Live data from Hacker News

Apple Watch Ultra 2 Hacked

discussions.apple.com

161–170 of 182 posts

Re: Apple Watch Ultra 2 Hacked

#162
I believe it may be the ghost touch issue like others mention, but with the addition that watchOS 10.3 dropped a week or two prior to these reports.

Possible it tried to do something about the ghost touch and made it worse in a subset of devices.

That feels more likely than a bunch of random people all being targeted with no other commonality like region or status

Re: Apple Watch Ultra 2 Hacked

#163

Earlier quoted context omitted.

My Apple Watch 3 was suppose to be safe to swim in. But it did mess up after going swimming in it a few times. Admittedly, this was last year and the watch was already 4 years old.

I think you just got unlucky. It's a mixed bag with "waterproof" phones, but [flagship] smartwatches should be pretty solid. My GF and I both had Galaxy Active watches, now we have Apple watches, we go swimming and kayaking with them, zero issues.

I’m not complaining. The watch was over four years old. It is what it is. If it were newer, I would have been much less non chalant about it.

At first it started randomly calling 911 and then it just stopped charging altogether.

Re: Apple Watch Ultra 2 Hacked

#164

Earlier quoted context omitted.

> I don't know what the catalyst for this was, but a lot of 20 years olds and younger seem to use the word hacked so casually. It is a mechanism of shifting responsibility. If your password is "1234" and you gave it away to a totally legit MS support center employee that called you recently because MS has detected that your iPhone has a virus, then it is on you. But if North Korean hackers compromised your watch via…

Same thing how all company breaches are attributed to "sophisticated state sponsored actors" even though most of the time the company provides zero evidence it wasn't a single bored hacker in their moms basement.

Or poor it policies !!

Re: Apple Watch Ultra 2 Hacked

#165

This is so hard to believe that I simply don't. Either the user had a bad digitizer, and misread and/or hallucinated the "We are in control" message, or the entire story is made up. Perhaps a group of people working together to post "Hey me too!" stories? I'm not sure what the motive would be, though. Extraordinary claims require extraordinary evidence, and this is beyond believability.

It's pretty obviously fake. A bunch of "level 1" (new) users, all with the same story? They literally mention the exact time & date in the same style, and mention the 1-minute lockout in the same way as well. Two of them use the same timestamp even, down to the minute. Also, something I noticed working for large orgs with over 100K staff and 1M users: An appreciable fraction of the human population is simply mentally…

That fraction is about 4%: https://slatestarcodex.com/2013/04/12/noisy-poll-results-and...

Re: Apple Watch Ultra 2 Hacked

#167

I don't know what the catalyst for this was, but a lot of 20 years olds and younger seem to use the word hacked so casually. I read it all the time, "my insta was hacked", etc. I would really like to know if hacking is as common as it is reported rather than a successful phishing campaign, a simple issue of forgotten password or getting locked out of email, account ban for rule violation, or something else entirely u…

I mean, there is Apple Watch Mirroring, which does allow remote control of an Apple Watch for accessibility purposes. If they were able to somehow exploit that, I would consider it hacking.

I sort of hate how this thread immediately rallied around “must be crazy people hallucinating” and I hope Apple takes the reports a bit more seriously & investigates.

Edit: I do agree that passwords guessed or phished doesn’t count in my mind as hacking.

Re: Apple Watch Ultra 2 Hacked

#168

Earlier quoted context omitted.

Apple Employees can certainly access your devices remotely, I have seen it happening with iPhone, I don’t know about Watch. Nevertheless, this does seem like an anti-Apple campaign.

Can you be more specific about when an Apple employee remotely accessed your iPhone. It would almost certainly would be illegal.

I’ve had this happen when I called in a support request for some iOS issue I had. Their interface has all the devices on your Apple ID, and they can enable screen sharing on any of them after you accept it via a notification. I have to admit, it must be a lot better for the support experience as opposed to trying to verbally describe what’s going on.

Re: Apple Watch Ultra 2 Hacked

#169

I don't know what the catalyst for this was, but a lot of 20 years olds and younger seem to use the word hacked so casually. I read it all the time, "my insta was hacked", etc. I would really like to know if hacking is as common as it is reported rather than a successful phishing campaign, a simple issue of forgotten password or getting locked out of email, account ban for rule violation, or something else entirely u…

If the original account is to be believed, they did not know the owner’s passcode/PIN. The attackers gained remote access to a device without the passcode/PIN. This suggests it was not phishing. It sounds like a legitimate usage of the word “hacked” to me. Maybe not the most critical vulnerability because they did not gain full access, but they managed to gain some level of control of the owner’s watch without their…

[deleted]

Re: Apple Watch Ultra 2 Hacked

#170

I don't know what the catalyst for this was, but a lot of 20 years olds and younger seem to use the word hacked so casually. I read it all the time, "my insta was hacked", etc. I would really like to know if hacking is as common as it is reported rather than a successful phishing campaign, a simple issue of forgotten password or getting locked out of email, account ban for rule violation, or something else entirely u…

My Skype account was hacked many years ago. It started with me getting an email about some credits being added (from my credit card that was in the system). When I logged onto Skype, I had a new name, and a new contact, both of which were Ivan something. I immediately started chatting with Ivan, who told me that there was a weakness in the Skype login security, which he tried to exploit. I changed my password to anot…

Check if you have an old email or phone number tied to the account. Attackers can get Microsoft to send one-time codes to them, no matter what else you have set up on the account. Worse, it seems this feature was added some time ago and every account was automatically opted into it.

I was getting dozens of one-time code emails per day caused by login attempts via what must have been Tor. None of them were successful logins, but it got me worried. They seem to have stopped after I reworked my account's requirements to include OTP, but now every couple of days my Skype app posts an error that it couldn't log in, when it is clearly logged in just fine. Even that OTP can't be a standard one, it has to be Microsoft authenticator.

Microsoft has been improving in a lot of ways lately but this is not just embarrassingly bad, it's substantially worse than it was a few years ago.

Post reply on HN