Researcher tricks Apple’s Find My into sharing location data with Linux

Summary

A security researcher has demonstrated a method to trick Apple's Find My network into revealing the location of Apple devices on a Linux system. This was achieved by exploiting the Find My network's protocol and a specific USB device that can mimic an Apple accessory.

IFF Assessment

FOE

This development allows malicious actors to potentially track Apple devices without authorization, posing a risk to user privacy and security.

Defender Context

This research highlights a potential blind spot in the Find My network, emphasizing the need for defenders to be aware of how device proximity protocols can be manipulated. Users should be cautious of unusual USB devices and any unexpected requests related to their Apple devices.

Read Full Story →