News
iOS 4 security flaw allows iPhone users to bypass lock screen
By Jesse Hollington
Social Media & Software Editor, iLoungeGoogle+
Published: Tuesday, October 26, 2010
News Categories: iPhone
A MacRumors reader has identified a security flaw in iOS 4.1 that would allow users to bypass the iPhone lock screen. Attempting to place an emergency call to a non-emergency number and immediately pressing the sleep/wake button on the iPhone will open the Phone app, allowing the user to access contacts, call history, voicemail and call any number. The user will not be able to leave the Phone application and access other data on the device, and must either reboot the device or place and end another call to return to the normal lock screen. iLounge has confirmed that this issue exists in iOS 4.1 on all models of iPhone and have also received reports that the problem exists in at least some versions of iOS 4.0. Notably, John Gruber reports that the problem does not exist in iOS 4.2 beta 3, suggesting that Apple may have already identified and fixed the security flaw. Note that this issue does not affect the iPod touch as it has no Emergency Call feature.
Related Stories
- Apps: ABC Aquarium, Disney Jr. Appisodes, Pinterest 2.4 + Pocket Informant Pro 3.0
- Report: iOS 7 could see Flickr, Vimeo integration
- Google Play Music All Access to get iOS app support?
- AT&T: All video chat apps will work over cellular in 2013
- New Apple offers in India can reduce iPhone price
- Apps: Can Knockdown 3, eBay 3.0/2.3, Jungle Book + Sonic the Hedgehog 2.0
Comments
If you have a comment, news tip, advertising inquiry, or coverage request, a question about iPods/iPhones/iPad or accessories, or if you sell or market iPod/iPhone/iPad products or services, read iLounge's Comments + Questions policies before posting, and fully identify yourself if you do. We will delete comments containing advertising, astroturfing, trolling, personal attacks, offensive language, or other objectionable content, then ban and/or publicly identify violators.
Recent News
- Report: iWatch pushed to late 2014?
- Griffin releases iPhone 5 Survivor + Catalyst Waterproof Case
- OtterBox acquires LifeProof
- LifeProof debuts Frē case for iPad mini
- Logitech debuts Wired Keyboard for iPad
- New Apple online store design alters focus, hides deals
- Apps: ABC Aquarium, Disney Jr. Appisodes, Pinterest 2.4 + Pocket Informant Pro 3.0
- Report: iOS 7 could see Flickr, Vimeo integration
- Apple CEO Cook testifies on taxes, faces Senate critics
- Google Play Music All Access to get iOS app support?
Recent Reviews
- HMDX Jam Plus Bluetooth Wireless Speaker
- Fitbit Flex Wireless Activity & Sleep Wristband
- Cambridge Audio Minx Air 100 + 200 Bluetooth + AirPlay Wireless Speakers
- Mophie Juice Pack Plus for iPhone 5
- Ultimate Ears UE Boom
- Trü Protection Trü-Fit Anti-Glare Film Set
- New Trent iCarrier IMP120D Dual USB Power Pack
- BlueFlame 2M Charge and Sync Cable with Lightning Connector
- HMDX Jam Party Bluetooth Wireless Stereo Speaker
- Logitech Harmony Ultimate Universal Remote Control
Recent Articles
- Inability to use Find My Friends without a passcode
- Calendar info disappears after iCloud restore
- Remove old iCloud backup after restoring to a new iPhone
- Setting up a ringtone in iTunes
- Using a Wi-Fi hard drive with an iPad
- Backing up and restoring an iPod classic
- Can’t restore iPod touch without passcode
- Retaining older versions of Apps during an iOS Restore
- Can’t eject iPod nano without closing Firefox
- Can’t change iTunes Apple ID to iCloud e-mail address


1
Strange that some people can’t reproduce the problem. I can’t on my iPhone 3G with iOS 4.1 installed.
Posted by Ted Wood on October 26, 2010 at 6:28 AM (PST)
2
There may be other factors involved, however we have been able to reproduce it easily on several iPhones of various models using iOS 4.1.
Posted by Jesse Hollington in Toronto on October 26, 2010 at 6:33 AM (PST)
3
I was able to expolit this flaw on an iphone 4 with ios 4.1 installed.
Posted by Khaled on October 26, 2010 at 10:42 AM (PST)
4
Just tried it. Immidiately pressing the lock button after taping the phone icon, i easily reproduced the results
Posted by miles po on October 26, 2010 at 10:43 AM (PST)