Ios security - encryption - where is it?

hi all,
     I read reports and apple's statements saying ios 8 is so secure and encrypted that law enforcement find it difficult to crack it. I used my iphone 6 with ios 8.1.1 on ubuntu linux and also windows 7 with ifunbox.
    It doesn't matter if the phone is locked prior to this or not. The entire filesystem is accessible. I can see pictures, apps, ebooks, podcasts, safari data, itunes purchases, voice recordings, icloud sharing data directly. The files can be opened and viewed, there's no encryption for any of the things I mentioned, even if the phone was locked.
   This works even for ios 6 - 8, with iphone 4s, iphone 5 and iphone 5s and iphone 6. I can't located emails, imessages and contacts as yet, but maybe by digging more into the filesystem, you could find those.
   So my question is - what exactly are people who are against ios encryption complaining about? But more importantly, what does apple mean when it says that it's implemented a high level of security with system wide encryption?
This is apple's official link which talks about it: https://www.apple.com/privacy/privacy-built-in/
It mentions icloud data (including photos), health app, imessage, mail and other stuff.
I am attaching these images: Could someone shed more light on this?

sure, but how is it relevant that its "my computer"? Maybe in windows, but there's no itunes trust in linux. the phone is locked and I didn't click "trust this computer" when I connected using linux.
so effectively its anyone's computer.

Similar Messages

  • My iPod touch 5th Gen iOS 8.1 won't turn on, charge and CONNECT TO iTUNES. Maybe this is because of the new release ios 8.1 where after the update it went recovery mode then i didn't restore, i set up a new ipod. What's wrong? Is ths bcoz of ios 8.1?

    My iPod touch 5th Gen iOS 8.1 won't turn on, charge and CONNECT TO iTUNES.
    Maybe this is because of the new release ios 8.1 where after the update it went
    recovery mode then i didn't restore, i set up a new ipod.
    What's wrong? Is ths bcoz of ios 8.1?

    How do you do that
    lllaass wrote:
    Try:                                               
    - iOS: Not responding or does not turn on          
    - Also try DFU mode after try recovery mode
    How to put iPod touch / iPhone into DFU mode « Karthik's scribblings
    - If not successful and you can't fully turn the iOS device fully off, let the battery fully drain. After charging for an least an hour try the above again.
    - Try another cable              
    - Try on another computer                                                       
    - If still not successful that usually indicates a hardware problem and an appointment at the Genius Bar of an Apple store is in order.
      Apple Retail Store - Genius Bar                              

  • HT1918 When I try to download a free app after log in the iTunes gets cut off with a msg update security question where do I do this?? I can't download anything

    When I try to download a free app after log in the iTunes gets cut off with a msg update security question where do I do this?? I can't download anything

    If you have a credit card on file on top of your gift card then it is asking you to confirm the security code for the card, which for a Visa or MasterCard is 3 digits located on the back, or AMEX has 4 digits on the front.  This happens just to ensure that you are the account holder, and would happen from time to time whether it was a free or paid app, even if you have a credit through your gift card.  This doesn't mean that your credit card will be charged.

  • I cant download apps on my iphone 5, it takes me to set up 3 security questions where i am always timed out and made to start again??

    i cant download apps on my iphone 5, it takes me to set up 3 security questions where i am always timed out and made to start again??

    Call apple.This happened to me in August when i bought mine. They will reset the 3 passwords.

  • ITunes no longer syncs to iPhone or iPad after iOS security update

    I did the iOS security update on my iPhone 5 and my iPad Air.  Now, iTunes will not sync with either device - neither one.  In both cases, I get the error message "iPhone5 (or iPad) can not be synced.  An unknown error occured (1140)."
    I then did the iTunes update that just came out - still the same problem.
    The Mac is a MacBook Pro 2.4 GHz Intel Core 7 running OSX 10.7.5.  Everything worked fine before the iOS security update.
    What is going on?  What to do?

    Finally, I had time to do a on-line support session with the Apple Care help people (excellent).  We went through and verified a lot of things.  Finally, he had me run the disk utility and run "repair disk permissions".  That resolved things and it works now.
    Also related is that the iOS 7.1 update installed a lot of stuff on the iPhone - including iMovie, Numbers, Pages, Keynotes - stuff that I will use on the iPad but not on the iPhone.  The result of automatically installing all these things on the iPhone was to but it way over the limit on memory.  I deselected thos apps (and a few others) plus some movies and am now below the memory limit on the iPhone.
    Things are now working well with both the iPhone and iPad - both syncing correctly.  So, with that, I will close out this case.

