Apple AirTag Bug Enables ‘Good Samaritan’ Attack

PDF Document

It appears your Web browser is not configured to display PDF files. Download adobe Acrobat or click here to download the PDF file.

License

All rights reserved.

Creator(s)

Contributed date

January 9, 2023 - 1:35pm

Critical Commentary

2021/09/28 (Krebs on Security Paper) : "The new $30 AirTag tracking device from Apple has a feature that allows anyone who finds one of these tiny location beacons to scan it with a mobile phone and discover its owner’s phone number if the AirTag has been set to lost mode. But according to new research, this same feature can be abused to redirect the Good Samaritan to an iCloud phishing page — or to any other malicious website."

This artifact is part of the Apple Bug Bounty Program Bundle.