Live data from Hacker News

Apple – Privacy – Government Information Requests

apple.com

151–160 of 217 posts

Re: Apple – Privacy – Government Information Requests

#151

"On devices running iOS 8, your personal data such as photos, messages (including attachments), email, contacts, call history, iTunes content, notes, and reminders is placed under the protection of your passcode. Unlike our competitors, Apple cannot bypass your passcode and therefore cannot access this data" This is key. The way we engineer software and services can have a major impact on the war against overly invas…

>"On devices running iOS 8, your personal data such as photos, messages (including attachments), email, contacts, call history, iTunes content, notes, and reminders is placed under the protection of your passcode. Unlike our competitors, Apple cannot bypass your passcode and therefore cannot access this data"

Too bad they (and other phone manufacturers) don't protect phone calls with some kind of end-to-end encryption.

Re: Apple – Privacy – Government Information Requests

#152

Earlier quoted context omitted.

> That sort of order is out of scope of anything a US court can order How do you know that? Secret court orders are secret. "National security" trumps everything these days. LavaBit chose to shut down rather to insert a backdoor that was forced on them. I doubt Apple will shut down over that. And thanks to Snowden we know Apple's products have been backdoored already. http://www.spiegel.de/international/world/catalog…

But the laws that makes them legal are not secret.

The laws? I'm pretty sure mass surveillance is unconstitutional, that didn't stop them.

Are you saying it's outside of scope for NSA to forcefully install a backdoor or request encryption keys?

How do you explain LavaBit?

How do explain NSA's hardware in data centers?

How do you explain NSA's hardware in cell phone providers centers?

How do you explain NSA's backdoors in Microsoft's products?

Re: Apple – Privacy – Government Information Requests

#153

Earlier quoted context omitted.

> even with a 5 digit pin, it's entirely possible to simply try all combinations Given a long time. Don't forget iOS slows your brute-force attempts down substantially. I'd be curious how long a brute-force attack would take given the current behavior of the OS.

Is there no way to duplicate the whole filesystem onto a computer and try decrypting that? I didn't think they would actually be thumbing in every password combination...

There is supposedly no way of duplicating the secure element which is what controls the encryption.

Re: Apple – Privacy – Government Information Requests

#154

Earlier quoted context omitted.

You get the government you vote for.

No, that's not how it works. You get the most heavily marketed party that pissed the least number of people off in the last couple of years.

National elections have become such a farce anyways. A single senator or representative can change the political landscape, yet a single citizen cannot. I cannot vote for Senator Wyden, nor can I vote against Feinstein. Rubio is unfazed with my voting and McConnell couldn't care less about my opinions. Yet, these handful of senators have shaped the issues that I care about to be what they are today. The best I can do is not vote for Hatch, but his death from old age seems to be the looming reason for his departure from the senate.

When someone voted in by a single state can influence the entire country like that, it makes everyone feel powerless. I'd rather give my money to a company that has my interests in mind throughout the years in exchange for products and services than dump thousands of dollars into someone's campaign like a drunken bet at a Las Vegas casino every couple of years.

Re: Apple – Privacy – Government Information Requests

#155

Except it's not open source. If it's not open source then you have no idea what's going on beyond what Apple tells you. Ask your self: Would Snowden use this phone? Your answer to this question is the same as the answer to the question "Is this phone secure?" I guess I'll get downvoted for this sense it goes against the Apple circlejerk, but this issue is more important to me than magic internet points.

Nobody sells a 100% open source phone. Everyone uses broadcom, motorola, TI, etc. chips which have propriety firmware. (I'm aware there are a few obscure phones that claim to be 100% open, but not many people use them, not available, etc.)

Re: Apple – Privacy – Government Information Requests

#156

Earlier quoted context omitted.

>keylogging code on the SIM card or baseband processor That won't work. >Has Apple publicly claimed that they will also refuse to push individualized compromising code updates to devices on demand by gov't authorities? No, and even though I strongly doubt the government would even try to do this and even more strongly doubt Apple would comply, their new tech (apple pay and touch ID use hardware support to even protec…

Not on the sim card, but on the base band processor it very probably will work, since the base band on many cell phone cores share the memory with the application processor.

Well it certainly doesn't work like that on an iPhone.

Re: Apple – Privacy – Government Information Requests

#158

Earlier quoted context omitted.

That sort of order is out of scope of anything a US court can order, and I believe that an Apple employee would leak it before they complied with such an order.

> That sort of order is out of scope of anything a US court can order How do you know that? Secret court orders are secret. "National security" trumps everything these days. LavaBit chose to shut down rather to insert a backdoor that was forced on them. I doubt Apple will shut down over that. And thanks to Snowden we know Apple's products have been backdoored already. http://www.spiegel.de/international/world/catalog…

They don't need to create a special backdoor for the government, Apple has it's own backdoor that it can share with the government if needed... (they have full control of your device already when you are online)

Re: Apple – Privacy – Government Information Requests

#159
post #101

Earlier quoted context omitted.

Well, I think whatever Apple says, you will find a "loophole" in the wording that supposedly allows them to do evil things. Try it: pretend you are Apple and just try writing a statement that you would consider acceptable and that you wouldn't call "word games, deception and legalese". Myself, I think they did fairly well, certainly the best of any tech company out there today.

> Try it: pretend you are Apple and just try writing a statement that you would consider acceptable and that you wouldn't call "word games, deception and legalese". Ok. "We're enabling custom encryption key management. You may now generate and use your own encryption keys. In addition to ensuring the device data is encrypted, nothing in your iCloud account can be recovered if you lose your key because it is all pre-e…

You'd still get "But they could just push an OS update that sends them the keys"

Re: Apple – Privacy – Government Information Requests

#160
post #77

Earlier quoted context omitted.

0.00385% of 181,696,000 is 6995, not 699529. Even if we take the total number of iTunes customers (~800 millions), it comes down to 30,800.

It's between 0-250. Tim Cook confirmed it on the Charlie Rose interview on Monday.

That was for the first half of a this year alone. They specify this in the page on Government Requests
Post reply on HN