This archive report was first published on 13 August 2019.
Security researcher Mike Grover has developed a fake iPhone charger that can allow hackers to hijack a victim's computer. The charger, dubbed O.MG, looks like a genuine Apple Lightning cable and can be used to download and launch malware, remove devices from Wi-Fi networks, and even reconfigure systems.
According to Grover, the charger can be configured to act as a client to a nearby wireless network, allowing the hacker to access the system remotely. The current version requires the attacker to be within 300 feet of the victim, but Grover said a hacker could use a stronger antenna to reach further if necessary.
Apple recently announced that it will pay ethical hackers more than $1 million if they responsibly disclose dangerous security vulnerabilities to the firm. The new 'bug bounty' is designed to discourage security researchers from selling the bug to governments or contractors who intended to use it to hack state enemies, rather than fix it.
At last week's DefCon cybersecurity convention in Las Vegas, Grover revealed the cable, highlighting what he says has been an under-investigated area of mobile security. He is selling the cables for $200 each, but thankfully, the cable is only a prototype.