• Home
  • Politics
  • News
  • Business
  • Health
  • Entertainment
  • Sports
  • Lifestyle
  • Education
  • Opinion
Tuesday, 16 December, 2025
  • Login
Top Radio 103.1 FM
 
  • Home
  • News
  • Politics
  • Business
  • Entertainment
  • Health
  • Lifestyle
  • Sports
  • Education
  • Technology
  • Foreign
No Result
View All Result
Top Radio 103.1 FM
No Result
View All Result
Home Technology

Researchers devise iPhone malware that runs even when device is turned off

TOPFM NEWS by TOPFM NEWS
May 17, 2022
in Technology
A A
0
Researchers devise iPhone malware that runs even when device is turned off
0
SHARES
3
VIEWS
Share on FacebookShare on Twitter

When you turn off an iPhone, it doesn’t fully power down. Chips inside the device continue to run in a low-power mode that makes it possible to locate lost or stolen devices using the Find My feature or use credit cards and car keys after the battery dies. Now researchers have devised a way to abuse this always-on mechanism to run malware that remains active even when an iPhone appears to be powered down.

It turns out that the iPhone’s Bluetooth chip—which is key to making features like Find My work—has no mechanism for digitally signing or even encrypting the firmware it runs. Academics at Germany’s Technical University of Darmstadt figured out how to exploit this lack of hardening to run malicious firmware that allows the attacker to track the phone’s location or run new features when the device is turned off.

This video provides a high overview of some of the ways an attack can work.

The research is the first—or at least among the first—to study the risk posed by chips running in low-power mode. Not to be confused with iOS’s low-power mode for conserving battery life, the low-power mode (LPM) in this research allows chips responsible for near-field communication, ultra wideband, and Bluetooth to run in a special mode that can remain on for 24 hours after a device is turned off.

“The current LPM implementation on Apple iPhones is opaque and adds new threats,” the researchers wrote in a paper published last week. “Since LPM support is based on the iPhone’s hardware, it cannot be removed with system updates. Thus, it has a long-lasting effect on the overall iOS security model. To the best of our knowledge, we are the first who looked into undocumented LPM features introduced in iOS 15 and uncover various issues.”

They added: “Design of LPM features seems to be mostly driven by functionality, without considering threats outside of the intended applications. Find My after power off turns shutdown iPhones into tracking devices by design, and the implementation within the Bluetooth firmware is not secured against manipulation.”

The findings have limited real-world value since infections required a jailbroken iPhone, which in itself is a difficult task, particularly in an adversarial setting. Still, targeting the always-on feature in iOS could prove handy in post-exploit scenarios by malware such as Pegasus, the sophisticated smartphone exploit tool from Israel-based NSO Group, which governments worldwide routinely employ to spy on adversaries.

It may also be possible to infect the chips in the event hackers discover security flaws that are susceptible to over-the-air exploits similar to this one that worked against Android devices.

Besides allowing malware to run while the iPhone is turned off, exploits targeting LPM could also allow malware to operate with much more stealth since LPM allows firmware to conserve battery power. And of course, firmware infections are already extremely difficult to detect since it requires significant expertise and expensive equipment.

The researchers said Apple engineers reviewed their paper before it was published, but company representatives never provided any feedback on its contents. Apple representatives didn’t respond to an email seeking comment for this story.

Ultimately, Find My and other features enabled by LPM help provide added security because they allow users to locate lost or stolen devices and lock or unlock car doors even when batteries are depleted. But the research exposes a double-edged sword that, until now, has gone largely unnoticed.

“Hardware and software attacks similar to the ones described, have been proven practical in a real-world setting, so the topics covered in this paper are timely and practical,” John Loucaides, senior vice president of strategy at firmware security firm Eclypsium. “This is typical for every device. Manufacturers are adding features all the time and with every new feature comes a new attack surface.”

Related Posts

Toyota global production down for 10th month despite rising sales

Toyota global production down for 10th month despite rising sales

December 26, 2024 - Updated on December 28, 2024
62
Ghana leads four other African countries to sign SATA declaration on data and digital identity interoperability

Ghana leads four other African countries to sign SATA declaration on data and digital identity interoperability

April 27, 2023
10
Source: Dan Goodin
Via: ars technica
Tags: Researchers devise iPhone malware that runs even when device is turned off
Previous Post

McDonald’s to sell its business in Russia

Next Post

Apple and Google’s outdated apps ban would cut each store by a third

Related Posts

Toyota global production down for 10th month despite rising sales
News

Toyota global production down for 10th month despite rising sales

December 26, 2024 - Updated on December 28, 2024
62
Ghana leads four other African countries to sign SATA declaration on data and digital identity interoperability
Technology

Ghana leads four other African countries to sign SATA declaration on data and digital identity interoperability

April 27, 2023
10
TikTok launches an elections hub in Kenya ahead of General Elections
Technology

TikTok launches an elections hub in Kenya ahead of General Elections

July 15, 2022
16
Facebook to allow up to five profiles tied to one account
Technology

Facebook to allow up to five profiles tied to one account

July 15, 2022
16
Microsoft releases tweet-size exploit for macOS sandbox escape bug
Technology

Microsoft releases tweet-size exploit for macOS sandbox escape bug

July 14, 2022
16
Final Android 13 beta arrives ahead of its official launch ‘in the weeks ahead’
Technology

Final Android 13 beta arrives ahead of its official launch ‘in the weeks ahead’

July 14, 2022
11
Next Post
Apple and Google’s outdated apps ban would cut each store by a third

Apple and Google’s outdated apps ban would cut each store by a third

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

BROWSE BY CATEGORIES

  • Business
  • Education
  • Entertainment
  • Foreign
  • Health
  • Lifestyle
  • News
  • Opinion
  • Politics
  • Sports
  • Technology
  • Uncategorized

BROWSE BY TOPICS

2022 Budget AFCON Afghanistan akufo addo Amazon Apiate explosion apple AT&T Ato Forson Black Stars covid COVID-19 E-Levy facebook galamsey Ghana Police Service Google Government GRA health Highlife Intel iphone LGBTQ Mahama Majority Microsoft Minority momo NDC NPP Nvidia OMICRON Parliament police Russia security South Africa Taliban tech Tesla US UTAG vaccine Xinjiang

Recent Posts

  • Accra Mayor holds final National Sanitation Day for 2025 ahead of christmas [Photos]
  • Alcohol, fireworks, glass bottles, other items not allowed inside AFCON 2025 stadiums – [see full list]
  • 3 big ‘sakawa’ boys will soon be arrested in Ghana – Sam George reveals after Abu Trica’s $8m scam arrest
  • Ghana Police Service honour 20 fallen officers at memorial service
  • TiC honoured for his contribution to Afrobeats

Recent Comments

  1. meinestadtkleinanzeigen.de on (Photos) GNFS Suppress Fire At Lakeside Estate Apartment
  2. News on Church Of Pentecost Commission 35 Bed AI Powered Hospital In Bolgatanga (Photos)

RECENT NEWS

  • Accra Mayor holds final National Sanitation Day for 2025 ahead of christmas [Photos] December 15, 2025
  • Alcohol, fireworks, glass bottles, other items not allowed inside AFCON 2025 stadiums – [see full list] December 15, 2025
  • 3 big ‘sakawa’ boys will soon be arrested in Ghana – Sam George reveals after Abu Trica’s $8m scam arrest December 13, 2025
  • Ghana Police Service honour 20 fallen officers at memorial service December 13, 2025

MAIN CATEGORIES

  • Business
  • Education
  • Entertainment
  • Foreign
  • Health
  • Lifestyle
  • News
  • Opinion
  • Politics
  • Sports
  • Technology
  • Uncategorized

Entertainment

Treating Mpox In Ghana: With What? Dr Mintah Bonku Writes
Health

Treating Mpox In Ghana: With What? Dr Mintah Bonku Writes

6 months ago
54
  • ABOUT US
  • CONTACT
  • ADVERTISE

© 2025 Top Media Group - Powered by BackUP Data Systems

No Result
View All Result
  • Home
  • Politics
  • News
  • Business
  • Health
  • Entertainment
  • Sports
  • Lifestyle
  • Education
  • Opinion

© 2025 Top Media Group - Powered by BackUP Data Systems

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In