Live data from Hacker News

Apple Watch Ultra 2 Hacked

discussions.apple.com

21–30 of 182 posts

Re: Apple Watch Ultra 2 Hacked

#22

> they popped up the keyboard and typed “We are in control” This reads like bad hacking fiction, complete with the guy typing that wearing a Guy Fawkes mask. Why the hell would the (hypothetical) attacker lose precious time doing something like that.

Typing "We are in control" looks like kids bragging about their hacking skills. Not the usual hackers but who knows. Furthermore it means that the hack was not automated (yet.) A person was there, typing commands. Again, unusual.

On the other side hacking a watch is something that probably doesn't get unnoticed by the wearer if it must go through the UI. Are they subtler ways to get in control?

Re: Apple Watch Ultra 2 Hacked

#23

> they popped up the keyboard and typed “We are in control” This reads like bad hacking fiction, complete with the guy typing that wearing a Guy Fawkes mask. Why the hell would the (hypothetical) attacker lose precious time doing something like that.

Not too keen on the anecdote either, but with the Flipper Zero script kiddies around, you can never be too sure. Just a couple of months ago, you saw headlines of low-skill pairing dialog DOS attacks.

I believe HID-over-GATT was recently introduced to iOS (only a decade late), and implementation details could potentially be relevant here.

https://arstechnica.com/security/2023/11/flipper-zero-gadget...

Re: Apple Watch Ultra 2 Hacked

#24
post #20

This is so hard to believe that I simply don't. Either the user had a bad digitizer, and misread and/or hallucinated the "We are in control" message, or the entire story is made up. Perhaps a group of people working together to post "Hey me too!" stories? I'm not sure what the motive would be, though. Extraordinary claims require extraordinary evidence, and this is beyond believability.

I wonder how such hack would even work. The watch does have the option to control it remotely, through the iPhone accessibility options, but obviously this only works with the paired iPhone and not over the internet.

That multiple people reported a "spam" phone call right before the incident makes it look like they've found some zero day cellular exploit.

If this is for real I expect we'll hear more about it soon enough.

Re: Apple Watch Ultra 2 Hacked

#25

> they popped up the keyboard and typed “We are in control” This reads like bad hacking fiction, complete with the guy typing that wearing a Guy Fawkes mask. Why the hell would the (hypothetical) attacker lose precious time doing something like that.

> Why the hell would the (hypothetical) attacker lose precious time doing something like that.

Because it’s probably kids messing around.

Re: Apple Watch Ultra 2 Hacked

#26
post #14

TLDR: Their watch digitizer got messed up. Likely submerged it in water and it was all over. Case closed.

I was with you until "Likely submerged it in water and it was all over". Flagship phones and watches have been waterproof for many years now. I use my iphone and my apple watch in both the pool and the shower regularly with no issues

Re: Apple Watch Ultra 2 Hacked

#27
post #24
post #20

Earlier quoted context omitted.

I wonder how such hack would even work. The watch does have the option to control it remotely, through the iPhone accessibility options, but obviously this only works with the paired iPhone and not over the internet.

That multiple people reported a "spam" phone call right before the incident makes it look like they've found some zero day cellular exploit. If this is for real I expect we'll hear more about it soon enough.

Only one person reported the spam call in that thread, the Marcus-II commenter. Their comment shows up twice in the first page and once on the second page. No one else mentions the spam call.

Re: Apple Watch Ultra 2 Hacked

#28
post #24
post #20

Earlier quoted context omitted.

I wonder how such hack would even work. The watch does have the option to control it remotely, through the iPhone accessibility options, but obviously this only works with the paired iPhone and not over the internet.

That multiple people reported a "spam" phone call right before the incident makes it look like they've found some zero day cellular exploit. If this is for real I expect we'll hear more about it soon enough.

The baseband processor is entirely separate, with some basic commands and responses communicated from the phone's CPU to the baseband, so even this explanation is suspect.

Re: Apple Watch Ultra 2 Hacked

#29
I wonder why most of the comments take it very casually and say may be issue with digitizer/ghost touch. Had it been any other OEM, this would have been such a big issue with anecdotes of why people trust apple products.

Re: Apple Watch Ultra 2 Hacked

#30
Modern software is bad enough that I wouldn't be surprised if this is true, but the modern stock marked is also detached from reality enough, that I wouldn't be surprised if this was an attempt at market manipulation either.
Post reply on HN