• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
TechApple

Apple’s iMessage Has a Security Hole That Can Allow Photo Theft

By
David Meyer
David Meyer
Down Arrow Button Icon
By
David Meyer
David Meyer
Down Arrow Button Icon
March 21, 2016, 5:14 AM ET

There’s a security vulnerability in Apple’s(AAPL) encrypted messaging app, iMessage, that could let attackers steal photos and videos being sent between users.

That’s according to researchers from Johns Hopkins University, whose findings have been reported in the Washington Post.

The attack they formulated will work on iMessage running off iPhones and iPads that haven’t been updated to the latest version of the iOS operating system, version 9.3. However, an attacker with nation-state resources could adapt the exploit to hit up-to-date devices as well, the researchers said.

Get Data Sheet, Fortune’s technology newsletter.

Apple will only release a full fix for the vulnerability on Monday, so the researchers are holding back on releasing key details for now.

Details, blog post, paper, etc to come after Apple ships the patch.

— Ian Miers (@secparam) March 21, 2016

“We appreciate the team of researchers that identified this bug and brought it to our attention so we could patch the vulnerability,” Apple said in a statement quoted by the Post.

According to the piece, the researchers “wrote software to mimic an Apple server” and set about methodically guessing the encryption key that protected a certain photo being transmitted.

Usually this would be an extremely difficult task with a 64-digit key, but the system apparently let them know every time they had correctly guessed a digit, drastically reducing the amount of effort needed to test out different combinations.

For more on the Apple-FBI debate, watch:

Although this kind of encryption is not directly relevant to the celebrated Apple-FBI spat over the San Bernardino shooter’s phone — which is about bypassing the phone’s login locks — the Johns Hopkins researchers have used their work to point out that investigators can exploit existing flaws rather than requiring complicity from tech firms.

“Even Apple, with all their skills — and they have terrific cryptographers — wasn’t able to quite get this right,” said computer science professor Matthew Green. “So it scares me that we’re having this conversation about adding back doors to encryption when we can’t even get basic encryption right.”

About the Author
By David Meyer
LinkedIn icon
See full bioRight Arrow Button Icon

Latest in Tech

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • Future 50
  • World’s Most Admired Companies
  • See All Rankings
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Tech

Harvey CEO Winston Weinberg
SuccessCareers
30-year-old CEO of $11 billion Harvey earned the backing of OpenAI and Sam Altman. He says you have to ‘re-earn’ your role every 6 months
By Preston ForeMarch 26, 2026
1 hour ago
SuccessHiring
Duolingo CEO’s taxi driver test decides who gets hired—before the interview even starts
By Sydney LakeMarch 26, 2026
2 hours ago
chaplin
AIAI agents
‘Intelligence may be scalable, but accountability is not’: A new report exposes the hidden cost of the AI agent revolution
By Nick LichtenbergMarch 26, 2026
3 hours ago
wyle
HealthTV
‘The Pitt’ shows an ER getting shut down by a cyberattack that is totally true to life
By Jeffrey Tully, Christian Dameff and The ConversationMarch 26, 2026
3 hours ago
CryptoCryptocurrency
Foreign exchange startup XFX raises $17 million to help businesses go between cash and stablecoins
By Ben WeissMarch 26, 2026
5 hours ago
John Zhao smiles and crosses his legs
Startups & VentureHealth
Exclusive: Blossom Health raises $20 million to bring an AI ‘copilot’ to psychiatry
By Lily Mae LazarusMarch 26, 2026
5 hours ago

Most Popular

Success
Palantir’s billionaire CEO says only two kinds of people will succeed in the AI era: trade workers — ‘or you’re neurodivergent’
By Fortune EditorsMarch 24, 2026
2 days ago
C-Suite
'I didn’t want anybody shooting me': Five Guys CEO gave away $1.5 million bonus to employees over botched BOGO burger birthday celebration
By Fortune EditorsMarch 25, 2026
21 hours ago
Magazine
The youngest-ever female CEO of a Fortune 500 company is fighting Trump's cuts to keep Medicaid strong
By Fortune EditorsMarch 24, 2026
2 days ago
Commentary
The Treasury just declared the U.S. insolvent. The media missed it
By Fortune EditorsMarch 23, 2026
3 days ago
Success
JPMorgan’s Jamie Dimon says remote work breeds ‘rope-a-dope politics’ and stunts young workers’ growth
By Fortune EditorsMarch 25, 2026
1 day ago
Environment
Vail Resorts' CEO says it's time to think beyond the $1,000 ski pass that helped build the empire
By Fortune EditorsMarch 26, 2026
10 hours ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.