London Daily

Focus on the big picture.
Thursday, Feb 26, 2026

Google engineer demonstrate how he could get full control and copy all data from 25 iPhones without touching them

iPhone security? Hmmm... In this demo I remotely trigger an unauthenticated kernel memory corruption vulnerability which causes all iOS devices in radio-proximity to reboot, with no user interaction. Over the next 30'000 words I'll cover the entire process to go from this basic demo to successfully exploiting this vulnerability in order to run arbitrary code on any nearby iOS device and steal all the user data

One of the geniuses working for Google on Project Zero wrote on his blogpost and on his YouTube videos:

Introduction
Quoting @halvarflake's Offensivecon keynote from February 2020:

"Exploits are the closest thing to "magic spells" we experience in the real world: Construct the right incantation, gain remote control over device."

For 6 months of 2020, while locked down in the corner of my bedroom surrounded by my lovely, screaming children, I've been working on a magic spell of my own. No, sadly not an incantation to convince the kids to sleep in until 9am every morning, but instead a wormable radio-proximity exploit which allows me to gain complete control over any iPhone in my vicinity. View all the photos, read all the email, copy all the private messages and monitor everything which happens on there in real-time.

The takeaway from this project should not be: no one will spend six months of their life just to hack my phone, I'm fine.

Instead, it should be: one person, working alone in their bedroom, was able to build a capability which would allow them to seriously compromise iPhone users they'd come into close contact with.

Imagine the sense of power an attacker with such a capability must feel. As we all pour more and more of our souls into these devices, an attacker can gain a treasure trove of information on an unsuspecting target.

What's more, with directional antennas, higher transmission powers and sensitive receivers the range of such attacks can be considerable.

I have no evidence that these issues were exploited in the wild; I found them myself through manual reverse engineering. But we do know that exploit vendors seemed to take notice of these fixes. For example, take this tweet from Mark Dowd, the co-founder of Azimuth Security, an Australian "market-leading information security business":

Watch the videos and read his full post here.

Newsletter

Related Articles

0:00
0:00
Close
From fears of AI-fuelled unemployment to Big Tech's record investment, this is AI Weekly.
US Lawmakers Seek Briefing from UK Over Reported Encryption Order Directed at Apple
UK Business Secretary Calls on EU to Remove Trade Barriers Hindering Growth
Legal Pathways for Removing Prince Andrew from Britain’s Line of Succession Examined
PM Netanyahu welcome India PM Narendra Modi to Israel
Shadow Diplomacy: How Harry and Meghan’s Jordan Trip Undermines the Monarchy
Sir Jim Ratcliffe, co-owner of Manchester United, comments on immigration in the UK.
Bill Gates, the UN and the WEF are attempting to construct "a giant digital gulag for all of humanity" via digital ID, CBDCs and vaccine passport infrastructure.
Britain’s Channel Crisis: Paying Billions While the Boats Keep Coming
Downing Street’s Veteran Deception Scandal
UK HealthCare Expands ‘Food as Health’ Initiative Statewide to Tackle Chronic Illness in Kentucky
Leonardo Chief Says UK Set to Decide on New Medium Helicopter Programme
UK Slows Chagos Islands Agreement After Concerns Raised in Washington
European and UK Stock Markets Reach Fresh Highs as Banks and Miners Lead Rally
UK Government Insists Chagos Islands Negotiations Continue After Minister’s ‘Pause’ Remark
No Confirmed Deal for Engie to Acquire UK Power Networks Amid Market Speculation
UK Reaffirms Updated Entry Requirements for Travellers as of February 25, 2026
General Atlantic to sell equity stake in ByteDance, valuing the company at $550 billion
German Chancellor Friedrich Merz Secures Pledge from China for Greater Imports of Quality Goods
Lord Mandelson Condemns Arrest as Driven by ‘Baseless Suggestion’ He Would Flee Abroad
Former UK Ambassador Released on Bail Following Arrest in Epstein-Linked Investigation
UK Parliament Orders Release of Former Prince Andrew’s Government Vetting Files
Reddit Fined £14 Million by UK Regulator Over Failures in Age Verification Controls
UK Moves to Tighten Regulation of Netflix, Disney+ and Prime Video Under New Media Rules
British Woman Who Reported Rape in Hong Kong Faces Possible Prosecution
'Christianity is the religion that has made this country great.'
Man Receives Parking Ticket 38 Years After Offense: ‘City Officials Said It’s Legitimate’
Woman Receives Gift Card for Christmas – Discovers It Is ‘Worth’ 63,000,000,000,000,000 Pounds
UK Sanctions New Zealand Insurer Maritime Mutual Following Allegations Over Russian Oil Cover
Reform MP Danny Kruger Condemns UK’s ‘Unregulated Sexual Economy’ in Call for Tougher Controls
The Show Must Go On: Prince William and Kate Middleton Shine at the BAFTAs Amid Andrew’s Arrest
UK Sanctions Russian ‘Illicit Oil Traders’ After Email Blunder Exposes Sanctions Evasion Network
Russia Amplifies Baseless Claims That UK and France Plan to Arm Ukraine with Nuclear Weapons
UK Imposes Sanctions on Two Georgian Television Channels Over Alleged Russian Disinformation
United States National Parks See Noticeable Drop in Visitors from Canada, U.K. and Australia
UK, Australia, Canada and New Zealand Escalate Sanctions on Russia as Ukraine War Marks Four Years
I Gave Andrew a Nude Massage Inside Buckingham Palace
UK Economy Faces Acute Strain as Trump’s Global Tariff Reshapes Trade Landscape
UK Signals Retaliation Is Possible as New US Tariff Policy Threatens Trade Stability
British Police Arrest Former Ambassador Peter Mandelson in Epstein-Related Misconduct Probe
Australia Officially Supports Proposal to Remove Andrew Mountbatten-Windsor from Royal Succession
Victorian Premier Jacinta Allan remains silent on ISIS brides' resettlement plans in Melbourne
Former UK Ambassador Peter Mandelson Arrested in Connection with Jeffrey Epstein
Jacob Rees Mogg afraid to talk about Peter Mandelson arrest on “suspicion of misconduct in a public office” (Pedophilia, corruption, etc.)
United Nations Calls for Global Action Against Disinformation and Hate Speech Online
Tucker Carlson warns of an inevitable clash in Western societies over mass migration
President Trump warns countries against abandoning recent trade deals with the US
Diverging Polls Show Mixed Signals on UK Economic Revival as Confidence Remains Fragile
Spotify Expands AI-Driven ‘Prompted Playlists’ Feature to the United Kingdom and Other Markets
Greens and Reform UK Surge in Manchester By-Election, Threatening Labour’s Historic Stronghold
×