  • Since the most recent Firefox update 3.6.8 by banking institution no longer shows as having a secure encrypted connection, however, my bank assures me all is well with their certificates and that is a problem with the new Firefox browser update, can you g

    Since the most recent Firefox update 3.6.8 my banking institution no longer shows as having a secure encrypted connection, however, my bank assures me all is well with their certificates and that is a problem with the new Firefox browser update, can you give me some idea why it is doing this?
    == This happened ==
    Every time Firefox opened
    == Right after the new Firefox update

    Hello Anne.
    Can you please try it in a new (temporary) Firefox profile and see if the issue is still present? See [http://support.mozilla.com/en-US/kb/Managing+profiles this article] to know how to create a new Firefox profile. Please report back the results.

  • Branch office setup with L3 switch and router with IOS security

    Hello,
    I am in the process of putting together a small branch office network and I am in need of some design advise. The network will support about 10-15 workstations/phones, 3-4 printers, and 4-5 servers. In addition we will eventually have up to 25-30 remote users connecting to the servers via remote access VPN, and there will also be 2-3 site-to-site IPSec tunnels to reach other branches.
    I have a 2911 (security bundle) router and 3560 IP Base L3 switch to work with. I have attached a basic diagram of my topology. My initial design plan for the network was to setup separate VLANs for workstation, phone, printer, and server traffic. The 3560 would then be setup with SVIs to perform routing between VLANs. The port between the router and switch would be setup as a routed port, and static routes would be applied on the switch and router as necessary. The thought behind this was that I'd be utilizing the switch backplane for VLAN routing instead instead of doing router-on-a-stick.
    Since there is no firewall between the switch and router my plan was to setup IOS firewalling on the router. From what I am reading ZBF is my best option for this. What I was hoping for was a way to set custom policies for each VLAN, but it seems that zones are applied per interface. Since the interface between the router and switch is a routed interface, not a trunk/subinterface(s), it doesn't seem like there would be a way for me to use ZBF to control traffic on different VLANs. From what I am gathering I would have to group all of my internal network into one zone, or I would have to scrap L3 switching all together and do router-on-a-stick if I want to be able to set separate policies for each VLAN. Am I correct in my thinking here?
    I guess what I am getting at is that I really don't want to do router-on-a-stick if I have a nice switch backplane to do all of the internal routing. At the same time I obviously need some kind of firewalling done on the router, and since different VLANs have different security requirements the firewalling needs to be fairly granular.
    If I am indeed correct in the above thinking what would be the best solution for my scenario? That is, how can I setup this network so that I am utilizing the switch to do L3 routing while also leveraging the firewall capabilities of IOS security?
    Any input would be appreciated.
    Thanks,
    Austin

    Thanks for the input.
    1. I agree, since I have only three to four printers, they need not be in a separate VLAN. I simply was compartmentalizing VLANs by function when I initially came up with the design.
    2. Here's a little more info on the phone situation. The phones are VoIP. The IP PBX is on premise, but they are currently on a completely separate ISP/network. The goal in the future is to converge the data and voice networks and setup PBR/route maps to route voice traffic out the voice ISP and data traffic out the other ISP. This leads up to #3. 
    3. The reason a router was purchased over a firewall was that ASA's cannot handle routing and dual ISPs very well. PBR is not supported at all on an ASA, and dual ISPs can only be setup in an active/standby state. Also, an ASA Sec+ does not have near the VPN capabilities that the 2911 security does. The ASA Sec+ would support only 25 concurrent IPSec connections while the 2911 security is capable of doing an upwards of 200 IPSec connections.
    Your point about moving the SVI's to a firewall to perform filtering between VLANs makes sense, however, wouldn't this be the same thing as creating subinterfaces on a router? In both cases you are moving routing from the switch backplane to the firewall/routing device, which is what I am trying to avoid.  

  • Just got a used airport base station. Set it up and getting wif signal. when I try to hook up on a computer it asks for a security key. where can I locate key?

    just got a used airport base station. Set it up and getting wif signal. when I try to hook up on a computer it asks for a security key. where can I locate key?

