一天一递送,远离 AirTag:Apple AirTags 实用中继攻击
密码学与安全
2026-04-15 v2 计算机与社会
摘要
Apple AirTags 使用 Apple 的 Find My 网络:当附近的 iDevice 检测到丢失的标签时,匿名地转发加密的位置报告给 Apple,标签所有者随后可获取该位置以定位物品。这种加密保护了隐私——找东西者和 Apple 都无法了解所有者的身份——但也防止了 Apple 验证收到报告的正确性。我们展示了这一设计缺陷可被利用的方式:通过中继攻击,我们可以注入被操控的位置报告,使 Find My 服务报告一个丢失 AirTag 的虚假位置。相同技术也可用于拒绝目标标签的恢复(聚焦 DoS),因为所有者被误导其物品所在之处。
关键词
引用
@article{arxiv.2604.10138,
title = {A Relay a Day Keeps the AirTag Away: Practical Relay Attacks on Apple's AirTags},
author = {Gabriel K. Gegenhuber and Leonid Liadveikin and Florian Holzbauer and Sebastian Strobl},
journal= {arXiv preprint arXiv:2604.10138},
year = {2026}
}
备注
Poster presented at ACSAC 2025. Relay experiments were originally conducted in 2022 by Sebastian Strobl (bachelor thesis) and subsequently repeated and reproduced in 2025 by Leonid Liadveikin (university project)