Earlier quoted context omitted.
>Especially if they claim a vulnerability that's exploitable by only sending a text. For some time, it was possible to crash some iPhones by texting them a Taiwanese flag emoji (which was censored by mainland China). https://www.cultofmac.com/561635/apples-taiwanese-flag-ban-l... I don't know offhand if this was a buffer overflow or something else, but if you can crash the OS with a text, you . could likely exploit i…
> I don't know offhand if this was a buffer overflow or something else It was an issue when the device's local was set incorrectly and would return NULL, leading to a crash in CFStringCompare.
'Karma': A hack used by the UAE to break into iPhones of foes
211–220 of 238 posts
Re: 'Karma': A hack used by the UAE to break into iPhones of foes
#212Earlier quoted context omitted.
> I’m not trying to accomplish some absolute ideological position You did. Any attempt at right of privacy must be mercilessly crushed with maximum force
That’s clearly not how the US (or anywhere) operates: the constitution itself negotiates terms between privacy and security — privacy is not and never has been an absolute right. Further, I’m actually trying to increase privacy, by negotiating a compromise that’s workable for society as a way to remove the excuses bad actors are using, and shift the legal framework around the topic. That’s not an absolute ideological…
Re: 'Karma': A hack used by the UAE to break into iPhones of foes
#213Earlier quoted context omitted.
I was not trying to suggest that, I was trying to convey that once a spy agency has remote access (sanctioned or otherwise) we can see by this example how it is proliferated and abused.
> I was not trying to suggest that You were by simply stating it. It's the same type of saying-but-not-saying lines that the media uses like "if this allegation proves to be true" or similar such phrases. The fact that you state it suggests to the reader that people think it. If it was an honest mistake in wording on your part that's one thing, but you should probably avoid using such phrasing. Look at all the people…
In this case, it doesn't matter whether or not Apple even had a hand in it. The issue is that security exploits are security exploits, regardless if intentionally designed or not.
Re: 'Karma': A hack used by the UAE to break into iPhones of foes
#214Earlier quoted context omitted.
The description of the hack fits StageFright perfectly[1], which was exactly what it did. The sources may have just changed the affected platform to iOS to gain some traction. [1] https://en.wikipedia.org/wiki/Stagefright_(bug)
A stagefright style iOS bug was reported around the time this took place https://9to5mac.com/2016/07/22/stagefright-mac-iphone-ipad/
Re: 'Karma': A hack used by the UAE to break into iPhones of foes
#215Earlier quoted context omitted.
TFA says they need to send the target a text message. The exploit must be something like a buffer overflow in iMessage. Which we know bugs like this have been fixed. Remember the text of death which could crash any iPhone from a couple years ago?
Are you thinking of the "Stagefright" bug that did RCE via SMS on Android devices? Or maybe the Chinese censorship code that crashed iOS when people sent the Taiwanese flag emoji? 🇹🇼
Re: 'Karma': A hack used by the UAE to break into iPhones of foes
#216Earlier quoted context omitted.
> But their mission isn’t to own every device — it’s to own a select few, probably on the order of hundreds or thousands a year. This is patently untrue. Snowden and much more have made it absolutely, unambiguously clear that national spy agencies do wish to gather and collect absolutely and every bit of information possible about their own law-abiding citizens as well as those here that are not.
Could you cite anything supporting that? I followed the Snowden leaks quite closely, but don’t remember anything close to unambiguously showing that.
https://en.wikipedia.org/wiki/Global_surveillance_disclosure...
Re: 'Karma': A hack used by the UAE to break into iPhones of foes
#217Earlier quoted context omitted.
I can imagine there's plenty of "between the lines" stuff you learn as a CIA agent that, while not specifically classified, wouldn't be something you want going to other nations.
I think maybe your opinions on this are largely influenced by movies and not materials the government actually releases. Can you give me an example of the kind of unclassified information these people should be prevented from sharing?
Re: 'Karma': A hack used by the UAE to break into iPhones of foes
#218Earlier quoted context omitted.
Could you cite anything supporting that? I followed the Snowden leaks quite closely, but don’t remember anything close to unambiguously showing that.
Please review the following with explicit citations. https://en.wikipedia.org/wiki/Global_surveillance_disclosure...
Re: 'Karma': A hack used by the UAE to break into iPhones of foes
#219Earlier quoted context omitted.
So, "provably secure" is a catch-22. If something can be created to be provably secure, then it can be an argument for government legislating a back door. "You said it's provably secure. Now you can give us provably secure access too without hurting your customer's privacy or security, because they're protected by the 4th amendment." I don't think this can be solved by technology, I think this comes down to politics…
The goal of probably secure computing would be merely to (hopefully) extend the mathematical certainties of cryptography to computers and software. The politics of cryptography wouldn’t change, they would only be broadened. Intentional back doors would still be possible, and the ramifications of building them would be just as dire. So the best provable security could do would be to eliminate security holes like buffe…
Re: 'Karma': A hack used by the UAE to break into iPhones of foes
#220Whether or not this hack was developed with the help of Apple (a “backdoor”) or by a third-party exploit, this is exactly what a “golden key” looks like after it gets in the wild. An espionage tool developed by a major world power proliferates to totalitarian regimes, aided and operated by ex-NSA agents on the payroll, to compromise human rights activists and the political opposition. If ever there was proof that our…
Nobody credible believes for a second that Apple was involved, for whatever it’s worth.
Your implication that doubting Apple is incredulousy, is ludicrous! Why is Apple so damn special?
At this point, there isn't any evidence that Apple is involved, and yes, they go on a PR blitz to focus on privacy and security, and get hit pieces published on how "privacy is a feature on the iPhone". But the history of backdoors suggests that no one voluntarily reveals them (Intel, Cisco, Juniper,...). In many cases, how the backdoors made their way in is a closely guarded secret, specifically to enable plausible deniability.
It's best not to put a company on a pedestal, like some religious cult.