    If you mean the hexidecimal equivalent of the alphanumeric password, then you can find this via the AirPort Utility, as follows:
    AirPort Utility > Select the AirPort > Manual Setup
    On the AirPort Utility's menubar select Base Station > Equivalent Network Password

  • Weblogic.security.Encrypt

    Have been a long time user of weblogic security So far it always used 3DES
    Recently with 11gR1 (we are using Weblogic Portal which internally uses weblogic Server Securiy)
    I went into the domain directory
    typed
    java weblogic.security.Encrypt mypass
    Got back a encrypted string which is AES encrypted
    type the same command Again after 1 minute
    Got back a different string which is AES encrypted
    In previous release I never saw this. We are using bundled jrockit on Red hat 5.3 as the OS here
    I was expecting the utility to always return the same encrypted password every time I run it ? Not sure if this is a bug or just the way AES encryption behaves
    Which encrypted password should I use in the jdbc config.xml ?
    Is there a way to use 3DES versus AES (some switch which controls this behavior at server level)
    Thanks
    Yesh

    its an expected behavior that you dont see the same encrypted string as a dynamic vector is used as the hash value.
    Since hash is different all the time, encrypted string is different.
    You can use both AES/DES without a problem.

  • Weblogic.security.Encrypt  -and-  Not enough space

    This post has two questions.
    I have a simple application on wls9.2 that is a web front end to the weblogic.security.Encrypt command line utility. It seems to work fine, but after a little bit of use I am seeing the following:
    java.io.IOException: Not enough space
    at java.lang.UNIXProcess.forkAndExec(Native Method)
    at java.lang.UNIXProcess.<init>(UNIXProcess.java:53)
    at java.lang.ProcessImpl.start(ProcessImpl.java:65)
    at java.lang.ProcessBuilder.start(ProcessBuilder.java:451)
    at java.lang.Runtime.exec(Runtime.java:591)
    at java.lang.Runtime.exec(Runtime.java:429)
    at java.lang.Runtime.exec(Runtime.java:326)
    at encrypt.wls92Encrypt(Unknown Source)
    at encrypt.doGet(Unknown Source)
    at encrypt.doPost(Unknown Source)
    at javax.servlet.http.HttpServlet.service(HttpServlet.java:763)
    at javax.servlet.http.HttpServlet.service(HttpServlet.java:856)
    at weblogic.servlet.internal.StubSecurityHelper$ServletServiceAction.run(StubSecurityHelper.java:223)
    at weblogic.servlet.internal.StubSecurityHelper.invokeServlet(StubSecurityHelper.java:125)
    at weblogic.servlet.internal.ServletStubImpl.execute(ServletStubImpl.java:283)
    at weblogic.servlet.internal.ServletStubImpl.execute(ServletStubImpl.java:175)
    at weblogic.servlet.internal.WebAppServletContext$ServletInvocationAction.run(WebAppServletContext.java:3245)
    at weblogic.security.acl.internal.AuthenticatedSubject.doAs(AuthenticatedSubject.java:321)
    at weblogic.security.service.SecurityManager.runAs(SecurityManager.java:121)
    at weblogic.servlet.internal.WebAppServletContext.securedExecute(WebAppServletContext.java:2003)
    at weblogic.servlet.internal.WebAppServletContext.execute(WebAppServletContext.java:1909)
    at weblogic.servlet.internal.ServletRequestImpl.run(ServletRequestImpl.java:1359)
    at weblogic.work.ExecuteThread.execute(ExecuteThread.java:209)
    at weblogic.work.ExecuteThread.run(ExecuteThread.java:181)
    1) Here is the forking code:
    try {
    proc = Runtime.getRuntime().exec("java -Dweblogic.RootDirectory="+rootDir+" weblogic.security.Encrypt "+password);
    BufferedReader bf=new BufferedReader(new InputStreamReader(proc.getInputStream()));
    line=bf.readLine();
    bf.close();
    } catch (IOException e) {
    Is there a better way to do this, without forking? Seems odd to execute a java call, in java, just to get the encrypted string. I'd like to call weblogic.security.Encrypt inline, but have been unable to do so.
    2) Why would the Not enough space error creep up? Researching it, it seems like it is a swap problem, but that does not seem to be the case on our system. A top shows:
    Memory: 8192M phys mem, 2769M free mem, 5004M swap, 5004M free swap
    at the time of failure. Disk usage is looking great as well. The JVM heapsize is around 80% free. An lsof on the system shows about 150 open files on the managed server.
    Any ideas on how to troubleshoot this would be appreciated.
    Thanks

    I use CCleaner from the AppStore to delete the 'useless' stuff. It's free and works great for me

  • I just installed iOS 7.1 - where is the iTunes Internet radio app?

