Treat every phone as a burner.
Pretty difficult with 2FA
Sure, I've made my attack surface larger, but for me beats having to call, email, or be screwed when I lose access to my phone.
251–260 of 566 posts
Earlier quoted context omitted.
Haha, just 5 minutes ago I read a story about Iranian 'hacker' who wrote a ransomware note in Microsoft Word, so the file metadata contained his full name :)
Similar SecOps problems happened to both John McAfee and the Silk Road founder. As far as I remember, McAfee shared an iPhone photo with location metadata when he was in Belize, so American authorities were able to track him down. The Silk Road founder had some sort of PHP coding error which led police to his San Francisco location. That is, you could simply visit the Silk Road home page and his location leaked. So y…
[0] https://www.wired.com/2012/12/oops-did-vice-just-give-away-j...
Terrifying for only 2 reasons: 1. Any malicious person savvy enough to pull off a crime of interest to the Feds is smart enough to provide a wiped or burner phone to DHS/ICE, and they have to know this. So, what is the point in doing this if not to target law abiding citizens. 2. USGOV has a spotty track record of keeping this information secure. A foreign actor is likely to access this info eventually. As one former…
> 1. Any malicious person savvy enough to pull off a crime of interest to the Feds is smart enough to provide a wiped or burner phone to DHS/ICE, and they have to know this. So, what is the point in doing this if not to target law abiding citizens. This isn't even remotely true. See for example the recent Anom honeypot[1]. Criminals do more or less the same things that ordinary citizens do, and often have strictly wo…
Statement is 3 words too long.
This happened to me in 2016 crossing into Canada. Borders agents took my phone for no reason, demand I give them the password to unlock it (otherwise they would seize the phone), took it in the back for 45 min before returning it and letting me enter. I think it’s obvious they took all my data. So now when I travel I just bring my “travel” phone with no sensitive data on it.
Which countries agents? You were going from US to Canada. Were they Canadian or US agents?
Terrifying for only 2 reasons: 1. Any malicious person savvy enough to pull off a crime of interest to the Feds is smart enough to provide a wiped or burner phone to DHS/ICE, and they have to know this. So, what is the point in doing this if not to target law abiding citizens. 2. USGOV has a spotty track record of keeping this information secure. A foreign actor is likely to access this info eventually. As one former…
> 1. Any malicious person savvy enough to pull off a crime of interest to the Feds is smart enough to provide a wiped or burner phone to DHS/ICE, and they have to know this. So, what is the point in doing this if not to target law abiding citizens. This isn't even remotely true. See for example the recent Anom honeypot[1]. Criminals do more or less the same things that ordinary citizens do, and often have strictly wo…
Even if you are a person who will never in your life end up as any kind of person of interest for the government, handing over data in this way could still be quite dangerous. Phones will often contain data that can facilitate theft and fraud if ending up in the wrong hands. If they're able to copy everything, including private data from all apps that could be quite bad. For example many countries now use apps to log…
Do they do this with laptops too? If not, the laziness of assuming everything is on the phone is amusing.
And I'm still waiting for someone to explain how that works with employer gear. I'm guessing my corporate compliance team will not be pleased if I tell them someone made copies of all the companies data...even if it is uncle sam. Like what does one do in that situation? Can't really agree. At the same time US border staff is not known for their understanding nature when it comes to saying no.
Earlier quoted context omitted.
>>So, what is the point in doing this if not to target law abiding citizens. It's the old rule known to governments all over the world - there is no such thing as an innocent citizen, there is only a citizen who you haven't investigated enough. Call me cynical but storing ALL of your digital data allows the agencies to basically find something, anything, that will allow them to further blackmail you into complying. E…
The criminal should have the strongest civil rights protections, so hands will be tied should the government try to go after inconvenient citizens.
Plea agreements were illegal up until the 70s for a reason.
Earlier quoted context omitted.
> 1. Any malicious person savvy enough to pull off a crime of interest to the Feds is smart enough to provide a wiped or burner phone to DHS/ICE, and they have to know this. So, what is the point in doing this if not to target law abiding citizens. This isn't even remotely true. See for example the recent Anom honeypot[1]. Criminals do more or less the same things that ordinary citizens do, and often have strictly wo…
Ah, so criminals that get busted follow poor practices that lead to them getting busted. Not sure what this has to do with criminals at large, you know, the ones that do stuff like use a safe phone when traveling abroad.
On an individual level, I am positive that there are criminals that escape the (not particularly competent) techniques of DHS/CBP. But the GP's claim (that Federal criminals are, as a category, completely above and beyond this kind of enforcement) is just not true.