Apple`s AirDrop, Wi-Fi Password Sharing Features Could Leak Your Phone Number: Report
4:55:9 2019-08-06 905

Apple has for a long time offered AirDrop on its iOS and Mac devices to enable easy content sharing between two devices. Similarly, it allows iPhone and Mac users to share their Wi-Fi passwords with a single tap. While both features are designed to enhance the user experience, a new report claims that an attacker can use AirDrop and Wi-Fi password sharing broadcasts to obtain potentially sensitive data, including phone numbers. It is also said that once Bluetooth is turned on, Apple devices broadcast device details, such as phone status and Wi-Fi status.

 

The report published by cyber-security firm Hexway claims that simply turning on Bluetooth enables attackers to access information about the phone status, battery information, Wi-Fi status, buffer availability, and OS version among other information. The loophole is claimed not to exist only on iPhone units, but also on MacBook, Apple Watch, and AirPods units. All this data is allegedly sent in Bluetooth Low Energy packets.

 

Alongside the Bluetooth vulnerability, the report by Hexway says that when using AirDrop, Apple users broadcast a partial SHA256 hash of their phone number. An attacker can use the hash to recover the original phone number and even contact the user in iMessage or obtain the name of the user, the report claims, detailing the steps involved of recovering a phone number from a partial hash.

 

In case of using the Wi-Fi password sharing feature, the report claims Apple devices send partial SHA256 hashes of phone number, Apple ID, and email addresses associated with them. "Only the first 3 bytes of the hashes are sent, but that's enough to identify your phone number (actually, the number is recovered from HLR requests that provide phone number status and region)," the researchers claimed in their report, adding the steps that can be taken to convert the no details about whether email addresses can be recovered are mentioned. Hexway researchers have also released a few videos on YouTube to detail the issues.

 

A proof-of-concept (PoC) has been included with Hexway's report to demonstrate the information broadcast. Ars Technica's Dan Goodin says the PoC, when used by Errata Security CEO Rob Graham, showed that within a minute or two, details of more than a dozen of nearby iPhone and Apple Watch models was captured on a system.

 

Apple has provided a Contacts Only option in AirDrop that limits its access. Similarly, it is advisable to disable Bluetooth if it's not in use. This is certainly not possible if you own an Apple Watch or use AirPods regularly.

Forgive Others   2025-07-23
Reality Of Islam

Patience in Islamic Codices

11:28:24   2025-08-02  

The Fields of Patience

11:22:10   2025-07-30  

Patience Against Sin

10:34:41   2025-07-23  

A Mathematical Approach to the Quran

10:52:33   2024-02-16  

mediation

2:36:46   2023-06-04  

what Allah hates the most

5:1:47   2023-06-01  

allahs fort

11:41:7   2023-05-30  

striving for success

2:35:47   2023-06-04  

Imam Ali Describes the Holy Quran

5:0:38   2023-06-01  

livelihood

11:40:13   2023-05-30  

silence about wisdom

3:36:19   2023-05-29  

Gold remains perfectly solid wh

read more

MOST VIEWS

Importance of Media

9:3:43   2018-11-05

Illuminations

different roles

9:42:16   2022-10-19

loyalty is strength

10:55:53   2022-06-13

their choice

11:11:59   2023-02-01

logic

12:47:1   2022-12-20

allah timing

6:14:3   2023-01-18

overcoming challenges

5:57:34   2023-03-18

noah & his ark

7:59:14   2018-06-21



IMmORTAL Words
LATEST Just One Diet Soda a Day May Raise Your Type 2 Diabetes Risk by 38% Gold Does Something Unexpected When Superheated Past Its Melting Point Scientists Found a Mysterious Barrier in The Ocean That Jellyfish Will Not Cross Take Responsibility for Your Choices Interpretation of Sura Hud - Verses 108-110 Patience in Islamic Codices Study Reveals the Shocking Amount of Plastic We Breathe in Every Day Third Phase of AI Is Here. Here is How Agents May Impact Our Lives. Yellowstone Aspen Forests Are Already Responding to The Return of Wolves The Key to Success in Your Work and Life The Fields of Patience Interpretation of Sura Hud - Verses 105-107