AirDrop and Quick Share Flaws Let Nearby Attackers Trigger Crashes and Bypass Checks
Six security holes have been discovered by two researchers in AirDrop and Quick Share, two wireless technologies that transfer information between adjacent devices without the need for cables or a shared network.
Without a tap or prompt, an attacker within wireless range can crash the sharing service on a Mac or iPhone that is set to receive from anyone with only a laptop and no prior connection.
The same study discovered Quick Share vulnerabilities in Google's Windows application that circumvent Samsung's session checks and cause a potentially exploitable crash.
Although the tested bugs affect particular implementations and versions, the two functionalities operate within an ecosystem of over five billion active Apple and Android devices.
The study is the first to separate bo...

