”The GoFetch app connects to the targeted app and feeds it inputs that it signs or decrypts. As its doing this, it extracts the app secret key that it uses to perform these cryptographic operations. This mechanism means the targeted app need not perform any cryptographic operations on its own during the collection period.”

Replies (1)

basso's avatar
basso 1 year ago
I feel like these unpatchable vulns pop up in the news cycle every few years and then get patched and disappear. Any word from Apple?