Apple releases iOS 15.2.1 to fix iPhones and iPads for HomeKit flaw – TechCrunch

Apple Fixed a security vulnerability in iOS and iPad OS that could be exploited through HomeKit to boot permanently. Denial of service (DoS) attack.

The tech giant released iOS 15.2.1 and iPad OS 15.2.1 Wednesday, we’ll fix the so-called “doorLock” flaw. 15.2 through HomeKit, Apple’s smart home platform that allows Apple users to configure, communicate and control smart home devices. Will be triggered.

To exploit this bug, an attacker would have to rename the HomeKit device to a string greater than 500,000 characters. When the channel is loaded onto the user’s iPhone or iPad, the device’s software goes into a denial of service (DoS) state and must be force reset to thaw. However, when the device restarts and the user logs into the iCloud account linked to HomeKit again, the bug is triggered again.

Even if the user has not added the device to HomeKit, the attacker can create a spoofed home network and cheat on the user. Fishing email. To make matters worse, Spiniolas warned that an attacker could exploit a vulnerability in doorLock to launch it. Ransomware Attacks iOS users, locks the unusable device, and demands payment of a ransom to return the HomeKit device to a secure chain length.

Spiniolas said Apple promised to fix this issue in last year’s security update, but this has been postponed to “early 2022” and fears the delays pose a “serious risk” to users. . I urged Spiniolas to disclose the bug.

“Although they identified the security issue and urged me to take it seriously over the past four months, almost nothing has been done,” he wrote. “Despite my frequent requests, updates on this issue were rare and contained very few details.”

Apple’s lack of transparency not only frustrates security researchers who often work for free, but also reduces Apple’s liability for security concerns, which results in millions of people using Apple products in their daily lives. . Brings risks to. “

This update is available for download now and is available on iPhone 6s and higher, all models of iPad Pro, iPad Air 2 and higher, iPad 5th generation and higher, iPad mini 4 and higher, and iPod touch (7th generation ).

Apple Releases iOS 15.2.1 To Fix iPhones And iPads Against HomeKit – TechCrunch Link Source Apple Releases iOS 15.2.1 To Fix iPhones And iPads Against HomeKit – TechCrunch


Please enter your comment!
Please enter your name here