Hidden Vulnerability in Your Older iPhone
The iPhone, a device known for its security and performance, is not immune to vulnerabilities and exploits. Recently, a research team from Paradigm Shift discovered and exploited a new hardware-level vulnerability called “usbliter8.” This exploit takes advantage of flaws in the USB controller and firmware misconfigurations found in certain iPhone models.
How Does This Exploit Work?
The usbliter8 exploit leverages weaknesses in the iPhone’s USB hardware. During the process, an attacker can send specially crafted USB data when the device is powered on. This can cause the USB controller to write data to incorrect memory areas. This happens before the iOS operating system loads, giving the attacker a chance to take control of the boot process and execute unauthorized code on the device.
Impact on A13 Chip and Additional Security
Although this exploit sounds alarming, devices using the A13 chip are somewhat safer thanks to an additional feature called Pointer Authentication (PAC). This feature is designed to prevent attackers from accessing critical parts of the processor. However, the Paradigm Shift researchers managed to find a way to bypass this protection and exploit the chip.
Risks That Could Threaten Data Security
It is important to note that while this exploit requires physical access to the iPhone, it does not affect Apple’s Secure Enclave. The Secure Enclave is the area where the iPhone stores passcodes and encrypted user data. However, researchers warn that this exploit could open up potential attack vectors that might threaten the Secure Enclave.
Unfortunately, because this vulnerability exists at a low-level hardware code and cannot be fixed through software updates, vulnerable devices will remain at risk indefinitely. The only way to completely avoid this issue is by using newer iPhone, iPad, or Apple Watch models that do not contain the affected chips.
What Can Users Do?
For iPhone users with models containing A12 and A13 chips, as well as S4 and S5 chips, it is important to be aware of this risk. Although the research team reported this bug to Apple before publication, no action can be taken to fix the vulnerability. This highlights the importance of staying vigilant and considering upgrading to newer devices for better security.
On the bright side, there is a possibility that the usbliter8 exploit could be used to achieve a working jailbreak on older iPhones, similar to what happened with the previous checkm8 exploit. While this opens opportunities for users who want to modify their devices, it also underscores that older hardware may no longer be safe to use.
By understanding this vulnerability, users are expected to better grasp the risks they may face. If you use an older iPhone, consider upgrading to a newer model to protect your data and privacy.
Source: https://www.androidauthority.com/iphone-usbliter8-exploit-3679320/


