Leaked Docs Show What Phones Cellebrite Can (and Can’t) Unlock

The leaked April 2024 documents, obtained and verified by 404 Media, show Cellebrite could not unlock a large chunk of modern iPhones.

Cellebrite, the well-known mobile forensics company, was unable to unlock a sizable chunk of modern iPhones available on the market as of April 2024, according to leaked documents verified by 404 Media.

The documents, which also show what various Android handsets and operating system versions Cellebrite can access, provide granular insight into the very recent state of mobile forensic technology. Mobile forensics companies typically do not release details on what specific models their tools can or cannot penetrate, instead using vague terms in marketing materials. The documents obtained by 404 Media, which are given to customers but not published publicly, show how fluid and fast moving the success, or failure, of mobile forensic tools can be, and highlights the constant cat and mouse game between hardware and operating manufacturers like Apple and Google, and the hacking companies looking for vulnerabilities to exploit.

Analysis of the documents also comes after the FBI announced it had successfully gained access to the mobile phone used by Thomas Matthew Crooks, the suspected shooter in the attempted assassination of former President Donald Trump. The FBI has not released details on what brand of phone Crooks used, and it has not said how it was able to unlock his phone.

The documents are titled “Cellebrite iOS Support Matrix” and “Cellebrite Android Support Matrix” respectively. An anonymous source recently sent the full PDFs to 404 Media, who said they obtained them from a Cellebrite customer. GrapheneOS, a privacy and security focused Android-based operating system, previously published screenshots of the same documents online in May, but the material did not receive wider attention beyond the mobile forensics community.

For all locked iPhones able to run 17.4 or newer, the Cellebrite document says “In Research,” meaning they cannot necessarily be unlocked with Cellebrite’s tools. For previous iterations of iOS 17, stretching from 17.1 to 17.3.1, Cellebrite says it does support the iPhone XR and iPhone 11 series. Specifically, the document says Cellebrite recently added support to those models for its Supersonic BF [brute force] capability, which claims to gain access to phones quickly. But for the iPhone 12 and up running those operating systems, Cellebrite says support is “Coming soon.”

A SECTION OF THE IOS DOCUMENT. IMAGE: 404 MEDIA.

The iPhone 11 was released in 2019. The iPhone 12 was launched the following year. In other words, Cellebrite was only able to unlock iPhones running the penultimate version of iOS that were released nearly five years ago.

The most recent version of iOS in April 2024 was 17.4.1, which was released in March 2024. Apple then released 17.5.1 in May. According to Apple’s own publicly released data from June, the vast majority of iPhone users have upgraded to iOS 17, with the operating system being installed on 77 percent of all iPhones, and 87 percent of iPhones introduced in the last four years. The data does not break what percentage of those users are on each iteration of iOS 17, though.

Cellebrite offers a variety of mobile forensics tools. That includes the UFED, a hardware device that can extract data from a physically connected mobile phone. The UFED is a common sight in police departments across the country and world, and is sometimes used outside of law enforcement too. Cellebrite also sells Cellebrite Premium, a service that either gives the client’s UFED more capabilities, is handled in Cellebrite’s own cloud, or comes as an “offline turnkey solution,” according to a video on Cellebrite’s website.

That video says that Cellebrite Premium is capable of obtaining the passcode for “nearly all of today’s mobile devices, including the latest iOS and Android versions.”

That claim does not appear to be reflected in the leaked documents, which show that, as of April, Cellebrite could not access from locked iOS phones running 17.4.

The second document shows that Cellebrite does not have blanket coverage of locked Android devices either, although it covers most of those listed. Cellebrite cannot, for example, brute force a Google Pixel 6, 7, or 8 that has been turned off to get the users’ data, according to the document. The most recent version of Android at the time of the Cellebrite documents was Android 14, released October 2023. The Pixel 6 was released in 2021.

A SECTION OF THE ANDROID DOCUMENT. IMAGE: 404 MEDIA.

Cellebrite confirmed the authenticity of the documents in an emailed statement to 404 Media. “Similar to any other software company, the documents are designed to help our customers understand Cellebrite’s technology capabilities as they conduct ethical, legally sanctioned investigations—bound by the confines of a search warrant or an owner’s consent to search. The reason we do not openly advertise our updates is so that bad actors are not privy to information that could further their criminal activity,” Victor Ryan Cooper, senior director of corporate communications and content at Cellebrite, wrote.

