Apple has said time and again in the wake of the NSA snooping scandal that it cannot read user iMessages. But new research has shown that it's theoretically possible.
Security firm QuarksLab on Thursday issued a white paper describing a method by which a hacker or Apple itself could access iMessages. The white paper states thatand make them believe that their communication is secure. In order to do so, however, Apple would need to disrupt the encryption between communications and effectively change how iMessages works.
Back in June,discussing its "commitment to customer privacy" in the wake of revelations about the National Security Agency. The company said at the time that iMessages are kept entirely secure.
"Conversations which take place over iMessage and FaceTime are protected by end-to-end encryption so no one but the sender and receiver can see or read them," Apple wrote in June. "Apple cannot decrypt that data. Similarly, we do not store data related to customers' location, Map searches or Siri requests in any identifiable form."
In a statement sent to All Things Digital in response to the new research, Apple spokeswoman Trudy Muller said that Apple would have to jump through hoops to achieve access to iMessages and that it has no desire to do so.
"The research discussed theoretical vulnerabilities that would require Apple to re-engineer the iMessage system to exploit it, and Apple has no plans or intentions to do so," Muller told All Things Digital.
CNET has contacted Apple for further comment and will update this story when we have more information.
Apple - USE TAG
reading•Apple reasserts claim it doesn't want to spy on your iMessages
Nov 19•Apple's deal with Amazon: Good for you, but not this small seller (The 3:59, Ep. 491)
Nov 19•Black Friday 2018 smart home deals: Google Home Hub, Facebook Portal, Apple HomePod, Alexa gadgets and more
Nov 19•Black Friday 2018 deals: Surface Pro 6 for $800 and other PC, Chromebook, tablet sales
Nov 19•We took the iPhone XS and XR into 26 foot deep water. Only one survived