Live data from Hacker News

A deep dive into iOS Exploit chains found in the wild

googleprojectzero.blogspot.com

101–110 of 202 posts

Re: A deep dive into iOS Exploit chains found in the wild

#102
post #91

Earlier quoted context omitted.

> The most obvious suspect is China: they have gulag camps in Xinjiang where Uygurs are interned, up to 1.1 million according to the UN[^2]. The dominant ethnic in China is Han, and Uygurs have been oppressed for decades. But China doesn't need exploits to spy on their iPhone-using citizens, right? Because Apple has been cooperating with the Chinese government.

Do you have some evidence of that? Aside from iCloud hosting and App Store censorship, I haven’t heard of a case where they’ve weakened security for the Chinese government.

I must have been thinking of iCloud.

Re: A deep dive into iOS Exploit chains found in the wild

#104

Any way to check if my iPhone is affected? I'm still on 12.1.2, which was released before the fix, so if I'm affected, I should still have the malware on my device. I'm not opposed to jailbreaking to check.

The implant binary does not persist on the device; if the phone is rebooted then the implant will not run until the device is re-exploited when the user visits a compromised site again. [1]

1. https://googleprojectzero.blogspot.com/2019/08/implant-teard...

Re: A deep dive into iOS Exploit chains found in the wild

#105

Any way to check if my iPhone is affected? I'm still on 12.1.2, which was released before the fix, so if I'm affected, I should still have the malware on my device. I'm not opposed to jailbreaking to check.

If you have restarted your iPhone at any point, it will wipe the malware.

Re: A deep dive into iOS Exploit chains found in the wild

#106
post #86

Earlier quoted context omitted.

What’s the relation to the first link though? That looks like an old twitter thread.

Did you look at the screenshot and read the translation? Appears to be a real-time tracking database of Uighurs...

In the first link? Yes, but what does the first link have to do with this attack? I see nothing that ties the two together. Am I missing something in the Google link that relates to that? The list of target services doesn’t even look similar.

Re: A deep dive into iOS Exploit chains found in the wild

#107
post #91

Earlier quoted context omitted.

Do you have some evidence of that? Aside from iCloud hosting and App Store censorship, I haven’t heard of a case where they’ve weakened security for the Chinese government.

"Aside from iCloud hosting" is a pretty big "aside"

It's a pretty big aside but it is not iOS

Re: A deep dive into iOS Exploit chains found in the wild

#109
Why don't these Nick Burns try-hards at Google provide the names of the websites? That would be the responsible thing to do, instead of adding to the hysteria by preventing people from getting a better idea as to whether they might have been affected by these exploits....Uh, You're Welcome!

Re: A deep dive into iOS Exploit chains found in the wild

#110
post #78
post #54

Earlier quoted context omitted.

> 2FA makes it profoundly more difficult to compromise an account. Just because the attacks are dumb. If your computer is pwned, it should wait for you to 2FA, and then when you "log out"-- don't, do malicious stuff instead.

That's why 2FA should be performed at transaction confirmation time for sensitive operations, not just at login or periodically.

[deleted]
Post reply on HN