DEF CON 33 - Siriously Leaky: Exploring Overlooked Attack Surfaces in Apple's Ecosystem - Richard Im

DEF CON 33 - Siriously Leaky: Exploring Overlooked Attack Surfaces in Apple's Ecosystem - Richard Im

Source: YouTube · DEFCONConference · published Oct 10, 2025 · 45:08

Cybersecurity
No ratings yet Log in to rate
Transcript Available
Description

The presentation demonstrates multiple security vulnerabilities across Apple's ecosystem that could expose sensitive user data despite supposed protections like Face ID 0:27.

Key Takeaways:
• Hidden photos in the Photos app could be accessed through Siri even after the app was locked 0:27
• Spotlight search on the lock screen exposed contents from Notes, Pages, Numbers, and Keynote apps 12:03
• Siri could leak content from the last viewed app (ChatGPT or Safari) even when the device was locked 29:01
• A race condition in Shortcuts could bypass Face ID protection for private Safari tabs 26:13
• Email spoofing vulnerability in the Contacts app allowed sending emails to different addresses than displayed 31:01

The presenter emphasizes that even high-trust components like Face ID aren't foolproof when trust boundaries aren't properly enforced 44:01.

Sources:

  • 0:27 Demonstration of hidden photo leak via Siri
  • 12:03 Spotlight search exposing Notes, Pages, Numbers, Keynote
  • 29:01 Siri leaking content from ChatGPT and Safari
  • 26:13 Shortcuts bypassing Face ID for private Safari tabs
  • 31:01 Email spoofing vulnerability in Contacts app
  • 44:01 Closing remarks about trust boundaries

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 1 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

It is my absolute pleasure to introduce Richard. He's got a great talk lined up for us that I'm particularly interested in. Um his talk is titled Seriously Leaky, Exploring Overlooked Attack Surfaces Across Apple's Ecosystem. Um with that, I'll turn it over to Richard. Let's give him a big work welcome a round of applause for this first time Devcon speaker. All right. So, hello everyone. Um, so let's go ahead and get started. And okay, I just want to start out with a quick poll. So, uh, if you've ever taken a photo with your phone, uh, please raise your hand. Okay. Okay. So, that was like, okay, like 96% of you and then I think like I don't know like 3% of you maybe still scrolling through Hacker Tracker and uh I guess 1% just liars. Um, you know, which is cool. Uh, okay. So now, can you u…