Brute-force Iphone password guesser can bypass the 10 guess lockout

Seems like it would be easier and simpler to just reverse the current order of things: write the attempt to flash, then display the result to the user, instead of the other way around.

1 Like

A system I use at work forces passwords to contain a symbol. But it gives a list of only seven acceptble symbols. Three of them donā€™t actually work, and you end up calling IT for a reset. So youā€™re down to four possible symbols. Great security, guys.

But I learned something by calling IT - I was the only employee who had this problem. That means nobody has ever used the three ā€œbrokenā€ symbols, and I would bet a dollar every single password contains one exclamation point and no other symbols.

Great security, guys.

2 Likes

Mineā€™s 10 digits. How long would that take?

10 billion times 40 seconds is about 12,675 years. But, as Rosyna pointed out, this was patched in iOS 8.1.1 back in November 2014. So itā€™s not possible if your iOS device is up-to-date.

1 Like

This topic was automatically closed after 5 days. New replies are no longer allowed.