Zero-day iOS HomeKit vulnerability allowed remote access to smart accessories including locks, fix rolling out

View this thread on: d.buzz | hive.blog | peakd.com | ecency.com
·@contentjunkie·
0.000 HBD
Zero-day iOS HomeKit vulnerability allowed remote access to smart accessories including locks, fix rolling out
<center>https://9to5mac.files.wordpress.com/2017/05/brookfield-homekit.png?w=1500</center>

From 9to5mac
<hr>
<blockquote>
A HomeKit vulnerability in the current version of iOS 11.2 has been demonstrated to 9to5Mac that allows unauthorized control of accessories including smart locks and garage door openers. Our understanding is Apple has rolled out a server-side fix that now prevent unauthorized access from occurring while limiting some functionality, and an update to iOS 11.2 coming next week will restore that full functionality.

 
The vulnerability, which we won’t describe in detail and was difficult to reproduce, allowed unauthorized control of HomeKit-connected accessories including smart lights, thermostats, and plugs.

The most serious ramification of this vulnerability prior to the fix is unauthorized remote control of smart locks and connected garage door openers, the former of which was demonstrated to 9to5Mac.

The issue was not with smart home products individually but instead with the HomeKit framework itself that connects products from various companies.

Users need to take no action today to resolve the issue as the fix that is rolling out is server-side. The future update to iOS coming next week will resolve any broken functionality. 

The vulnerability required at least one iPhone or iPad on iOS 11.2, the latest version of Apple’s mobile operating system, connected to the HomeKit user’s iCloud account; earlier versions of iOS were not affected.
</blockquote>
Read more: https://9to5mac.com/2017/12/07/homekit-vulnerability/

<hr>

Grab your laptop we're going war driving in the rich neighbourhood looking for Apple locked houses, it's going to be a shopping spree ;)

<h4>Leave your thoughts in the comments below.</h4>

<hr>
Follow @contentjunkie to stay up to date on more great posts like this one.

<a href="https://steemit.com/@contentjunkie"><img src="http://i.imgsafe.org/dd8bd8753d.gif"></a>
👍 , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , ,