London Daily

Focus on the big picture.
Saturday, Jun 13, 2026

Google engineer demonstrate how he could get full control and copy all data from 25 iPhones without touching them

iPhone security? Hmmm... In this demo I remotely trigger an unauthenticated kernel memory corruption vulnerability which causes all iOS devices in radio-proximity to reboot, with no user interaction. Over the next 30'000 words I'll cover the entire process to go from this basic demo to successfully exploiting this vulnerability in order to run arbitrary code on any nearby iOS device and steal all the user data

One of the geniuses working for Google on Project Zero wrote on his blogpost and on his YouTube videos:

Introduction
Quoting @halvarflake's Offensivecon keynote from February 2020:

"Exploits are the closest thing to "magic spells" we experience in the real world: Construct the right incantation, gain remote control over device."

For 6 months of 2020, while locked down in the corner of my bedroom surrounded by my lovely, screaming children, I've been working on a magic spell of my own. No, sadly not an incantation to convince the kids to sleep in until 9am every morning, but instead a wormable radio-proximity exploit which allows me to gain complete control over any iPhone in my vicinity. View all the photos, read all the email, copy all the private messages and monitor everything which happens on there in real-time.

The takeaway from this project should not be: no one will spend six months of their life just to hack my phone, I'm fine.

Instead, it should be: one person, working alone in their bedroom, was able to build a capability which would allow them to seriously compromise iPhone users they'd come into close contact with.

Imagine the sense of power an attacker with such a capability must feel. As we all pour more and more of our souls into these devices, an attacker can gain a treasure trove of information on an unsuspecting target.

What's more, with directional antennas, higher transmission powers and sensitive receivers the range of such attacks can be considerable.

I have no evidence that these issues were exploited in the wild; I found them myself through manual reverse engineering. But we do know that exploit vendors seemed to take notice of these fixes. For example, take this tweet from Mark Dowd, the co-founder of Azimuth Security, an Australian "market-leading information security business":

Watch the videos and read his full post here.

Newsletter

Related Articles

0:00
0:00
Close
Royal Navy Takes Part in Trooping the Colour for the First Time in 350 Years
Think Tank Warns Labour's European Union Reset Could Carry Significant Economic Costs
UK Semiconductor Centre and Japan's Rapidus Forge Advanced Chip Manufacturing Partnership
UK and Japan Launch Offshore Wind Compact Backed by £9 Billion in Investment
Starmer and Trump Discuss Iran Peace Efforts and Reopening of the Strait of Hormuz
United Kingdom and Japan Sign £18 Billion Investment Partnership Focused on Clean Energy and Advanced Technology
Barclays Moves to Acquire GoHenry in Bid to Expand Youth-Focused Fintech Services
UK Lupus Patients Show Remission in NHS Genetic Therapy Trial
London Clean Air Zones Linked to Fewer Emergency Hospital Admissions for Respiratory Illness
UK World Cup Scheduling Research Suggests Energy Bill Savings From Off-Peak Usage
UK Economic Anxiety Rises Among Young People Over Long-Term Job Prospects
NHS Expands Meningitis B Vaccination Programme for School Leavers and New Students
London Ultra-Low Emission Zone Linked to Drop in Emergency Respiratory Hospital Admissions
Derbyshire Police Officer Investigated Over Alleged Use of AI-Generated Evidence in Case Files
UK Parents Back Proposed Under-16 Social Media Ban as Online Safety Concerns Grow
Four Palestine Action Activists Jailed Over Sabotage Attack on Israeli-Linked Arms Facility
Barclays to Acquire GoHenry in Push to Expand Digital Banking for Children and Teenagers
UK Government Reaffirms Defence Spending Commitment Amid Cabinet Pressure and Political Disputes
Belfast Unrest Prompts Security Review as Paramilitary Activity Comes Under Renewed Scrutiny
SpaceX IPO Pushes Elon Musk to Become World’s First Trillionaire After Record Valuation Surge
United States and Iran Near Landmark Peace Framework as Negotiations Reach Final Stages
UK Competition Watchdog Investigates Ryanair Family Seating Charges
Imperial College Study Links London Emissions Charges to Lower Hospital Admissions
Scottish First Minister Launches US Trade Initiative Ahead of World Cup Match in Boston
Fifteen Million Workers Gain Expanded Sick Pay Rights Under UK Reforms
British Retail Investors Secure Record Participation in SpaceX Share Offering
Keir Starmer and Micheál Martin Coordinate Response to Northern Ireland Violence
NHS Prepares for Major Disruption as Resident Doctors Announce Four-Day Strike
Bank of England Expected to Hold Rates as Energy Costs Complicate Inflation Outlook
Britain Moves to Ban Under-16s From High-Risk Social Media Platforms and AI Chatbots
UK Economy Contracts as Middle East Conflict Weighs on Growth
Defence Secretary John Healey Resigns Over Military Spending Dispute With Treasury
Prime Minister Keir Starmer Faces Leadership Crisis After Senior Cabinet Resignations
NHS Trust Secures Funding for AI Tool to Detect Heart Failure Earlier
Government Unveils £4.5 Billion Investment Plan for Walking and Cycling Infrastructure
Nationwide Reports UK House Prices Falling as Borrowing Costs Remain Elevated
Centre for Social Justice Says Two Million Britons Are Using Illegal Loan Sharks
UK Carmakers Warn EU Local Content Rules Could Damage British Manufacturing
UK Government Imposes Emergency Ban on Seven Potent Synthetic Opioids
Royal Navy Completes Major North Atlantic Anti-Submarine Exercise Off Norway
NHS Figures Show Nearly 3,000 Patients a Day Receiving Care in Hospital Corridors
CBI Cuts UK Growth Forecast as Middle East Tensions Drive Inflation Risks Higher
Dan Jarvis Appointed UK Defence Secretary Following Major Government Reshuffle
University College London Study Links Physical Punishment to Higher Risk of Bullying
East Midlands Railway Unveils First Refurbished Train in £60 Million Modernization Programme
RNLI Issues National Water Safety Appeal Ahead of Expected Heatwave
Climate Change Raises Subsidence Risks for Millions of Homes Across Southeast England
Manchester Advances Plans for Underground Piccadilly Station With £1 Million Funding Commitment
Anti-Immigration Violence Continues in Belfast Amid Heightened Security Concerns
UK Law Locks Great British Railways Into Public Ownership
×