{
  "guid": "415dc303-56fa-5127-aa84-3a20fcb22cde",
  "id": 786,
  "date": "2024-12-27T11:00:00+01:00",
  "start": "11:00",
  "duration": "00:40",
  "room": "Stage YELL",
  "slug": "38c3-breaking-the-mirror-a-look-at-apple-s-new-iphone-remote-control-feature",
  "url": "https://events.ccc.de/congress/2024/hub/de/event/breaking-the-mirror-a-look-at-apple-s-new-iphone-remote-control-feature/",
  "title": "Breaking the Mirror \u2013 A Look at Apple\u2019s New iPhone Remote Control Feature",
  "subtitle": null,
  "language": "en",
  "track": null,
  "type": "Talk 40 (30min +10 Q&A)",
  "abstract": "Exploring the security of the new iPhone Mirroring feature as well as the current threat model of the iOS ecosystem",
  "description": "The tight integration between devices is something you only get in Apple\u2019s Continuity ecosystem. It enables seamless interaction between devices, such as using your iPhone as a webcam for your Mac and even letting an iPad act as a second screen with stylus input. \r\n\r\nAll of this relies on Apple\u2019s Continuity framework, a system that builds on local wireless protocols such as Bluetooth and Wi-Fi to communicate among a user\u2019s devices. The interactions enabled between the devices result in a complex threat model that researchers have started to explore over the past years.\r\n\r\nThis summer, Apple newly introduced iPhone Mirroring, a feature that allows users to remote control their locked iPhone wirelessly from their Mac, further blurring the security boundaries in the ecosystem. \r\n\r\nHow does this new feature work? Are the security and privacy checks introduced for iPhone Mirroring sufficient or is it possible to trick the system? What do they protect against and how might this differ from how iOS devices are used in practice? In this talk, you will get demos and explanations of bypasses found in early versions of the iOS 18 beta along with an explanation of why and how they work.",
  "logo": "https://cfp.cccv.de/media/38c3-community-stages/submissions/QUGQQC/iphone_mirror_wfSeOYf.jpg",
  "persons": [
    {
      "guid": "8d0798d6-a131-588d-9c86-9d72465521f5",
      "name": "Aaron Schlitt",
      "public_name": "Aaron Schlitt",
      "avatar": "https://cfp.cccv.de/media/avatars/MINTEC-Portr%C3%A4t_pUTk0SO.jpg",
      "biography": null,
      "url": "https://events.ccc.de/congress/2024/hub/de/user/speaker_8d0798d6-a131-588d-9c86-9d72465521f5/"
    }
  ],
  "links": [],
  "origin_url": "https://cfp.cccv.de/38c3-community-stages/talk/QUGQQC/",
  "feedback_url": "https://cfp.cccv.de/38c3-community-stages/talk/QUGQQC/feedback/"
}