Hacker News new | ask | show | jobs
by ballenf 976 days ago
I get the desire to be compensated for the work that went into reproducing the Guided Access escape, but I have to agree that this is not a security issue.

Guided Access controls are in the Accessibility settings. Apple has marketed the feature as one of convenience.

And I think a hard reboot, at least this used to be true, will also exit the mode. (Hold power and home button or power and volume button combo.)

2 comments

> a hard reboot, at least this used to be true, will also exit the mode.

Reboot "exit" to the passcode entry screen is less bad than the unlocked phone in this escape.

Two comments on that:

1) I wonder if the exploit here works with passcode lock on? I suspect it does not, because there’s no mention of passcode entry in the steps.

2) My rebuttal was going to be ‘but most kiosk devices don’t allow access to the power button’ - but this exploit requires that too.

For an accessibility feature, it’s extraordinarily inaccessible. Turning it on results in an awful UI involving masking off parts of the screen. No way to invert the selection. Settings aren’t saved. Choosing a password is mandatory (why can’t the normal lock screen password be a default?). And trying to turn on Guided Access at all is far from 100% reliable.

I’ve broken out of it by the extremely complex protocol of swiping up by accident, although not recently. Maybe it’s been fixed.