create account

Zero-day iOS HomeKit vulnerability allowed remote access to smart accessories including locks, fix rolling out by contentjunkie

View this thread on: hive.blogpeakd.comecency.com
· @contentjunkie ·
$5.29
Zero-day iOS HomeKit vulnerability allowed remote access to smart accessories including locks, fix rolling out
<center>https://9to5mac.files.wordpress.com/2017/05/brookfield-homekit.png?w=1500</center>

From 9to5mac
<hr>
<blockquote>
A HomeKit vulnerability in the current version of iOS 11.2 has been demonstrated to 9to5Mac that allows unauthorized control of accessories including smart locks and garage door openers. Our understanding is Apple has rolled out a server-side fix that now prevent unauthorized access from occurring while limiting some functionality, and an update to iOS 11.2 coming next week will restore that full functionality.

 
The vulnerability, which we won’t describe in detail and was difficult to reproduce, allowed unauthorized control of HomeKit-connected accessories including smart lights, thermostats, and plugs.

The most serious ramification of this vulnerability prior to the fix is unauthorized remote control of smart locks and connected garage door openers, the former of which was demonstrated to 9to5Mac.

The issue was not with smart home products individually but instead with the HomeKit framework itself that connects products from various companies.

Users need to take no action today to resolve the issue as the fix that is rolling out is server-side. The future update to iOS coming next week will resolve any broken functionality. 

The vulnerability required at least one iPhone or iPad on iOS 11.2, the latest version of Apple’s mobile operating system, connected to the HomeKit user’s iCloud account; earlier versions of iOS were not affected.
</blockquote>
Read more: https://9to5mac.com/2017/12/07/homekit-vulnerability/

<hr>

Grab your laptop we're going war driving in the rich neighbourhood looking for Apple locked houses, it's going to be a shopping spree ;)

<h4>Leave your thoughts in the comments below.</h4>

<hr>
Follow @contentjunkie to stay up to date on more great posts like this one.

<a href="https://steemit.com/@contentjunkie"><img src="http://i.imgsafe.org/dd8bd8753d.gif"></a>
👍  , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , and 29 others
properties (23)
authorcontentjunkie
permlinkzero-day-ios-homekit-vulnerability-allowed-remote-access-to-smart-accessories-including-locks-fix-rolling-out
categorytechnology
json_metadata{"tags":["technology","security","news","apple","ios"],"users":["contentjunkie"],"image":["https://9to5mac.files.wordpress.com/2017/05/brookfield-homekit.png?w=1500","http://i.imgsafe.org/dd8bd8753d.gif"],"links":["https://9to5mac.com/2017/12/07/homekit-vulnerability/","https://steemit.com/@contentjunkie"],"app":"steemit/0.1","format":"markdown"}
created2017-12-09 01:41:18
last_update2017-12-09 01:41:18
depth0
children3
last_payout2017-12-16 01:41:18
cashout_time1969-12-31 23:59:59
total_payout_value4.876 HBD
curator_payout_value0.411 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length1,942
author_reputation253,577,661,205,632
root_title"Zero-day iOS HomeKit vulnerability allowed remote access to smart accessories including locks, fix rolling out"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id22,831,688
net_rshares1,379,489,776,131
author_curate_reward""
vote details (93)
@akilasultana373 ·
Good information.I like it.Thanks for sharing this kind of information.
properties (22)
authorakilasultana373
permlinkre-contentjunkie-zero-day-ios-homekit-vulnerability-allowed-remote-access-to-smart-accessories-including-locks-fix-rolling-out-20171209t014618371z
categorytechnology
json_metadata{"tags":["technology"],"app":"steemit/0.1"}
created2017-12-09 01:46:27
last_update2017-12-09 01:46:27
depth1
children0
last_payout2017-12-16 01:46:27
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length71
author_reputation10,870,067,024,358
root_title"Zero-day iOS HomeKit vulnerability allowed remote access to smart accessories including locks, fix rolling out"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id22,832,014
net_rshares0
@bitcoinist ·
Thanks for sharing ..@contentjunkie
properties (22)
authorbitcoinist
permlinkre-contentjunkie-zero-day-ios-homekit-vulnerability-allowed-remote-access-to-smart-accessories-including-locks-fix-rolling-out-20171209t014414505z
categorytechnology
json_metadata{"tags":["technology"],"app":"steemit/0.1"}
created2017-12-09 01:44:15
last_update2017-12-09 01:44:15
depth1
children0
last_payout2017-12-16 01:44:15
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length35
author_reputation1,725,295,903,202
root_title"Zero-day iOS HomeKit vulnerability allowed remote access to smart accessories including locks, fix rolling out"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id22,831,883
net_rshares0
@cryptofixer ·
That scares the hell out of me, Right now there is no good protection for locks like that. I am not going to buy one until every little nook and cranny in the problem is figured out. Nice post @contentjunkie
properties (22)
authorcryptofixer
permlinkre-contentjunkie-zero-day-ios-homekit-vulnerability-allowed-remote-access-to-smart-accessories-including-locks-fix-rolling-out-20171209t015119229z
categorytechnology
json_metadata{"tags":["technology"],"users":["contentjunkie"],"app":"steemit/0.1"}
created2017-12-09 01:51:18
last_update2017-12-09 01:51:18
depth1
children0
last_payout2017-12-16 01:51:18
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length207
author_reputation2,479,706,318,079
root_title"Zero-day iOS HomeKit vulnerability allowed remote access to smart accessories including locks, fix rolling out"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id22,832,334
net_rshares0