iPhone Flaw Let Malware Run Even When Device Is Turned Off

May 17, 2022

Researchers at Germany’s Technical University of Darmstadt have discovered a vulnerability in the Bluetooth chip of the iPhone. The flaw allows attackers to run malicious firmware on an iPhone device even when the device is turned off.

The malware allows attackers to track the location of the phone or perform new functions even when the device is off.

Research helps to unravel the dangers of the low power mode (LPM) that gives room for the flaw on Apple iPhones. When an iPhone is turned off, it is not shut down completely, but the device runs in a low-power mode, which allows it to perform some actions, including locating the device if it is lost.

“The current LPM implementation on Apple iPhones is opaque and adds new threats. Since LPM support is based on the iPhone’s hardware, it cannot be removed with system updates. Thus, it has a long-lasting effect on the overall iOS security model. To the best of our knowledge, we are the first who looked into undocumented LPM features introduced in iOS 15 and uncover various issues.,” the researchers’ paper states.

While the always-on feature on the iPhone offers immense usage, it can also be exploited by hackers. Aside from allowing malware to run while the iPhone is turned on, exploits targeting LPM could also enable malware to operate with much more stealth, since LPM allows firmware to save battery power.

The sources for this piece include an article in ArsTechnica.

Top Stories

Related Articles

April 1, 2026 Anthropic has inadvertently exposed the full source code of its Claude Code tool for the second time more...

April 1, 2026 Cisco suffered a cyberattack after attackers used stolen credentials from a compromised developer tool to access its more...

March 30, 2026 Google has expanded its “Results about you” tool, allowing users to remove highly sensitive personal data, including more...

March 27, 2026 Microsoft is updating GitHub Copilot to train on real-world developer interactions, expanding beyond public code datasets to more...

Jim Love

Jim is an author and podcast host with over 40 years in technology.

Share:
Facebook
Twitter
LinkedIn