iOS 14 Carries ‘BlastDoor’ Sandbox Security System to Protect iMessage, Google Researcher Discovers

Samuel Groß from Google’s Project Zero team has discovered the BlastDoor security system within iOS 14.

Advertisement
By Jagmeet Singh | Updated: 29 January 2021 15:27 IST
Highlights
  • iOS 14 has BlastDoor system to sandbox iMessage data processing
  • iMessage vulnerabilities could give attackers access to user files
  • Apple has placed BlastDoor alongside other sandbox systems in iOS
iOS 14 Carries ‘BlastDoor’ Sandbox Security System to Protect iMessage, Google Researcher Discovers

Apple didn’t reveal the existence of BlastDoor security system at the time of releasing iOS 14

Photo Credit: Apple

Apple's iOS 14 is found to include a new security system called BlastDoor that is meant to protect parsing of untrusted data from messaging client iMessage. Although Apple didn't provide any details about the security system while releasing iOS 14 in September, a security researcher has discovered its existence through a reverse engineering project. The BlastDoor system on iOS appears to work as a sandbox to separate data processing on iMessage from other elements of the operating system. This is believed to protect users from specific attacks that are carried out through the iMessage client.

Samuel Groß, a security researcher with Google's Project Zero team, has discovered the BlastDoor system hidden within iOS 14. The researcher wrote a blog post to detail the scope of the new system in protecting users from bad actors.

Unlike other sandbox systems that exist on iOS to protect different its functions, BlastDoor is designed to specifically work with iMessage. It essentially takes incoming messages to unpack and process their content within an isolated and secured environment. This protects the operating system from getting affected even if a malicious code has been sent through a message.

Prior to the update, Apple was processing the entire message data an iPhone receives through the instant messaging agent that exists within iOS.

Advertisement

The issue with the existing mechanism was simple; it was allowing attackers to gain user data access through iMessage.

In 2019, Groß along with his fellow security researcher Natalie Silvanovich found “zero interaction” flaws in iMessage that could allow attackers to read the content of files being stored on an iPhone, without requiring users to interact with any notification or message. Those issues are likely to be addressed with the BlastDoor system.


What will be the most exciting tech launch of 2021? We discussed this on Orbital, our weekly technology podcast, which you can subscribe to via Apple Podcasts, Google Podcasts, or RSS, download the episode, or just hit the play button below.

Affiliate links may be automatically generated - see our ethics statement for details.
 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Vivo X200 FE Global Launch Confirmed; Design Teased
  2. Poco F7 Launch Date, Price in India, Design and Key Features Leaked Online
  3. Vivo Y400 Pro 5G India Launch Date Confirmed; Design Revealed
  4. Oppo Reno 14 5G Series, Watch X2 Mini, Enco Buds 3, Pad SE to Launch Globally
  5. Vivo T4 Lite 5G to Launch in India Soon; Battery Capacity Revealed
  6. Hisense U7Q Mini-LED TV Launched in India With These Features
  7. WhatsApp Is Finally introducing Ads on Its Messaging App
  8. Meta Partners With Oakley for New Smart Glasses; to Launch on June 20
  9. Oppo K13 Turbo Pro Key Specifications Leaked Online
  10. Oppo K13x 5G India Launch Date, Price Range and Key Features Revealed
  1. Meta and Oakley Announce New Smart Glasses Collaboration, Launch Set for June 20
  2. WhatsApp Announces Ads in Status, Channel Subscriptions, and More Features for Businesses
  3. Bitget Partners UNICEF Unit to Expand Blockchain Training Across India, Other Countries 
  4. WhatsApp Reportedly Working on Ability to Scan Documents on Android Smartphones
  5. ElevenLabs Expands Eleven V3 Text-to-Speech Model With Support for 41 New Languages
  6. Vivo T4 Lite 5G India Launch Confirmed; Battery Capacity, Price Range Teased
  7. TikTok Pushes Deeper Into AI-Generated Video Ads With New Tools
  8. Apple Risks Fresh EU Charge Sheet Over App Store Curbs
  9. The Witcher 4 Will Target 60 FPS on Consoles, but Series S Will Be 'Extremely Challenging' Says CD Projekt Red
  10. Oppo Reno 14 5G Series Global Launch Teased Alongside Watch X2 Mini, Enco Buds 3 and Pad SE
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.