HN2new | past | comments | ask | show | jobs | submitlogin

> 4-digit PINs are (presumably) brute-forceable

True, but iOS does have an option to wipe the phone after 10 unsuccessful PIN attempts. Given that iCloud backup is pretty simple to setup, there's no reason not to configure this option, IMO.



Yeah, but the court can still get a warrant for the iCloud data, which I am almost certain isn't store in encrypted form or at least in an encrypted form for which Apple does not have the keys.

You really need to use iTunes and an app like PhoneView for backing up all your data locally and storing that data in encrypted form outside the jurisdiction of your country.


Except police malware such as FinFisher/FinSpy specifically uses Itunes updates to break into iOS


iCloud backups are encrypted so long as you have protection enabled on your phone. Apple has a white paper describing the process:

http://images.apple.com/iphone/business/docs/iOS_Security_Oc...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: