They demonstrated owning an Android device. The page says iPhones since iPhone 4 use the Broadcom WiFi SoC but otherwise makes no mention of whether the exploit works on iPhone.
Most mobile phones allow the baseband to have full access to the entire device, which is why an exploit of the baseband can turn into a full device compromise, but AIUI iPhones don't do this and keep the baseband as a separate unprivileged component, specifically to defend against this attack vector. So a baseband compromise might get you access to any data going over the baseband (e.g. phone calls, unencrypted data traffic, etc) but shouldn't get you access to the rest of the device.
Comments
They demonstrated owning an Android device. The page says iPhones since iPhone 4 use the Broadcom WiFi SoC but otherwise makes no mention of whether the exploit works on iPhone.
Most mobile phones allow the baseband to have full access to the entire device, which is why an exploit of the baseband can turn into a full device compromise, but AIUI iPhones don't do this and keep the baseband as a separate unprivileged component, specifically to defend against this attack vector. So a baseband compromise might get you access to any data going over the baseband (e.g. phone calls, unencrypted data traffic, etc) but shouldn't get you access to the rest of the device.