“Cellebrite does not sell to countries sanctioned by the U.S., EU, UK or Israeli governments or those on the Financial Action Task Force (FATF) blacklist. We only work with and pursue customers who we believe will act lawfully and not in a manner incompatible with privacy rights or human rights,” the email added. In 2021 Al Jazeera and Haaretz reported that a paramilitary force in Bangladesh was trained to use Cellebrite’s technology.

Cellebrite is not the only mobile forensics company targeting iOS devices. Grayshift makes a product called the GrayKey, which originally was focused on iOS devices before expanding to Android phones too. It is not clear what the GrayKey’s current capabilities are. Magnet Forensics, which merged with Grayshift in 2023, did not immediately respond to a request for comment.

Cellebrite’s Android-focused document also explicitly mentions GrapheneOS in two tables. As well as being an operating system that the privacy-conscious might use, 404 Media has spoken to multiple people in the underground industry selling secure phones to drug traffickers who said some of their clients have moved to using GrapheneOS in recent years.

Daniel Micay, founder of GrapheneOS, told 404 Media that GrapheneOS joined a Discord server whose members include law enforcement officials and which is dedicated to discussions around mobile forensics. “We joined and they approved us, with our official GrapheneOS account, but it seems some cops got really mad and got a mod to ban us even though we didn’t post anything off topic or do anything bad,” Micay said.

There is intense secrecy around the community of mobile forensics experts that discuss the latest unlocking tricks and shortcomings with their peers. In 2018 at Motherboard, I reported that law enforcement officials were trying to hide their emails about phone unlocking tools. At the time, I was receiving leaks of emails and documents from inside mobile forensics groups. In an attempt to obtain more information, I sent public records requests for more emails.

“Just a heads up, my department received two public records request[s] from a Joseph Cox at Motherboard.com requesting 2 years of my emails,” a law enforcement official wrote in one email to other members. I learned of this through a subsequent leak of that email. (404 Media continues to receive leaks, including a recent set of screenshots from a mobile forensics Discord group).

Google did not respond to a request for comment. Apple declined to comment.

  • jet@hackertalks.com
    link
    fedilink
    English
    arrow-up
    20
    arrow-down
    1
    ·
    4 months ago

    The main takeaway from this, is not that these phones are absolutely secure now and forever, it’s just that the newer phones are secure… For now.

    Most security just buys you time. Might be months, might be years. But it just buys you time.

    This is demonstrated that basically any phone older than 2 years is completely breakable. It’s an arms race, and if you own a phone you become a static target.

    So if data is absolutely critical, it shouldn’t rely on a low entropy password dependent on the secure element of a phone. That could be fine for things that are ephemeral, things you can change from the cloud, but not say the KFC secret recipe

    • disguy_ovahea@lemmy.world
      link
      fedilink
      arrow-up
      20
      arrow-down
      2
      ·
      edit-2
      4 months ago

      That’s simply not true. The chart clearly states that Cellebrite cannot break encryption on any iPhone that can run the current version of iOS. That includes any iPhone made in the last six years.

      What this illustrates is the importance keeping your phone’s software updated for maximum security. New hardware is not necessary.

      • jet@hackertalks.com
        link
        fedilink
        English
        arrow-up
        15
        ·
        4 months ago

        Scenario: You have the super secret KFC recipe on your phone. I steal your phone and wait until the cracking tools have caught up to the version that was on your phone. All I have to do is keep it in storage. While your phone is in storage its not getting updates.

        By keeping your phone updated you have EXTENDED the time phone security can keep an attacker out of your phone, but in time they will be able to get into it.

        • disguy_ovahea@lemmy.world
          link
          fedilink
          arrow-up
          7
          ·
          edit-2
          4 months ago

          I see your point. The attacker would need to be far more savvy than police.

          They’d need to keep it charged to prevent powering off and activating the connection access denial of the Secure Enclave, while keeping the iPhone in a Mylar bag to prevent any nearby iOS devices from relaying the Find My remote erase request.

          With enough time, a vulnerability may be found for that version of iOS.

          • jet@hackertalks.com
            link
            fedilink
            English
            arrow-up
            3
            ·
            4 months ago

            Probably not powered on for years. The battery would die at some point. But yes the rest of your statement I agree with, there are protocols for cold case phones, they’re just stored waiting for the cracking to catch up

            • disguy_ovahea@lemmy.world
              link
              fedilink
              arrow-up
              3
              ·
              4 months ago

              Cellebrite uses Lightning/USB-C port access to bypass passcode security. Once iPhone is powered off, the Secure Enclave will deny port access until the passcode is entered. It’s not impossible, but it’ll certainly take far longer than if they keep the iPhone charging while they wait for an exploit.

