London Daily

Focus on the big picture.
Monday, Jun 22, 2026

We can make our phones harder to hack but complete security is a pipe dream

We can make our phones harder to hack but complete security is a pipe dream

Even the latest iPhone scare won’t persuade us to choose safety over convenience
Apple caused a stir a few weeks ago when it announced that the forthcoming update of its mobile and laptop operating systems would contain an optional high-security mode that would provide users with an unprecedented level of protection against powerful “spyware” software that surreptitiously obtains control of their devices.

It’s called Lockdown Mode and, according to Apple, “offers an extreme, optional level of security for the very few users who, because of who they are or what they do, may be personally targeted by some of the most sophisticated digital threats, such as those from NSO Group and other private companies developing state-sponsored mercenary spyware”.

Lockdown is effectively an alternative operating system mode. To turn it on, go to settings, choose it and restart your device. When you do, you find yourself with a rather different iPhone. Browsing the web is clunkier, for example, because Lockdown blocks many of the speed and efficiency tricks that Safari uses to render web pages. Some complex but widely used web technologies, like so-called just-in-time JavaScript compilation, which allow websites to run programs inside your browser, are disabled unless you specifically exclude a website from restriction. Still, more people might be persuaded to plump for greater security after vulnerabilities were revealed on Apple devices.

Lockdown also limits all kinds of incoming invitations and requests (for example, from FaceTime) unless you have specifically asked for them. In messages, the phone won’t show link previews and will block all attachments with the exception of a few standard image formats. Nor will it allow access to anything physically plugged into it. And so on.

The result of engaging Lockdown is that you have an iPhone that is more secure but less convenient to use. And, in a way, that is the most significant thing about Apple’s decision. As the security guru Bruce Schneier puts it: “It’s common to trade security off for usability and the results of that are all over Apple’s operating systems – and everywhere else on the internet. What they’re doing with Lockdown Mode is the reverse: they’re trading usability for security. The result is a user experience with fewer features, but a much smaller attack surface. And they aren’t just removing random features; they’re removing features that are common attack vectors.”

Ever since people started to worry about computer safety, the issue has been framed as striking a balance between security and convenience. Up to now, convenience has been winning hands down. Take passwords. Everyone knows that long, complex passwords are more secure than simple ones, but they’re also hard to remember. So, being human, we don’t use them: in 2021, the five most commonly used passwords were: 123456, 123456789, 12345, qwerty and password.

In the era of mainframe computers and standalone PCs, this kind of laxity didn’t matter too much. But as the world became networked, the consequences of carelessness have become more worrying. Why? Because there is no such thing as a completely secure networked device and we have been adding such devices to the so-called Internet of Things (IoT) on a maniacal scale. There are something like 13bn at the moment; by 2030, the tech industry thinks there might be 30bn.

The conventional adjective for these gizmos is “smart”. They can be “hi-tech” items such as smart speakers, fitness trackers and security cameras, but also standard household things such as fridges, lightbulbs and plugs, doorbells, thermostats and so on. From a marketing point of view, their USPs are flexibility, utility and responsiveness – in other words, convenience.

But smart is a euphemism that tactfully conceals the fact that they are tiny computers that are connected to the internet and can be remotely controlled from a smartphone or a computer. Some are made by reputable companies, but many are products of small outfits in China and elsewhere. They come with default usernames and passwords (such as “admin” and “password”) that buyers can change (but usually don’t). Because they’re networked, they are remotely accessible by their owners and, more importantly, by others. And there are billions of them out there in our homes, offices and factories.

Security researchers use the term “attack surface” to describe the number of possible points where an unauthorised user can access a system, extract data and/or inflict damage. The smaller the surface, the easier it is to protect. Unfortunately, the corollary also holds. In our Gadarene rush into the Internet of Things we are creating an attack surface of near-infinite dimensions.

The strange thing is that we already know what the consequences of this are like and yet seem unperturbed by them. In 2016, the security community was transfixed by a number of huge distributed denial-of-service attacks that caused outages, internet congestion and in one case overwhelmed the website of a prominent security guru.

Such attacks used to be conducted by botnets of thousands of infected PCs but the 2016 ones were carried out by a botnet that included perhaps half-a-million infected “smart” gizmos. The Mirai malware that assembled the botnet scoured the web for IoT devices protected by little more than factory-default usernames and passwords and then enlisted them in attacks that hurled junk traffic at an online target until it could no longer function.

