Live data from Hacker News

Identifying backdoors, attack points, and surveillance mechanisms in iOS devices

zdziarski.com

21–30 of 87 posts

Re: Identifying backdoors, attack points, and surveillance mechanisms in iOS devices

#21
post #2

Mr Zdziarski gave this talk also at the HOPE conference yesterday. It's highly recommended. Slides: http://www.zdziarski.com/blog/wp-content/uploads/2014/07/iOS... For the people wanting to secure their iphone, go to the end to the slide "Apple Configurator" and follow the described steps to disable your iphone from paring with anything.

Has anyone tried using the configurator? I'd give it a go but it looks like it might completely wipe devices prior to applying the settings.

Re: Identifying backdoors, attack points, and surveillance mechanisms in iOS devices

#22
post #17

What are "close access methods"? Would bluetooth or iBeacon or Wifi be used with that, or does it need a cable, or actual button pressing, for example?

You would have to attach a cable and, on recent iOS versions, press a button to trust the device (and I think enter the passcode - not sure - but not if the device gets shipped to Apple).

Re: Identifying backdoors, attack points, and surveillance mechanisms in iOS devices

#23
post #2

Mr Zdziarski gave this talk also at the HOPE conference yesterday. It's highly recommended. Slides: http://www.zdziarski.com/blog/wp-content/uploads/2014/07/iOS... For the people wanting to secure their iphone, go to the end to the slide "Apple Configurator" and follow the described steps to disable your iphone from paring with anything.

Is there a video of this talk?

Re: Identifying backdoors, attack points, and surveillance mechanisms in iOS devices

#24
post #20
post #19

Earlier quoted context omitted.

Yeah, I've been shocked by how easy it is to get a brand new router and set it up with the same SSID and password and every device I have auto-connects like it's the same thing. If you have the AP password, it's trivial to set up a fake second router in the same vicinity (you don't even have to touch the original one) with a stronger signal and have everyone connect through your gateway. Of course, once you have the…

OSX and I assume iOS does do detection of this. If you connect to an AP that was WPA2 encrypted in the past, and has the same name but no encryption now, it gives you a big scary warning and bails out.

One could always set-up a Ja-sager with WPA2.

Re: Identifying backdoors, attack points, and surveillance mechanisms in iOS devices

#25
post #16
post #11

Earlier quoted context omitted.

looks like someone did http://pdf.yt/d/1dKWAxs03AvnYqkt

Tangent: This is a good site for PDFs, immensely better than scribd. Whenever I click a link in the PDF (for eg. pg 17), the document zoomed in permanently. I cannot find a way to revert back to original zoom, even opening the link again does not help. So whoever is running the site, please look into this bug.

Here's the project's GitHub issue page: https://github.com/joepie91/pdfy/issues

Re: Identifying backdoors, attack points, and surveillance mechanisms in iOS devices

#26
post #10

Full text: https://pdf.yt/d/1dKWAxs03AvnYqkt

> In October 2013, Quarkslab exposed design flaws(iMessage privacy) in Apple’s iMessage protocol demonstrating that Apple does, despite its vehement denial,have the technical capability to intercept private iMessage traffic if they so desired, or were coerced to under a court order. The iMessage protocol is touted to use end-to-end encryption, however Quarkslab revealed in their research that the asymmetric keys generated to perform this encryption are exchanged through key directory servers centrally managed by Apple, which allow for substitute keys to be injected to allow eavesdropping to be performed. Similarly, the group revealed that certificate pinning, a very common and easy-to-implement certificate chain security mechanism, was not implemented in iMessage, potentially allowing malicious parties to perform MiTM attacks against iMessage in the same fashion.

So much for iMessage security. Also, ProtonMail works much in the same way (central key management), for anyone wondering, so it should be vulnerable to the same type of attacks.

Re: Identifying backdoors, attack points, and surveillance mechanisms in iOS devices

#27
post #7
post #2

Mr Zdziarski gave this talk also at the HOPE conference yesterday. It's highly recommended. Slides: http://www.zdziarski.com/blog/wp-content/uploads/2014/07/iOS... For the people wanting to secure their iphone, go to the end to the slide "Apple Configurator" and follow the described steps to disable your iphone from paring with anything.

Step 1: buy a Mac :-/

Not exactly.

> iPhone Configuration Utility 3.6.2 for Windows

http://support.apple.com/kb/DL1466

Re: Identifying backdoors, attack points, and surveillance mechanisms in iOS devices

#28
post #16
post #11

Earlier quoted context omitted.

looks like someone did http://pdf.yt/d/1dKWAxs03AvnYqkt

Tangent: This is a good site for PDFs, immensely better than scribd. Whenever I click a link in the PDF (for eg. pg 17), the document zoomed in permanently. I cannot find a way to revert back to original zoom, even opening the link again does not help. So whoever is running the site, please look into this bug.

Ctrl+Scroll worked for me in Firefox on Windows 7.

Though I see no reason why clicking a link should result in the zoom level changing, so it does seem like a bug.

Re: Identifying backdoors, attack points, and surveillance mechanisms in iOS devices

#29
post #2

Mr Zdziarski gave this talk also at the HOPE conference yesterday. It's highly recommended. Slides: http://www.zdziarski.com/blog/wp-content/uploads/2014/07/iOS... For the people wanting to secure their iphone, go to the end to the slide "Apple Configurator" and follow the described steps to disable your iphone from paring with anything.

Has anyone tried using the configurator? I'd give it a go but it looks like it might completely wipe devices prior to applying the settings.

yeah, if your device wasn't supervisioned before it would clean install - i guess but i haven't tried and/or checked otherwise if you can than reapply your backup.

Re: Identifying backdoors, attack points, and surveillance mechanisms in iOS devices

#30
post #23
post #2

Mr Zdziarski gave this talk also at the HOPE conference yesterday. It's highly recommended. Slides: http://www.zdziarski.com/blog/wp-content/uploads/2014/07/iOS... For the people wanting to secure their iphone, go to the end to the slide "Apple Configurator" and follow the described steps to disable your iphone from paring with anything.

Is there a video of this talk?

I haven't found the specific talk, but HOPE 2014 has live feeds (July 18-20), and "archives" although it seems the archives are not up yet.

http://radio.hope.net/feeds/

http://radio.hope.net/archive.html

http://radio.hope.net/

Post reply on HN