Apple’s Find My Network Could Be Exploited to Send Text Messages to Nearby Devices, Security Researcher Finds

Security researcher Fabian Bräunlein has found a loophole in Apple’s Find My network protocol that could be exploited.

Advertisement
By Jagmeet Singh | Updated: 13 May 2021 13:41 IST
Highlights
  • Apple’s Find My network could be manipulated to send text messages
  • Find My network normally shares GPS coordinates from devices
  • The researcher faked the way AirTag communicates

Apple has designed Find My network to allow users to find their lost items

Photo Credit: Apple

Apple's Find My network could be exploited to broadcast arbitrary messages to nearby Apple devices, a security researcher has found. The network is formally meant to help people find their lost items. It is claimed to have “industry leading security” as well as end-to-end encryption. However, research shows that the Find My network can enable a way to send any text messages — and not location details — to nearby devices including iPhone, iPad, and Mac.

Security researcher Fabian Bräunlein has found a loophole that allows exploitation of the Find My network protocol to send normal text messages to nearby devices. The researcher was able to transmit text messages by replicating the way an AirTag communicates over the crowdsourced network and sends its GPS coordinates as an encrypted message.

Bräunlein took reference from a recent study conducted by Germany's Technical University (TU) of Darmstadt that was aimed to help developers build accessories for the Find My network. After understanding the protocol powering the network, the researcher developed a custom device with a microcontroller running a proprietary firmware to transmit the message. He also built a custom Mac app to decode and display the message from the device.

Advertisement

The proof-of-concept created by Bräunlein essentially replaces the location data that the Find My network normally broadcasts with text strings.

Advertisement

It is unclear at this moment whether the model developed by the researcher could be used to circulate malicious content over the Find My network. However, the extensive research conducted by Bräunlein shows that the protocol used by Apple could be moulded to broadcast not location data but content such as text messages.

Earlier this week, a German security researcher reported that the Apple AirTag could be hacked to replace the default Find My link with a custom link for NFC readers. This manipulation was similar in nature to what has now been found on the Find My network.


We dive into all things Apple — iPad Pro, iMac, Apple TV 4K, and AirTag — this week on Orbital, the Gadgets 360 podcast. Orbital is available on Apple Podcasts, Google Podcasts, Spotify, and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Motorola Edge 60 Neo Key Specifications Tipped Ahead of Imminent Launch
  2. IFA 2025 Begins This Week: All the Announcements We Expect
  3. Lokah Chapter 1: Chandra Will Begin Streaming on This OTT Platform
  1. Scientists Create Stretchy Rubber That Converts Body Heat Into Electricity for Wearables
  2. NASA’s InSight Reveals Ancient Planetary Remains Preserved Deep Inside Mars
  3. Rajinikanth’s Coolie is Coming to OTT Platforms Soon: Know When, Where to Watch it Online
  4. NASA’s Juno Spacecraft Detects Callisto’s Aurora, Completing Jupiter’s Galilean Moons Set
  5. Kalyani Priyadarshan’s Lokah Chapter 1: Chandra OTT Release Date Revealed
  6. Astronomers Discover Calvera, a Runaway Pulsar Racing Above the Milky Way
  7. Itel A90 Limited Edition Launched in India With MIL-STD-810H Durability: Price, Specifications
  8. OKX Faces EUR 2.25 Million Fine By Dutch National Bank for Operating Without Registration
  9. NASA’s OSIRIS-REx Mission Finds Stardust in Asteroid Bennu Older Than the Solar System
  10. Swiggy and Zomato Raise Platform Fees to Up to Rs. 15 Amidst Rise in Festival-Related Demand
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.