Skip to main content

Google lead says he’s ‘disappointed’ with Apple’s new iPhone security program

Apple’s new hacker-friendly iPhones offer security researchers unrestricted access to devices so that they can easily hunt down vulnerabilities and bugs. But Ben Hawkes, technical lead at Project Zero, a team at Google tasked with discovering security flaws, says he’s “pretty disappointed” with Apple’s latest security program.

Hawkes, in a Twitter thread, said that its team won’t be able to take advantage of Apple’s “Security Research Device” (SRD) iPhones since it appears to exclude security groups that have a policy to publish their findings in three months.

Recommended Videos

Every time a security researcher discovers a vulnerability, they offer the company a period of time to patch it before it is publicly reported. Project Zero, like many security researchers, has a 90-day policy. However, Apple has kept the control of the timeline to itself and developers who sign up for this new iPhone security program have to agree that they can’t disclose the issues they find until Apple allows them to.

“If you report a vulnerability affecting Apple products, Apple will provide you with a publication date (usually the date on which Apple releases the update to resolve the issue). Apple will work in good faith to resolve each vulnerability as soon as practical. Until the publication date, you cannot discuss the vulnerability with others,” notes the SRD program’s sign-up page.

Project Zero is one of the most widely regarded research groups, and since early 2015, it has reported over 350 security vulnerabilities to Apple.

“We’ll continue to research Apple platforms and provide Apple with all of our findings because we think that’s the right thing to do for user security. But I’ll confess, I’m pretty disappointed,” Hawkes added in a tweet.

Apple’s Security Research Device program has been long overdue and was first mentioned last year at the Black Hat security conference by the company’s head of security, Ivan Krstic. Over the past year or two, iPhone’s security has been found lax and compromised on multiple occasions. The new program ensures eligible developers don’t have to go out of their way to hack into iPhones for research purposes and allows them to access the device’s core components to unearth any potential vulnerabilities.

Security researchers can now sign up to request an SRD on a 12-month renewable basis.

Shubham Agarwal
Former Digital Trends Contributor
Shubham Agarwal is a freelance technology journalist from Ahmedabad, India. His work has previously appeared in Firstpost…
Apple iPhone owners urged to download new update now as a security must
An iPhone showing the Apple Password app.

The new iPhone software update, iOS 18.4, could be more critical than is being talked about when it comes to security.

While there are lots of new features added in the latest release, out yesterday, what's less talked about is the 62 security updates and fixes that roll out with this version. Some are quite serious.

Read more
Five reasons I’m excited for the new Google Pixel 9a
Person holds Pixel 9a in hand while sitting in a car.

Google has consistently ranked among the best smartphones for its affordable devices over the past six years, particularly with its Pixel A series. The Pixel 3a set the trend for major phone manufacturers to provide a compelling experience at half the price of flagship models, intensifying competition in this segment.

In the last three months, we’ve seen Samsung introduce the Galaxy A56 and Galaxy A36, which deliver features from the Galaxy S25 series at a significantly lower price point. Then there’s Apple, which entered the market with the iPhone 16e, priced considerably higher than its rivals. Additionally, Nothing offers the Nothing Phone 3a and Phone 3a Pro, arguably the best phones available at $379 and $459, respectively.

Read more
The iPhone 16e made me face a hard truth about mobile cameras
OuttaFocus: The iPhone 16e made me face a hard truth about mobile cameras.

I’ve spent a few days taking photos with the Apple iPhone 16e, which has a single camera on the back. One, solitary lens on the back of a current smartphone makes it look rather old school, and somewhat under equipped next to the multi-lens competition. But instead of feeling short changed by the iPhone 16e, it made me face a hard truth. I don’t need a wide-angle camera on my phone as much as I think I do.
One camera is better?

Wide-angle cameras have been a staple addition on smartphones since the days of the LG G5. Most have a 120-degree field of view, allowing us to capture photos of vistas to help convey scale in a way cameras with a narrower field of view cannot. It’s normal and accepted to have a “0.6x” mode in the camera app, and to not see it as an option on the iPhone 16e was quite jarring at first.

Read more