encrypting

          • by tom229 ( 1640685 )

            so it's worth doing

            I never said it wasn't. The problem is there's also many instances where encrypting data is worth NOT doing, and on many of these mobile platforms there is no option for that. Forced encryption is bad design, likely intended to encourage users into using cloud services, not to protect them - of course that's how they'll sell it though.

  • There are a dew distinct aspects to this (IMO):
    - There's a fundamental difference between "police can hack into iPhones" and "Apple puts a backdoor into iPhones so that iPhones are trivially hackable by anyone with the key", because Apple's role in the process matters. If Apple's job is to make iPhones secure, the police (and criminals) can of course still hack phones, but any vulnerabilities are treated as bugs to be fixed, and the iPhone gets more and more secure over time. If the police can force Apple t

E = MC ** 2 +- 3db

Working...