Apple Shuts Down Flipper Zero’s Ability to Shut Down iPhones::IOS 17.2 cut off Flipper Zero users running the Xtreme third-party firmware from mass-spamming popups at iPhones.

  • Player2@lemm.ee
    link
    fedilink
    English
    arrow-up
    70
    ·
    11 months ago

    This is why it’s important these devices are available. Got to find and fix these sorts of vulnerabilities

    • Potatos_are_not_friends@lemmy.world
      link
      fedilink
      English
      arrow-up
      7
      ·
      11 months ago

      Seriously!

      Such A easy to exploit issue that they package it into a consumer market tool.

      Because if that’s what’s available to nontech folks, Imagine what a professional criminal tool has.

  • aeronmelon@lemm.ee
    link
    fedilink
    English
    arrow-up
    31
    arrow-down
    1
    ·
    11 months ago

    One of the best lines from Armageddon:

    “Sir, the override. It’s been overridden.”

  • AutoTL;DR@lemmings.worldB
    link
    fedilink
    English
    arrow-up
    12
    ·
    11 months ago

    This is the best summary I could come up with:


    Apple silently fixed an exploit that let Flipper Zero devices mass-bombard nearby iPhones with popup notifications, so much so they would essentially disable users’ phones requiring a restart.

    Flipper Zero is a small multi-tool able to mimic NFC, RFID, or other radio signals.

    With that, a Flipper Zero user could stand in a busy intersection and hit all iPhones in a 30-foot radius with popup notifications, enough to make the Apple device lock up and require a restart.

    You can’t get the Xtreme firmware from Flipper’s own third-party app store, but it is still easy for anybody to download and install it on their NFC-replicating device.

    The latest iOS update added a number of handy features like the Journal app, but as usual, Apple doesn’t expand on all its security fixes in its release notes.

    Notably, iOS 17.3 is supposed to add a heap of anti-theft features, but we’ll need to wait and see whether Apple or any other device maker can put a stop to these annoying Bluetooth messages altogether.


    The original article contains 375 words, the summary contains 171 words. Saved 54%. I’m a bot and I’m open source!