• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer
Trending:
  • Kashmir
  • Elections
Saturday, June 6, 2026

Daily Times

Your right to know

  • HOME
  • Latest
  • Iran-Israel war
  • Gilgit Baltistan Election
  • Pakistan
    • Balochistan
    • Gilgit Baltistan
    • Khyber Pakhtunkhwa
    • Punjab
    • Sindh
  • World
  • Editorials & Opinions
    • Editorials
    • Op-Eds
    • Commentary / Insight
    • Perspectives
    • Cartoons
    • Letters to the Editor
    • Featured
    • Blogs
      • Pakistan
      • World
      • Lifestyle
      • Culture
      • Sports
  • Business
  • Sports
  • E-PAPER
    • Lahore
    • Islamabad
    • Karachi

By Matthew Gault

Yes, the feds can hack your iPhone. No, it isn’t easy

Published on: February 22, 2016 6:57 AM

The FBI wants Apple to give it the tools to break into the iPhone of the San Bernardino terrorist Syed Farook. In a brave display on the company home page, Apple Chief Executive Officer Tim Cook refused. He was right to say no. If the Feds really wanted to, they have the skills necessary to break into that phone. This fight isn’t about gathering information on a terrorist. It’s about setting a legal precedent.
That the FBI chose to push this issue with the San Bernardino case is telling. Few Americans, they are betting, care about Farook’s privacy. They must believe the public — and the courts — will support them here. Cook said that Apple has helped the FBI during every step of its investigation. It has turned over all iPhone data that Farook backed up to the cloud. But the Feds want to access his phone and make sure they didn’t miss anything. To do this, they want Apple to build a backdoor into its own operating system. Apple’s iPhone, particularly the newer models, has sophisticated encryption technology, triggered by a PIN. Two specific security features make these smartphones particularly nasty to break into.
Cryptographic brute-force has long been one method of cracking any password. The hacker runs a program that spams every possible password combination at the encrypted device until it opens. Apple’s phones use either a four- or six-digit PIN. The four-digit PIN only allows for 9,999 different password combinations. The cracking program could run through those combinations in seconds.
The six-digit PIN allows for a million combinations, and is only available on iPhones running the iOS 9 operating system and above. Farook’s phone runs iOS 9. Still, a computer could run through all the possible combinations in less than a minute and break into the device — if it weren’t an iPhone.
Apple’s smartphones require users to enter passwords manually. That takes time. Worse for the would-be hacker is that the phone punishes you for failure. As any iPhone user who’s struggled to enter their PIN one-handed while, for example, walking along and chatting with a friend, knows, if you fail to enter your password too many times, the phone locks you out for a minute.
The phone is programmed so that the lock-out time increases after multiple failures. Six failed attempts pushes the lock-out time to five minutes. After the ninth failed attempt, users have to wait an hour before they can try again.
After the 10th failed attempt, the phone erases all its data. Meaning the cryptographic brute-force method just doesn’t work on iPhones, if you don’t manage to get lucky in the early going. Data encryption has come a long way in the past five years. One reason is tech giants such as Apple and Google now issue over-the-air updates to patch security issues in real time. When a tech company finds a flaw in its software, it pushes out an update as soon as possible to plug the hole. The FBI is now asking Apple to create a special operating system that can be sent to Farook’s phone either locally or by over-the-air delivery, and then used to bypass Apple’s time delay and system wipe. This would allow federal agents to guess at the password as many times as they want. What the Feds have requested is possible with Farook’s older model iPhone 5C. On these phones, the operating system runs the security features and Apple could manipulate it through an update.

The FBI says it is asking for this new tool just to breach the phone of one terrorist. But both Apple and many security experts recognize that the specialized operating system could be used as a backdoor into any older model iPhone on the planet. This backdoor would not work on newer iPhones, however. There, security features live on a separate computer within the phone, called the secure enclave. And the secure enclave is just that — secure. Manipulating the phone’s operating system will not help would-be crackers break in.

The use of a secure enclave is part of an advanced, smart design trend in encryption. It makes products so secure that even the manufacturer can’t bust into them. Yet some experts speculated that Apple may have left the iPhone’s enclave open for updates — and federal manipulation. Washington, however, has other methods of extracting data from phones that don’t require passwords. The CIA, the National Security Agency and the FBI have been working on invasive and non-invasive methods of data extraction for more than a decade. Many security experts believe the intelligence agencies have devised unique solutions to problems just like the San Bernardino phone.

 

Matthew Gault is a defense reporter for War Is Boring. He produces and co-hosts “War College,” Reuters’ military podcast

Filed Under: Region

Submit a Comment




Primary Sidebar




Latest News

Alexander Zverev eases past Jakub Mensik in French Open semifinals

Taylor to face Pili in Croke Park farewell

FIFA bans vuvuzelas from World Cup stadiums

France brush off Ivory Coast loss, call it timely World Cup reminder

Legendary boxer Muhammad Ali’s 10th death anniversary observed

Pakistan

JAAC declared proscribed party ahead of AJK polls on July 27

Fixed tax scheme for small retailers launched to raise Rs 50bn annually

Govt cuts petrol price by Rs 4 per litre, keeps diesel’s unchanged

Bilawal promises GB voters with land and job rights

Iran declares support for Hezbollah with wider peace deal in doubt

More Posts from this Category

Business

SBP’s ‘Go Cashless’ campaign saw Rs 34bn in digital transactions on Eid

Short-term inflation down by 0.56%

Saudi-Pak Business Council shows interest in infrastructure investment

‘Govt, allies united in efforts to craft people-centric budget’

Rupee records gain against US dollar

More Posts from this Category

World

CENTCOM space post signals wider US military footprint

US official delivers Trump’s “good hello” to Putin

NASA lifts ISS evacuation alert after leak

More Posts from this Category




Footer

Home
Lead Stories
Latest News
Editor’s Picks

Culture
Life & Style
Featured
Videos

Editorials
OP-EDS
Commentary
Advertise

Cartoons
Letters
Blogs
Privacy Policy

Contact
Company’s Financials
Investor Information
Terms & Conditions

Facebook
Twitter
Instagram
Youtube

© 2026 Daily Times. All rights reserved.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.