biometric-bypass

2 articles
sort: new top best
clear filter
0 5/10

Researcher discovered a biometric authentication bypass in WhatsApp on both Android and iOS by exploiting the chat transfer feature when switching to WhatsApp Business, allowing unauthenticated access to locked chats. Two separate $500 bounties were awarded for Android (July 2023) and iOS (January 2024) variants of the same vulnerability.

WhatsApp WhatsApp Business Meta Facebook Himanshu Bharti Arvind
medium.com · Himanshu Bharti · 19 hours ago · details
0 7/10

Bypass of Touch ID authentication in Evernote and Dropbox iOS apps using Frida runtime instrumentation to intercept and flip the LAContext evaluatePolicy boolean return value from false to true via the objection framework's ios ui biometrics_bypass command.

Evernote Dropbox Frida Objection checkra1n LAContext Secure Enclave Sahil Tikoo iPhone 6S iOS 13.3.1
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 19 hours ago · details