iOS and Android juice jacking defenses have been trivial to bypass for years
ID: d80be569-1db3-5ad9-b34a-030e362d9eeb
STIX ID: report--d80be569-1db3-5ad9-b34a-030e362d9eeb
Feed Name: Ars Technica Security
Threat Score
A research report details "ChoiceJacking" attacks where a malicious USB-C charger uses USB Power Delivery data-role swaps and emulated input devices (USB/Bluetooth keyboards) to autonomously accept prompts and pair with a phone, then switch roles to become the USB host and obtain file read/write access; the technique succeeds across most tested Android and Apple devices in about 25–30 seconds and bypasses prior juice-jacking mitigations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
