Thursday, December 26, 2024
HomeMobile AttacksUnlock Iphone with Siri - Without password

Unlock Iphone with Siri – Without password

Published on

SIEM as a Service

Unlock Iphone with Siri : Password are the basic level of validation with smartphones, it will acts as a defence for our sensitive data.

In the post we are to see how easy to break this password if you are having an Iphone, because of an bur with Siri.

Steps to bypass the Authentication

Step1 : Dial the Targeted Phone number.

- Advertisement - SIEM as a Service

Step2: In the targeted phone click message icon and choose to send an custom message in responding to the call.

Step3: Siri need to be activated by long-press the home button, and tell the phone through siri “Turn On VoiceOver” . VoiceOver is a gesture-based screen reader that lets you enjoy using iPhone even if you don’t see the screen.

Step4: Return to the message screen and double-click on the bar where the contact info is displayed, and immediately click on the on-screen keyboard. This may take multiple attempts to get the timing right, but you will know you’ve succeeded when you see the “Photo” icon and other options slide in from the side above the keyboard.

Step5: So now we can ask Siri to disable “Turn On VoiceOver” , now come back to message and simply type first letter of the caller ID in top bar, then tap Φ icon which help us to add/edit contacts.

Step6: Now can select photo to set for contact “yes now you are victim gallery you can see all photos”, but still the phone is locked.

Step7: Also you can select any contact and you can see all the information’s like a boss.

For an Vedio Demonstration :

How to stay Secure

Until Apple releases you can disable Siri for Lock screen or Restrict Siri in accessing photos.

To disable Siri for lock screen Settings → Touch ID & Passcode and Disable Siri on the Lockscreen

To remove Siri access for Gallery Settings → Privacy → Photos

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Researchers Uncovered Dark Web Operation Acquiring KYC Details

A major dark web operation dedicated to circumventing KYC (Know Your Customer) procedures, which...

Adobe Warns of ColdFusion Vulnerability Allows Attackers Read arbitrary files

Adobe has issued a critical security update for ColdFusion versions 2023 and 2021 to...

Beware of New Malicious PyPI packages That Steals Login Details

Two malicious Python packages, Zebo-0.1.0 and Cometlogger-0.1, were recently detected by Fortinet's AI-driven OSS...

Brazilian Hacker Arrested Hacking Computers & Selling Data

A Brazilian man, Junior Barros De Oliveira, has been charged with multiple counts of...

API Security Webinar

72 Hours to Audit-Ready API Security

APIs present a unique challenge in this landscape, as risk assessment and mitigation are often hindered by incomplete API inventories and insufficient documentation.

Join Vivek Gopalan, VP of Products at Indusface, in this insightful webinar as he unveils a practical framework for discovering, assessing, and addressing open API vulnerabilities within just 72 hours.

Discussion points

API Discovery: Techniques to identify and map your public APIs comprehensively.
Vulnerability Scanning: Best practices for API vulnerability analysis and penetration testing.
Clean Reporting: Steps to generate a clean, audit-ready vulnerability report within 72 hours.

More like this

CISA Released Secure Mobile Communication Best Practices – 2025

The Cybersecurity and Infrastructure Security Agency (CISA) has released new best practice guidance to...

Ghost Tap Attack, Hackers Stolen Credit Card Linked To Google Pay Or Apple Pay

Threat actors are exploiting a new cash-out tactic called "Ghost Tap" to siphon funds...

HookBot Malware Use Overlay Attacks Impersonate As Popular Brands To Steal Data

The HookBot malware family employs overlay attacks to trick users into revealing sensitive information...