[Owasp-mobile] Can Apple give police a key to your encrypted iPhone data?

Jeffrey Walton noloader at gmail.com
Fri Apr 6 00:26:53 UTC 2012


Does Apple have a backdoor that it can use to help law enforcement
bypass your iPhone's passcode? That question became front and center
this week when training materials (PDF) for the California District
Attorneys Association started being distributed online with a line
implying that Apple could do so if the appropriate request was filed
by police.

As with most things, the answer is complex and not very
straightforward. Apple almost definitely does help law enforcement get
past iPhone security measures, but how? Is Apple advising them using
already well-known cracking techniques, or does the company have
special access to our iDevices that we don't know about? Ars decided
to try to find out.

Security researcher Chris Soghoian was the first to tweet about the
curious language that implied Apple could bypass a user's passcode at
the request of law enforcement. Soon thereafter, a source confirmed to
CNET that Apple has been lending assistance in passcode bypassing for
the last three years. But the CNET report doesn't answer the central
question: does Apple have an actual backdoor for this, or is the
company just helping to point investigators in the right direction?

More information about the Owasp-mobile mailing list