              • jet@hackertalks.com
                link
                fedilink
                English
                arrow-up
                1
                arrow-down
                1
                ·
                4 months ago

                Do they remove/disconnect the battery in this mode? If not wont the battery eventually balloon?

                • disguy_ovahea@lemmy.world
                  link
                  fedilink
                  arrow-up
                  2
                  ·
                  4 months ago

                  It’s fine if it happens. Balooning is just a chemical breakdown of the battery. It won’t explode. Disconnecting the battery while keeping the device connected to power runs a high risk of shorting, potentially causing component damage.

                • BearOfaTime@lemm.ee
                  link
                  fedilink
                  arrow-up
                  2
                  arrow-down
                  1
                  ·
                  4 months ago

                  Simply not charging to 100% constantly will prevent this.

                  I’ve had phones on a charger for years, using a simple timer, so it never gets to 100%. Pretty easy to do.

                  • mipadaitu@lemmy.world
                    link
                    fedilink
                    English
                    arrow-up
                    2
                    ·
                    4 months ago

                    Most phones that are plugged in 100% of the time allow the battery to drop to 80% and then hold there.

                    It’s pretty new, and only starts after a week or so plugged in.

          • jet@hackertalks.com
            link
            fedilink
            English
            arrow-up
            2
            ·
            3 months ago

            100%

            Just like door locks and safes, they just buy time. Hopefully whatever data was seized in 2020 isn’t going to be relevant in 2024

        • Possibly linux@lemmy.zip
          link
          fedilink
          English
          arrow-up
          1
          ·
          4 months ago

          Chances are they don’t need to just randomly guess keys. They can use stored data and known data such as birthdays and passwords to online services

    • qprimed@lemmy.ml
      link
      fedilink
      English
      arrow-up
      3
      ·
      4 months ago

      I know this may be pedantic, but

      it’s just that the newer phones are secure… For now.

      that statement suggests that other recovery techniques (e.g. hardware decaping, state zero-days, etc), dont already make absolutely current devices insecure.

      it would not surprise me that a TLA with physical access could not recover enclave information and completely expose naked storage in 2 days or less - its just a matter of how urgent is. a former president nearly loosing their head might count as pretty damn urgent. meddle with the us power structure and it will protect itself - if not the particular individuals.

      if you noticed any power dips in your area right after the attempt on trump, that was probably the local NSA cluster firing up.

      • jet@hackertalks.com
        link
        fedilink
        English
        arrow-up
        4
        ·
        edit-2
        4 months ago

        In the context of what we know is commercially available, the new phones are reasonably secure, for now

        If whatever your doing is worth decapping the chip and scanning the underlying electron state, then I’d be more worried about your kneecaps then your phone.

        dont already make absolutely current devices insecure.

        We don’t have any evidence for this statement, and we can never prove the negative (that a device is absolutely secure).

        Depends on your threat model of course, but given the data we have available, the advice still stands, use a modern phone directly from google/apple and keep it updated.

        • Socsa@sh.itjust.works
          link
          fedilink
          arrow-up
          2
          ·
          edit-2
          4 months ago

          Right, there is no lazy replacement for good opsec. If you are facing a state actor then you need to assume your device storage can be accessed.

        • qprimed@lemmy.ml
          link
          fedilink
          English
          arrow-up
          1
          ·
          edit-2
          4 months ago

          We don’t have any evidence for this statement, and we can never prove the negative (that a device is absolutely secure).

          does anyone have info on crooks’s phone make/model (and an OS version guess)? I have not seen this anywhere and, if it is not already in the public domain, why?

          FBI says they got the phone contents in the clear. that gives some boundsfor both known (easy) potential compromises and “oh, fuck.”

          edit: typo

          edit 2: still no detail but I found this…

          The phone was a relatively new model, which can be harder for law enforcement to access than old phones because of newer software, according to technology experts. In many federal investigations, it can take hours, weeks or months to open a suspect’s phone.

          https://www.washingtonpost.com/nation/2024/07/16/thomas-crooks-phone-motive-parents-trump-shooting/

          unless this information is now a state secret, we may learn more.

            • qprimed@lemmy.ml
              link
              fedilink
              English
              arrow-up
              3
              ·
              4 months ago

              couldnt read the whole article, but I would say, this is an “oh, fuck.” moment for a lot of people

              The FBI tries and cannot unlock a recent phone. they allegedly turn to a private company for emergency access and they are in within hours(?)

              I think many people should reevaluate their threat model and mitigations after this. perhaps this changes nothing for you. perhaps it changes everything for you.