Siri Can Bypass Your Lock Screen

hal-9000-the-intellegent-robot-in-movieI am sorry Dave; I can’t let you do that… This line from Stanley Kubrick’s 2001 a Space Oddesy is what came to mind when I showed off this interesting little trick to a friend of mine. While playing around with Siri on their new iPhone 4S we discovered that even when the phone is locked you can send email, text play music, call someone, use the camera and more than a few other things making just about all security useless on the new phone. This is not the first time that security holes have been found on one of Apple’s devices (like finding that the encryption key is stored in plain text on the phone), but I do think this one is one of the funniest.



With all the furor and excitement over what is not much more than a speech to text engine that can run queries against predefined commands to find out that those commands appear to be able to bypass the lock security. What’s more is that Apple allows this by default. I would think that this would not be something that you would want open on a phone with a passcode; however Apple seems to think they know what is best for their customers. I will say this, at least you can turn this feature off, I just think it should have been off already…

IMG_0079 IMG_0081 IMG_0082

For those of you out there thinking about corporate data and email, I have a feeling that Microsoft will add a new security feature into their corporate phone requirements making it impossible to have this running with the lock requirements. I wonder what that will look like…

options

Discuss this in our forum

No comments

Leave your comment

In reply to Some User