Slashdot Log In
iPhone Takes Screenshots of Everything You Do
Posted by
kdawson
on Friday September 12, @01:11PM
from the watchbird-is-watching-you dept.
from the watchbird-is-watching-you dept.
The_AV8R writes "Jonathan Zdziarski showed that every time you press the Home button on your iPhone, a screen capture is taken in order to produce a visual effect. This image is then cached and later deleted. Zdziarski says that there have been cases of law enforcement looking up sex offenders' old data and checking recovered screenshots." This revelation occurred in the midst of a webcast on iPhone forensics, demonstrating how to bypass the iPhone's password security (not trivial, but doable). Video from the talk is not online yet but is promised soon over at O'Reilly.
Related Stories
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
Full
Abbreviated
Hidden
Loading... please wait.

FUD (Score:4, Funny)
Therefore, forensics experts have used this security flaw to successfully nab criminals who have been accused of rape, murder or drug deals, Zdziarski said.
iPhone: the tool of choice for rapists, murders, and drug dealers!
Joking aside, the article is puzzling and it reeks of FUD: if the iCrooks were bad enough to get the authorities to actively track and sieze their data then they deserve to be caught for being too stoopid to buy disposable phones in cash from 7-11. Even Johnny dormroom pot- dealer knows that!
Reply to This
Malfeasance handbook (Score:5, Insightful)
Smart crooks use dumb (disposable) phones.
Dumb crooks use smart phones.
Reply to This
Parent
Re:FUD (Score:5, Funny)
Joking aside, the article is puzzling and it reeks of FUD:
Apple FUD on slashdot? Maybe the LHC is gearing up for armageddon after all.
Reply to This
Parent
Re:FUD (Score:5, Funny)
Alls I heard was "I love apple" and "I'm a huge fanboy"..
Reply to This
Parent
Re:FUD (Score:5, Funny)
Reply to This
Parent
Re:FUD (Score:5, Funny)
Or a pharmacist.
Reply to This
Parent
Just out of curiosity... (Score:5, Funny)
Reply to This
Re:Just out of curiosity... (Score:5, Funny)
Reply to This
Parent
Pragmatic (Score:4, Funny)
It's pragmatic to not press the home button when doing home invasions or killing people, I guess.
Reply to This
Re:Pragmatic (Score:4, Informative)
It's pragmatic to not press the home button when doing home invasions or killing people, I guess.
Although you are probably technically right, unless you are killing them with a scathing email, or nasty AC troll post - it is not likely that the home button will matter. It captures the screenshot of what is on your screen - not from the camera. (unless you happend to have the camera app on at the moment of course)
-Em
Reply to This
Parent
What's the problem (Score:5, Interesting)
And what did you expect from Apple? That every bit of data that was discarded is overwritten ten times? Jeez, I enjoy bashing big companies as much as the other guy but now they're looking too far. Remember, it also saves your web history, every picture you took, every file you opened everything you did somewhere...
Reply to This
Re:What's the problem (Score:4, Insightful)
In this case, a potential security issue has been introduced for the purpose of look and feel. While the headline is sensational and seems to be written by a person with no technical background or understanding fo the iPhone, the point remains. Pictures of what you are doing prior to pressing the home button are taken, and stored for some indeterminate amount of time. This is like the browser issue, likely not a big problem. OTOH, there does not seem to be an option under the general/home button menu to turn off this effect, so there is no way for persons worried about the issue to turn it off. It is an interesting problem.
Reply to This
Parent
And this just in! (Score:5, Funny)
It turns out that you browser will store all the information needed to recreate the web pages you visit! Not just a screenshot! This critical flaw appears to have present for years in all known browsers! The end is near!
Seriously? Come on. I know ./ likes to post anything related to the iPhone, especially if it involves "spying", but this is pretty uninteresting. Security is traded for speed and features on a daily basis, including places where do so presents a major risk (*cough*Outlook). This is really not too surprising since it trades at most a little privacy in exchange for a neat effect; what would you expect Apple's iCandy to do?
Reply to This
Re:And this just in! (Score:5, Funny)
Reply to This
Parent
fud (Score:4, Insightful)
Reply to This
Even the Author Doesn't Think It's News (Score:5, Informative)
This was a side note I mentioned the other day, and has been something I've been grousing about for over a year. It's unnecessary, and a bit of a privacy leak that can be exploited by forensic examiners, but hardly news for the reasons already stated in the comments.
Reply to This
Re:Even the Author Doesn't Think It's News (Score:5, Funny)
I _am_ Jonathan Zdziarski
No, I'm Jonathan Zdziarski!
Reply to This
Parent
Re:Even the Author Doesn't Think It's News (Score:5, Funny)
Reply to This
Parent
Re:Even the Author Doesn't Think It's News (Score:5, Informative)
Reply to This
Parent
Re:Even the Author Doesn't Think It's News (Score:4, Funny)
Welcome to Slashdot. Here's your oversized novelty foam finger.
Reply to This
Parent
Re:It's nice to know (Score:5, Interesting)
Errr, it's not phoning these screenshots home. You must have a problem with .bash_history too, right? Caching your keystrokes! OMG!
Reply to This
Parent
Re:It's nice to know (Score:4, Interesting)
Reply to This
Parent
Re:It's nice to know (Score:5, Funny)
Reply to This
Parent
Re:It's nice to know (Score:5, Insightful)
Sure, if you overwrite your firmware (jailbreak), enable SSH access to the phone, and then NOT change your root password. Quite frankly, you deserve it at that point.
Sounds like yet another sensationalist (and completely inaccurate) headline pointing to a non-story. Unless some pervert is hits the home button while trying to take a (crappy, borderline-useless unless it's being done in full daylight) picture of himself raping a kid, AND law enforcement not only knows to look for this cached file, I don't really see this being an issue. I suppose it could possibly be used as supplemental evidence when a case is being built up, but the actual AIM chat logs, sent emails, phone call history (all of which are far more accessible) and such would be far more potentially incriminating.
Reply to This
Parent
Re:Makes you wonder.... (Score:5, Insightful)
it makes me wonder why there is no 'badtitle' tag.
It doesn't take a screenshot of everything you do, just when you hit the home button.
Reply to This
Parent