    I just installed iOS 7.1 - where is the iTunes Internet radio app?

    There is no separate app. It's included in the 'Music' app if Radio is available in your country (only US and Australia at this moment).
    If it is available in your country then open the Music app and select the Radio tab as described on the Apple website. If it is available in your country but don't seem Radio in the Music app then do this.

  • WS-Security Encrypted Response

    Hi,
    When I call a WS-Security web service (in WLS 8.1 SP3), it works fine until I set it to encrypt the response. Then I get
    java.rmi.RemoteException: SOAP Fault:javax.xml.rpc.soap.SOAPFaultExc
    eption: Exception during processing: weblogic.utils.AssertionError: ***** ASSERT
    ION FAILED *****[ Unable to secure response ] - with nested exception:
    [java] [weblogic.xml.stream.XMLStreamException: Object not initialized. - w
    ith nested exception:
         [java] [weblogic.xml.security.encryption.EncryptionException: Object not in
    itialized. - with nested exception:
         [java] [com.rsa.jsafe.JSAFE_InvalidUseException: Object not initialized.]]]
    (see Fault Detail for stacktrace)
    [java] Detail:
    [java] <detail>
    [java] <bea_fault:stacktrace xmlns:bea_fault="http://www.bea.com/servers
    /wls70/webservice/fault/1.0.0">com.rsa.jsafe.JSAFE_InvalidUseException: Object n
    ot initialized.
    [java] at com.rsa.jsafe.JG_BlockCipher.encryptUpdate(JG_BlockCipher.jav
    a:652)
    [java] at weblogic.xml.security.encryption.CipherWrapper$JSafeCipherWra
    pper.update(CipherWrapper.java:277)
    etc.
    Any ideas ?
    Dave
    UK

    Looks like a problem in the key pair mis-matched. i.e: domestic strength key vs. foreign

  • Firefox is up to date. need 128 bit security encryption

    My firefox is up to date. In order to get paperless statements from credit cards I need to have 128 bit security encryption. Card company checked browser and did not continue to make the change to paperless, due to the fact that 128 bit security encryption was not found; also read that: you need to update your browser.
    How do I get this encryption? thank you

    Can't you bypass that test?<br />
    There is usually a link on the page to continue anyway and ignore the check for the encryption check.
    If websites complain about 128 bit encryption not available then that can be caused by the "U;" that is no longer present in the user agent of Firefox 4+ versions.
    * https://developer.mozilla.org/en/User_Agent_Strings_Reference
    * http://en.wikipedia.org/wiki/User_agent#Encryption_strength_notations
    *[https://bugzilla.mozilla.org/show_bug.cgi?id=572668 bug 572668] - Remove the crypto strength token from the UA string
    Firefox supports 256 bit encryption ciphers (AES-256) since 2003 in Firebird 0.6, so all Firefox versions have 128 bit and 256 bit encryption.
    * https://www.fortify.net/sslcheck.html

  • I cannot remember the answers to my security questions where do I go to find a solution to this problem

    I cannot remember the answers to my security questions where do I go to find a solution

    Click here and search the article for '2 out of 3' without the quotes; in the case of forgotten answers, this generally involves either a message being sent to your rescue email address or contacting the iTunes Store staff directly.
    (74536)

  • In trying to set up an online account, a diagnostic informed me that I should update my browser to accept 128 bit security encryption. How do I accomplish this? I already have Firefox 4.

    I can't understand why my browser would not be compatible with 128 bit security encryption. Have set up several other accts with no issues. What are possible problems related to this non-compatibility?

    Firefox 4 supports AES-256 (256 bit) encryption in addition to 128 bit since Firefox 2 in 2002.
    * https://www.fortify.net/cgi/ssl_2.pl
    Can you post a link to that page?

Maybe you are looking for