Mirai is still around, so you might not be the only entity benefiting from those fancy new networked lightbulbs. The cost of convenience will be higher than we think. So upgrade those passwords.
#NSO 
Newsletter

Related Articles

0:00
0:00
Close
Reform UK MP Lee Anderson to Raise Pension Concerns Over British Coal Staff Superannuation Scheme
UK Parliament to Debate Newborn Screening for Spinal Muscular Atrophy Following Public Petition
Met Office Warns of Water Safety Risks During Heatwave as Temperatures Peak in England
Treasury Increases Mileage Allowance Payments for 2026–27 Tax Year to 55 Pence Per Mile
UK Government Raises Electricity Generator Levy to 55 Percent in New Revenue Measure
House of Lords Moves Financial Services and Markets Bill to Committee Stage Amid Regulatory Scrutiny
Westminster Hall to Debate Petition on Pro-Israel Influence in UK Politics
UK Parliament Prepares for Estimates Days Debates as Backbench Business Schedule Approved
Armed Forces Bill Nears Final Stages in UK House of Commons With Military Justice Reforms
Donald Trump Comments on UK Political Situation, Citing Immigration and Energy Policy Concerns
Andy Burnham By-Election Victory Fuels Speculation Over Potential Labour Leadership Contest
UK Economy Shows Resilience but Faces Headwinds from Middle East Tensions, UK Finance Says
UK Parliament Opens Week of Debates on Net Zero, Security and Armed Forces Reform
Met Office Issues Amber Extreme Heat Warning as Temperatures Expected to Reach 35C Across England and Wales
Prime Minister Keir Starmer Faces Mounting Leadership Pressure After Makerfield By-Election Defeat
London Hotel Wins World’s Best Afternoon Tea Award at International Hospitality Guide La Liste
Court of Appeal Rules in Favour of Competition and Markets Authority in Phenytoin Drug Case
Chichester Waste Site Suspended After Environment Agency Finds Serious Fire and Pollution Risks
UK Appoints Chris Elmore as Special Envoy on Preventing Sexual Violence in Conflict
Environment Agency Fines Yorkshire Firms Nearly £470,000 for Environmental Permit Breaches
British Chambers of Commerce Says Post-Brexit Trade Deals Have Limited Economic Impact
Resident Doctors to Vote on Government Pay Offer in Ongoing NHS Dispute
UK Public Borrowing Reaches £46.3 Billion in Early Fiscal Year, Driven by Debt Interest Costs
UK Government Unveils £100 Million Package to Strengthen Fire and Rescue Response Capacity
Bank of England Holds Interest Rates at 3.75 Percent Despite Easing Inflation
Met Office Extends Amber Heat Warning as Temperatures Forecast to Reach 38C Across Southern England
Prime Minister Keir Starmer Expected to Resign Amid Mounting Labour Party Pressure
UK Government Tightens Procurement Rules to Prioritise National Security and Supply Chain Resilience
National Drought Group Reviews Water Supply Risks After Dry Spring and Ongoing Heatwave
Andy Burnham Faces Leadership Speculation After Weak Local Election Results for Labour
Charity Commission Appoints Interim Managers to Barnabas Aid Amid Financial Investigation
Government Awards £27 Million Leonardo UK Contract to Maintain Military Aircraft Fleet
Environment Agency Suspends Chichester Waste Site Permit Over Fire and Pollution Risks
Border Force Seizes Record Cannabis Shipment in Major UK Criminal Network Disruption
Lloyds Banking Group to Hire 300 Artificial Intelligence Specialists in Digital Expansion Push
UK Government Introduces Alcohol Monitoring Tags for 7,000 Offenders Ahead of Summer Sporting Season
Resident Doctors in England Prepare Vote on Government Pay and Working Conditions Offer
Police Scotland Investigates Suspected Anti-Muslim Attacks in Edinburgh Following Arrest
Met Office Issues Rare Amber Extreme Heat Warning Across Southern and Eastern England
UK Government Unveils Digital Homebuying Reforms to Cut Costs and Speed Up Property Transactions
Train Driver Dies and 89 Injured in Rail Collision Near Bedford as Safety Investigation Begins
Long-Term Economic and Political Effects of Brexit Continue to Shape UK Policymaking
Digital Disinformation Emerges as a Growing National Security Challenge in the United Kingdom
Britain's Dependence on Global Energy Routes Drives Push for More Resilient Supply Chains
Rising Energy Costs Continue to Threaten Britain's Cost-of-Living Recovery
Concerns Grow Over Far-Right Organizing and AI-Driven Online Radicalization in Britain
UK-Led Global Partnerships Conference Calls for Reform of International Development Finance
Middle East Tensions Continue to Weigh on UK Business Confidence
Reports of Middle East Peace Deal Ease Pressure on UK Energy Prices
UK Warns Middle East Conflict Could Worsen Global Food Insecurity
×