Not everything Apple makes "just works" — at least not as intended,Movies | Movies free | Movies latest 2022 anyway.
Security researchers exploring AirDrop, the iOS and macOS feature that lets users wirelessly share files via WiFi and Bluetooth, reported Wednesday on a flaw they say exposes users' emails and phone numbers. Unless you want every creep on the street to be able to secretly grab your contact info, it's a bit of a nightmare.
The researchers, a team made up of members of the Secure Mobile Networking Lab (SEEMOO)and the Cryptography and Privacy Engineering Group (ENCRYPTO), claim they alerted Apple to the flaw in May of 2019. However, according to them, the company never responded.
"As an attacker, it is possible to learn the phone numbers and email addresses of AirDrop users – even as a complete stranger," reads Tuesday's press release. "All they require is a Wi-Fi-capable device and physical proximity to a target that initiates the discovery process by opening the sharing pane on an iOS or macOS device."
We reached out to Apple to confirm the findings and to ask if indeed it was alerted to the vulnerability in 2019. We received no immediate response.
Notably, this is not the first questionable privacy situation tied to AirDrop. In 2019, researchers discovered that they were able to determine users' phone numbers based on the partial hashes AirDrop sends out. It's not clear if that concern was ever addressed by Apple, especially as the vulnerability disclosed this week appears similar in nature.
"The discovered problems are rooted in Apple's use of hash functions for 'obfuscating' the exchanged phone numbers and email addresses during the [AirDrop] discovery process," explains Tuesday's press release. "However, researchers from TU Darmstadt already showed that hashing fails to provide privacy-preserving contact discovery as so-called hash values can be quickly reversed using simple techniques such as brute-force attacks."
AirDrop is also notorious for its association with digital harassment. Specifically, harassers used the feature for cyber-flashing — wherein a stranger bombards a victim's phone with unwanted photos of a sexual or graphic nature — and sending images associated with white supremacists to people just going about their own business in public.
This Tweet is currently unavailable. It might be loading or has been removed.
This Tweet is currently unavailable. It might be loading or has been removed.
Of course, you don't have to deal with any of this.
If you'd rather avoid having your iPhone expose your contact info to creeps and protect yourself from cyber-flashers, you can turn AirDrop off (and disable Bluetooth while you're at it).
SEE ALSO: Apple knows AirTags can be abused and is trying to get ahead of it
It's not a permanent thing — you can always briefly turn AirDrop back on if you need it for some reason — but disabling the feature will provide you with some peace of mind, and hey, that "just works."
Topics Apple Cybersecurity Privacy
Get 20% off Tile trackers at Amazon's Big Spring Sale 2024Amazon Big Spring Sale Bluetooth speaker deals: Bose, JBL, and moreAmazon Big Spring Sale: Best treadmill dealAmazon Big Spring Sale: Best treadmill dealAmazon Big Spring Sale: Get a Shark selfHarrison Ford isn't a fan of the Trump administration's climate agendaiPod Shuffle hair clips prove the Y2K fashion revival is far from overAmazon Big Spring Sale Bluetooth speaker deals: Bose, JBL, and moreAtlético Madrid vs. Barcelona 2024 livestream: Watch La Liga for freeBest Sony deal: The Sony WFNYT's The Mini crossword answers for March 21Wordle today: The answer and hints for March 19Glassdoor is tying real names to anonymous profiles without consentGet 20% off Tile trackers at Amazon's Big Spring Sale 2024iPod Shuffle hair clips prove the Y2K fashion revival is far from overDating app coaches promise to upgrade your love life. But what do they actually do?Wordle today: The answer and hints for March 21Elon Musk's X suspends users who post alleged name of altThe EPA's Scott Pruitt ignores the new U.S. climate science reportBest Amazon Fire Kids Tablet deals: Save up to 42% How to use Legacy Contact, the estate planning feature in iOS 15 Brave student responds to all of Southern Oregon University with a joke about cougar sightings YouTube cofounder protests decision to remove 'dislikes' Everything coming to Disney+ in December How to remove yourself from a Twitter list The official Disney Twitter account posted a weirdly dark tweet and people are confused Prince Harry and Meghan Markle want people to donate to charity rather than sending wedding gifts What's with this random goat on a roof? A guide to floral foam videos, the slime videos of 2018 Cardi B probably knows a lot more about President Franklin D. Roosevelt than you do Viral TikTok uses data to show the workload of parental leave 'The Great British Baking Show' co Myanmar activists respond to Mark Zuckerberg's email on hate speech Broadway musical 'Diana' is a royal mess: Review Porsche has launched the Taycan GTS and Taycan GTS Sport Turismo Activists show up at Facebook HQ to demand better privacy The inspiration behind the cheese balls cold open on 'The Office' Spotify has acquired audiobook platform Findaway There's a life Watch in horror as Donald Trump's hair attempts another daring escape
1.8975s , 10131.7109375 kb
Copyright © 2025 Powered by 【Movies | Movies free | Movies latest 2022】,Wisdom Convergence Information Network