Comment on iOS and Android juice jacking defenses have been trivial to bypass for years

<- View Parent
tyler@programming.dev ⁨2⁩ ⁨weeks⁩ ago

🎶Someone didn’t read the article 🎶

The attacks then exploit various weaknesses in the OS that allow the charger to autonomously inject “input events” that can enter text or click buttons presented in screen prompts as if the user had done so directly into the phone. In all three, the charger eventually gains two conceptual channels to the phone: (1) an input one allowing it to spoof user consent and (2) a file access connection that can steal files.

source
Sort:hotnewtop