Earlier quoted context omitted.
> you should be using Secure UDID or something similar As an app developer, does this give me some benefit over just generating and saving a random UUID on first launch?
If you save the random number, what happens when they wipe the device and reinstall your app? No way to get that original number back. Secure UDID is deterministic, so you'd get the same ID, and can resume the original session.
AntiSec leaks 1,000,001 Apple UDIDs, Device Names/Types
241–250 of 279 posts
Re: AntiSec leaks 1,000,001 Apple UDIDs, Device Names/Types
#242Earlier quoted context omitted.
I run Cydia, and have determined only 16.7% of the UDIDs in that file are from jailbroken devices: I thereby do not believe that whatever managed to get this data is anywhere in our ecosystem.
Do you have similar information stored about the Cydia users? How many users do you have?
Re: AntiSec leaks 1,000,001 Apple UDIDs, Device Names/Types
#243Earlier quoted context omitted.
I run Cydia, and have determined only 16.7% of the UDIDs in that file are from jailbroken devices: I thereby do not believe that whatever managed to get this data is anywhere in our ecosystem.
Doesn't 16% sounds above the average ? Could it be related to app warez on jailbroken devices, somehow ?
Re: AntiSec leaks 1,000,001 Apple UDIDs, Device Names/Types
#244Earlier quoted context omitted.
I doubt that they are a single app's data. Look at the repeat of certain Device names (try "Abo Mossa") and check their UDIDs - those UDIDs show an incremental pattern in their first 3 digits. This tells me: (a) those devices were bought in bulk and (b) those devices were never sold to one person - since the Device names were unchanged [assumption is that a regular customer cannot own so many devices]. I just don't s…
The UDID is a SHA1 of a few fields (including a couple MAC addresses): we actually know the exact algorithm; if you are seeing patterns in them it is either a trick your brain is playing on you or a trick the user is playing on you (some people modify their UDID occasionally to keep themselves from being tracked by apps).
Re: AntiSec leaks 1,000,001 Apple UDIDs, Device Names/Types
#245Can anyone who can confirm they're on the list confirm that was one of their apps?
Re: AntiSec leaks 1,000,001 Apple UDIDs, Device Names/Types
#246Earlier quoted context omitted.
There's always one person in the comments section that leaves a comment that couldn't be any further disconnected from the discussion. As pointed out you're getting confused with the CIA, it even quite clearly says in the Wikipedia article you linked: "...a failed assassination attempt organized by the American CIA and British intelligence" Lets not make this situation out to sound worse than it is. The FBI having ac…
> you're getting confused with the CIA No I am not. I was talking about the executive branch of the our government. > Lets not make this situation out to sound worse than it is. I was commenting on the assertion that this is 'illegal' and thus how could FBI possibly do this. And my response was that it seems illegality isn't exactly stopping anyone, be it FBI, CIA or other agency.
...of course, the current administration insists that those are legal, but because they refuse to release a legal argument defending the practice, the best explanation they've given is 'Just trust us, okay?'. Not sure how that would hand up in a court of law.
Re: AntiSec leaks 1,000,001 Apple UDIDs, Device Names/Types
#247Earlier quoted context omitted.
Apple has everything to do with this. They're the ones who decided to put UDIDs on all their devices to begin with. And they know they've royally screwed up too - that's why they've deprecated UDIDs in iOS 5 and have started rejecting applications that access it. But that hardly fixes the problem since everyone will just use the Bluetooth or wireless MAC addresses instead - its not guaranteed to be unique, but close…
So, essentially, you're saying whatever Apple does or doesn't do is a bad decision in the end since it would always fall back to the hardware identifiers, then. Right?
Re: AntiSec leaks 1,000,001 Apple UDIDs, Device Names/Types
#248Re: AntiSec leaks 1,000,001 Apple UDIDs, Device Names/Types
#249Earlier quoted context omitted.
>Is Apple willingly sharing personal information with the FBI through the NCFTA? Define "willingly."
It wouldn't be "willingly". But If Apple was presented with an order from a court, then yes, they'd have no choice. They could fight it; but they'd lose, depending on the reason. Frankly the only reason would be some terrorism angle. But those types of actions are rare.
Re: AntiSec leaks 1,000,001 Apple UDIDs, Device Names/Types
#250Earlier quoted context omitted.
Pretty sure that a smart burglar could figure out approximate addresses of people who own iPhones by looking at publicly available Instagram or Twitter or Facebook or Flickr locations. Not to mention people telling the world "I'm camping this weekend" which a burglar hears as "I'll be gone all weekend, steal my things!"
I think a smart burglar would just look at any commonly available database of home sales. Anybody who has moved in the last few years into a more-expensive-than-average house should correlate much better with valuables than iPhones. However, I'd hope any criminal with brains like that would find something to do that has higher yield and lower risk than housebreaking. I'd suggest working for a private equity company.