New iPhone exploit rocks the jailbreaking community

This is a big deal.
By Jack Morse  on 
New iPhone exploit rocks the jailbreaking community
Broken. Credit: LILI SAMS / MASHABLE

Well hot damn.

A security researcher dropped a bomb on iPhone owners today with the release of an exploit potentially allowing for the jailbreaking of Apple smartphones ranging from the 4S to the iPhone X. And, and this part is the real kicker, the way the exploit allegedly works means Apple can never patch it.

The open source tool, released by axi0mX, is available on GitHub and is described as "a permanent unpatchable bootrom exploit for hundreds of millions of iOS devices" by the researcher.

Specifically, it works on any iOS device sporting anything from an A5 chip to an A11 chip. According to axi0mX, this translates to "most generations of iPhones and iPads."

So, why does this matter? Well, for starters, it means that if you let your vulnerable iPhone out of your hands a bad actor could theoretically jailbreak the device and load malicious software onto it.

Importantly, this exploit is not a remote one — meaning someone would have to get their hands on your physical device. However, taking your smartphone away is exactly the kind of thing Customs and Border Protection and law enforcement is wont to do.

Patrick Wardle, security researcher at Jamf and founder of Objective-See, broke down what this exploit means for the average iPhone owner over Twitter directer message.

"Good news, newer phones (A12/A13) aren't vulnerable," he wrote. "My understanding is, having a passcode or an updated version of iOS doesn't matter[.] That is, any older [iPhone] is hackable ... with physical access."

"This isn't something Apple can fix," he added.

We reached out to axi0mX over email in an attempt to determine just what, exactly, the researcher expects to come of all this. Unfortunately, we received no response as of press time. However, axi0mX thankfully tweeted some of what they see as the benefits to this release.

"A bootrom exploit for older devices makes iOS better for everyone," explained axi0mX in a follow-up tweet. "Jailbreakers and tweak developers will be able to jailbreak their phones on latest version, and they will not need to stay on older iOS versions waiting for a jailbreak. They will be safer."

We reached out to Apple for comment, but received no response as of press time. As axi0mX's exploit was released publicly, we imagine the company is a little preoccupied at the moment.

UPDATE: Sept. 27, 2019, 12:07 p.m. PDT This story has been updated with comments from Patrick Wardle.

Mashable Image
Jack Morse

Professionally paranoid. Covering privacy, security, and all things cryptocurrency and blockchain from San Francisco.


Recommended For You
This stoner comedy is a perfect pick for 420
The ensemble of "Hanky Panky" crowd together over a pantsuit.

'Abigail' review: Savage crowdpleaser boasts a ballerina vampire
Alisha Weir plays a vampire ballerina in "Abigail."

'Stress Positions' review: John Early's COVID comedy goes boldly cringe
John Early in "Stress Positions."

'Rebel Moon: Part Two - The Scargiver' review: Can Zack Snyder save his space epic? 
Djimon Hounsou, goes to war as Titus in "Rebel Moon — Part Two: The Scargiver."

The 'Civil War' AI controversy, explained
A woman in a bulletproof vest that reads "press."

More in Tech

TikTok for Business: Everything you need to know
TikTok for Business


Get up to 25% off sitewide at Solawave
Woman using Solawave


Trending on Mashable
The Cybertruck's failure is now complete
Elon Musk standing in front of a Cybertruck with two bullet marks in its windows.

NYT Connections today: See hints and answers for April 20
A phone displaying the New York Times game 'Connections.'

Wordle today: Here's the answer and hints for April 20
a phone displaying Wordle

NYT's The Mini crossword answers for April 20
Closeup view of crossword puzzle clues

The biggest stories of the day delivered to your inbox.
This newsletter may contain advertising, deals, or affiliate links. Subscribing to a newsletter indicates your consent to our Terms of Use and Privacy Policy. You may unsubscribe from the newsletters at any time.
Thanks for signing up. See you at your inbox!