IOS 13 Bypass Lock screen password vulnerability
iOS 13 will soon be released, before the official release, Spanish security researcher Jose Rodriguez disclosed a vulnerability, able to bypass the lock screen password to view contacts, photos, text messages.
On iOS devices, when the screen is locked, users cannot view information saved in the device, such as contacts, photos, text messages, etc., which cannot be opened. The exploit principle of this vulnerability is to dial FaceTime to the target mobile phone, then call Sir, turn on VoiceOver, click the custom entry to find the contact list, the specific operation process can refer to POC video demonstration address: www.ioshacker.net/thread-180-1-1.html
It is understood that other versions of iOS have similar vulnerabilities, and iOS 6.1, iOS 7, iOS 8.1 and iOS 12.1 are known to have similar security vulnerabilities.
Jose Rodriguez discovered the vulnerability in the iOS 13 beta version and submitted the vulnerability to Apple on July 17. Although two months have passed, researchers can test the Gold Master (GM) version of iOS 13 to reproduce the vulnerability, and the final version of iOS 13 will be pushed to users on September 19, so the official version of iOS 13 will not fix the vulnerability.