HT TECH wants to start sending you push notifications. Click allow to subscribe

Here’s how an encrypted, locked Android and Apple phone gets bypassed

Researchers have explained how a locked, encrypted smartphone, both Android and Apple, can be bypassed. Android is also more vulnerable to a bypass because of its fragmented nature.

By: HT TECH
Updated on: Aug 21 2022, 14:16 IST
According to the research, methods to get into a locked device are already available for law enforcement, but only if they have the right knowledge and tools. (Pixabay)

Researchers at John Hopkins University have released a report that highlights all vulnerabilities in Android and iOS smartphone encryption, explaining how law enforcement agencies exploit these to get into locked devices.

This report comes in at a time when various governments are pressing for backdoor entries to overcome device encryptions to access data in cases when national security is threatened.

You may be interested in

Mobiles Tablets Laptops
7% OFF
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹148,900₹159,900
Buy now
23% OFF
Samsung Galaxy S23 Ultra 5G
  • Green
  • 12 GB RAM
  • 256 GB Storage
₹115,999₹149,999
Buy now
5% OFF
Apple iPhone 15 Plus 256GB
  • Black
  • 6 GB RAM
  • 256 GB Storage
₹94,900₹99,900
Buy now
9% OFF
Apple iPhone 15 256GB
  • Black
  • 6 GB RAM
  • 256 GB Storage
₹90,990₹99,900
Buy now
Apple MacBook Pro M3 MR7J3HN A Ultrabook
  • Silver
  • 8 GB RAM
  • 512 GB SSD
₹169,900
Buy now
Apple MacBook Air M2 MQKQ3HN A Ultrabook
  • Space Grey
  • 8 GB RAM
  • 512 GB SSD
₹134,900
Buy now
Apple MacBook Pro M2 MNEH3HN A Ultrabook
  • Space Grey
  • 8 GB RAM
  • 256 GB SSD
₹100,000
Buy now
Apple MacBook Pro MXK32HN A Ultrabook
  • Space Grey
  • 8 GB RAM
  • 256 GB SSD
₹100,000
Buy now
3% OFF
Apple iPad Pro 11 2022 WiFi 1TB
  • Silver
  • 16 GB RAM
  • 1 TB Storage
₹147,328₹151,900
Buy now
3% OFF
Apple iPad Pro 12 9 2022 WiFi plus Cellular 256GB
  • Silver
  • 8 GB RAM
  • 256 GB Storage
₹133,750₹137,900
Buy now
Apple iPad Pro 11 2022 WiFi plus Cellular 512GB
  • Silver
  • 8 GB RAM
  • 512 GB Storage
₹126,900
Buy now
3% OFF
Apple iPad Pro 12 9 2022
  • Silver
  • 8 GB RAM
  • 128 GB Storage
₹124,051₹127,900
Buy now

According to the research, methods to get into a locked device are already available for law enforcement, but only if they have the right knowledge and tools. And this is the case because of the existing security loopholes in the iOS and Android ecosystem.

The research has been conducted by Maximilian Zinkus, Tushar Jois, and Matthew Green of Johns Hopkins University and shows that Apple has a “powerful and compelling” set of security and privacy controls that is backed by strong encryption. However, there is a critical lack of coverage since these tools are under-utilised allowing for law enforcement agencies and hackers to break in if they want.

Also Read: Govt agencies can still break into Apple iPhones regardless the security updates

“We observed that a surprising amount of sensitive data maintained by built-in apps is protected using a weak ‘available after first unlock’ (AFU) protection class, which does not evict decryption keys from memory when the phone is locked. The impact is that the vast majority of sensitive user data from Apple's built-in apps can be accessed from a phone that is captured and logically exploited while it is in a powered-on (but locked) state,” the report states.

There is also a weakness in cloud backup and services, as the researchers pointed out. They found “several counter-intuitive features of iCloud that increase the vulnerability of this system’.

The researchers also highlighted the “blurred nature” of Apple documentation in the case of end-to-end encrypted cloud services and iCloud backup service.

In the case of Android smartphones, while the platform has strong protections, particularly on the latest flagship devices, the fragmented and inconsistent nature of security and privacy controls across Android devices make them more vulnerable as compared to Apple.

The research also blames slow rate of Android updates actually reaching devices and various other software architectural issues as the main reasons for a high breach rate in Android phones.

“Android provides no equivalent of Apple's Complete Protection (CP) encryption class, which evicts decryption keys from memory shortly after the phone is locked. As a consequence, Android decryption keys remain in memory at all times after ‘first unlock’ and user data is potentially vulnerable to forensic capture,” the report states.

The report also adds that de-prioritisation and limited use of end-to-end encryption is also at fault.

The Researchers have pointed out the deep integration with Google services, such as Drive, Gmail, and Photos, as these apps offer rich user data that can be easily infiltrated.

“It just really shocked me, because I came into this project thinking that these phones are really protecting user data well. Now I've come out of the project thinking almost nothing is protected as much as it could be. So why do we need a backdoor for law enforcement when the protections that these phones actually offer are so bad?” Johns Hopkins cryptographer Matthew Green told the Wired.

Catch all the Latest Tech News, Mobile News, Laptop News, Gaming news, Wearables News , How To News, also keep up with us on ,Twitter, Facebook, , and Instagram. For our latest videos, subscribe to our YouTube channel.

First Published Date: 16 Jan, 16:11 IST
Tags:

Sale

Mobiles Tablets Laptops
9% OFF
Apple iPhone 13 512GB
  • Blue
  • 4 GB RAM
  • 512 GB Storage
₹81,900₹89,900
Buy now
12% OFF
Apple iPhone 15
  • Black
  • 6 GB RAM
  • 128 GB Storage
₹70,500₹79,900
Buy now
5% OFF
Apple iPhone 15 Pro
  • Black Titanium
  • 8 GB RAM
  • 128 GB Storage
₹127,990₹134,900
Buy now
7% OFF
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹148,900₹159,900
Buy now
9% OFF
Apple iPad Pro 12 9 2021 WiFi plus Cellular 512GB
  • Silver
  • 8 GB RAM
  • 512 GB Storage
₹129,999₹142,900
Buy now
4% OFF
Apple iPad Pro 11 WiFi Cellular 512GB
  • Silver
  • 4 GB RAM
  • 512 GB Storage
₹106,999₹111,900
Buy now
8% OFF
Apple iPad Air 2020
  • Space Gray
  • 4 GB RAM
  • 64 GB Storage
₹45,999₹49,900
Buy now
4% OFF
Apple iPad Pro 11 WiFi 512GB
  • Silver
  • 4 GB RAM
  • 512 GB Storage
₹106,999₹111,900
Buy now
23% OFF
Infinix INBook X1 Neo XL22 Laptop Intel Celeron Quad Core 8 GB 256 GB SSD Windows 11
  • Blue
  • 4 GB RAM
  • 128 GB SSD
₹22,990₹29,990
Buy now
33% OFF
Asus VivoBook Go 15 OLED E1504GA NJ323WS Laptop
  • Green Grey
  • 8 GB RAM
  • 512 GB SSD
₹33,990₹50,990
Buy now
37% OFF
Asus ROG Strix Scar 15 G532LW AZ056T Laptop
  • Black
  • 16 GB RAM
  • 1 TB SSD
₹146,200₹231,990
Buy now
24% OFF
Asus ROG Strix G15 G513RC HN063W Laptop
  • Electro Punk
  • 16 GB RAM
  • 512 GB SSD
₹66,500₹86,990
Buy now
NEXT ARTICLE BEGINS