Daniel R. Ford, D.Sc.

0 downloads 137 Views 6MB Size Report
Let's Talk Apple Security. * https://www.apple.com/business/docs/iOS_Security_Guide.pdf. App Security ... Vulnerabilitie
Daniel R. Ford, D.Sc. Achieving privacy in the ever-evolving world of smartdevices

Is My Smartphone Secure? Quick Answer

Let’s Talk Apple Security

App Security

* https://www.apple.com/business/docs/iOS_Security_Guide.pdf

Another View

Security & Privacy Tips for iOS?

Vulnerabilities Per Operating System

*current as March 2016; cvedetails.com

Security Depreciation

•  •  •  • 

Average Release: 54 Days iOS7: 66 Days iOS8: 18 Days iOS9: 81 Days

Apple, FBI, Theft, Jailbreaks, Exploits…What?

Can Apple Write Code for Just one iOS Device?

Remember this from Slide 4?

The Breakdown: •  Device Key is a Unique ID(UID); Apple does not know it; Burned into the chip at manufacturing •  Device Group ID (GID) is based on a group of devices •  No software or firmware can read these keys •  Apple has a root CA Public key that is used to validate Apple Authorized Software

Q: Can Apple write code that would only affect one device? A: No. Not without an exploit.

Thank You!

Contact Information: Daniel R. Ford, D.Sc. [email protected] Twitter: @netsecrex