iOS 11 Bug Can Give Anyone Access to Your Photos

Advertisement
By Gadgets 360 Staff | Updated: 20 October 2017 17:41 IST
Highlights
  • There is a big flaw in iOS 11 that Apple hasn't patched yet
  • The flaw lets an attacker gain access to Photos folder on victim's iPhone
  • The vulnerability can only be exploited in a certain circumstance

A potential vulnerability found in the latest version of iOS mobile operating system can give anyone access to the Photos folder on your iPhone, according to a widely circulated video on YouTube.

The vulnerability, first reported by YouTube channel iDeviceHelp, affects iOS 11.0.3, the newest version of Apple's mobile operating system for general public, and iOS 11.1 beta, the preview version of the mobile operating system that Apple made available to developers this month.

According to iDeviceHelp, if an iPhone user has the target device in their possession and knows the device's phone number or Apple ID, then they could exploit what appears to be a bug in iOS to gain access to the photos saved on the victim's iPhone. We tried the exploit out on an iPhone 8 Plus running iOS 11.0.3, and were able to gain access to the Photos folder without entering a passcode, as claimed by the report.

Advertisement

So here is how it goes: the attacker gives the victim a FaceTime Audio call, but instead of accepting or rejecting the call, the attacker taps the "Message" button and selects the Custom option. Tapping on Custom option prompts the Message app to open, after which the attacker is required to randomly select three emoji characters.

Advertisement

Once done, the attacker hangs up the FaceTime call, and taps the Home button to trigger Siri and ask it to open Settings. At this point, Siri will ask the attacker to unlock the victim's iPhone. iDeviceHelp notes that the attacker now needs to press the power button to put the phone in sleep mode.

When this has been done, the attacker needs to make another FaceTime Audio call from their iOS device to the victim's handset. Once the victim's device gets the call notification, they need to tap the Message button again and then select "Custom" setting.

Advertisement

At this point, iDeviceHelp notes, that the attacker will find that they have complete access to Message app, and they can open the Photos folder and select and send any images from the victim's device.

Until Apple works on fixing the patch, a user could potentially try to disable Siri access from lock screen as a stop-gap solution to prevent anyone from accessing their device's data. As we mentioned, both the attacker and victim need to be using an Apple device, as the exploit requires the outgoing message to be an iMessage, and not a regular SMS.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Nothing Phone 4a Pro's  Battery, Durability, Charging Details Revealed
  2. Here's How Much the iQOO 15R Might Cost in India
  3. Border 2 Revives "Sandese Aate Hain": Sunny Deol Returns
  4. Vivo X200T Launched in India With These Features
  5. Amazon to Cut Thousands More Jobs Globally With India Being the Worst-Hit
  6. iQOO 15 Ultra Will Launch in China on This Date
  7. How to Download EPFO Member Passbook Online Using Different Methods
  8. HP HyperX Omen 15 Gaming Laptop With RTX 5060 GPU Launched in India
  9. The Conjuring: Last Rites OTT Release Date: When and Where to Watch it Online?
  1. James Webb Helps Astronomers Chart the Universe’s Hidden Dark Matter
  2. ESA’s Solar Orbiter Reveals How Magnetic Avalanches Trigger Solar Flares
  3. NASA Races to Restore Contact With MAVEN Mars Orbiter After Weeks of Silence
  4. iQOO 15R Price in India, Chipset Details Teased Ahead of Launch in India on February 24
  5. Nothing Phone 4a Pro Battery, Charging Speed and IP Rating Revealed via EPREL Label
  6. Honor Magic V6 Leak Hints at Slimmer Build, New Hardware Upgrades Ahead of Anticipated March Debut
  7. OpenAI Says ChatGPT's Writing Worsened Due to Overtraining Math, Coding
  8. Sony Said to Be Planning State of Play Broadcast for February
  9. Amazon to Reportedly Layoff 16,000 Employees, India Might Be Among Worst-Hit Regions
  10. Hashtag Star Now Available for Streaming on Chaupal: What You Need to Know About This Punjabi Film
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.