Live data from Hacker News

Motorola cell phones are regularly phoning home

beneaththewaves.net

21–30 of 117 posts

Re: Motorola cell phones are regularly phoning home

#21

I noticed that my Droid 4 running 4.1.2 was opening an XMPP connection to Motorola servers a month ago. I was watching the logs trying to diagnose another problem, and the XMPP connection happened to be failing at the time. The XMPP connection is no longer failing. D/CheckinProvider( 507): insertEvents Process tag not allowed: XMPPConnection I/XMPPConnection( 772): Preparing to connect user XXXXXXXXXXX to service: ja…

What logs were this?

Looks like it's from logcat.

Re: Motorola cell phones are regularly phoning home

#23
post #3

Since lots of this data is sent through not encrypted HTTP, this means that NSA (and any other intelligence agency) can also get all this data... Then people wonder the "nothing to hide" well, you might not, but will everyone you know be bothered you are sending their e-mails around to intelligence agencies?

For most people the bigger threat is going to come from the wifi networks they connect to at work, school, coffee shops, etc. If I owned a Motorola SmartPhone I would stop using wifi on untrusted & semi-trusted networks immediately.

Re: Motorola cell phones are regularly phoning home

#24

I noticed that my Droid 4 running 4.1.2 was opening an XMPP connection to Motorola servers a month ago. I was watching the logs trying to diagnose another problem, and the XMPP connection happened to be failing at the time. The XMPP connection is no longer failing. D/CheckinProvider( 507): insertEvents Process tag not allowed: XMPPConnection I/XMPPConnection( 772): Preparing to connect user XXXXXXXXXXX to service: ja…

What logs were this?

logcat: https://developer.android.com/tools/help/logcat.html

apk to view them: https://play.google.com/store/apps/details?id=com.nolanlawso...

Re: Motorola cell phones are regularly phoning home

#27
post #5

If true, it's surprising that it took so long for someone to find this. Isn't it trivial to check on what your phone is sending off if you use wifi with a network scanner? With that said I bet this is all for their social networking integration, some engineer thinking it would be cool for them to aggregate all your social data in the cloud, with no concept of the privacy implications.

Apparently others have reported concerns as early as 2011:

https://forums.motorola.com/posts/64e9971ab3

Amazing that they've been doing it for so long.

Re: Motorola cell phones are regularly phoning home

#28
post #3

Since lots of this data is sent through not encrypted HTTP, this means that NSA (and any other intelligence agency) can also get all this data... Then people wonder the "nothing to hide" well, you might not, but will everyone you know be bothered you are sending their e-mails around to intelligence agencies?

Given Motorola are now owned by the same Google that participates in the PRISM programme (et al), I'm really not sure the encryption matters so much.

Good point, I had forgotten that.

Re: Motorola cell phones are regularly phoning home

#30
This seems related to Motorola's MOTOBLUR system: http://en.wikipedia.org/wiki/Motoblur

In all fairness, it seems that the implementation uses a middle server (pretty common in big companies where good engineering isn't a requirement) where log in data is sent, is stored in the users' profile and where timelines and other content is parsed before being sent back to the user's device, in a "dumb" format that the BLUR system can understand.

Nokia has a bit of the same for their low-end phones (understandably) and BlackBerry used to do much of the same. Yet, in those days, and in an Android phone that can easily connect to social networks on its own, this seems like a very unfortunate techncial decision.

In other words: the official Gmail app, Twitter or Facebook apps are unlikely to be "compromised".

Post reply on HN