Breaking iPhone PINs

Author: Martin Voelk
March 19, 2015

We recently had the pleasure to test out a device called IP Box in one of our Pentesting engagements with a customer. It was a shocking experience to find out how easy iPhone PINs can be broken. Good news is that it doesn’t work against the latest versions but it works well against older versions.

The average break PIN time is around 1 Р2 hours. The system making this possible sells for $250 USD. Apple is generally very good on security, but as this IP box shows, there are possibilities for breaches on older iPhone versions as well.

There are features within the iPhone to erase itself after multiple failed login attempts, but users (again the weakest link) need to enable this.


