Live data from Hacker News

Lithuania says throw away Chinese phones due to censorship concerns

reuters.com

291–300 of 427 posts

Re: Lithuania says throw away Chinese phones due to censorship concerns

#291

Earlier quoted context omitted.

For now, until hardware backed attestation becomes properly enforced... Isn't security great

It probably will never be. It just takes one OEM to fuck it up and everyone can use their device ID. That's why hardware backed attestation doesn't work, OnePlus fucked it up and now Magisk can pretend to be that phone and get exempted.

Interesting, I use OnePlus phones, where can I read more about this?

Re: Lithuania says throw away Chinese phones due to censorship concerns

#292
post #3

Earlier quoted context omitted.

What about Android One?

Android One is moribund and is basically just Nokia now[0]. [0] https://en.wikipedia.org/wiki/Android_One#2020

> moribund

1. Approaching death, about to die.

2. Reaching obsolescence.

I learned a new word today, thank you.

Re: Lithuania says throw away Chinese phones due to censorship concerns

#293
post #284
post #187

Earlier quoted context omitted.

Is there anyone who knows how to root a device that doesn't know how to torrent?

I'm far too lazy to torrent crap at my age - it takes too long and it can be a pain to find what I want.

Made me chuckle. I know a guy who finds Netflix a total PITA and the streaming experience (sorely) lacking. So he pays for Netflix streaming and dvds, and then downloads what he wants to watch via torrents for the convenience.

Re: Lithuania says throw away Chinese phones due to censorship concerns

#294
post #293
post #284

Earlier quoted context omitted.

I'm far too lazy to torrent crap at my age - it takes too long and it can be a pain to find what I want.

Made me chuckle. I know a guy who finds Netflix a total PITA and the streaming experience (sorely) lacking. So he pays for Netflix streaming and dvds, and then downloads what he wants to watch via torrents for the convenience.

I think if you've been torrenting this entire time you're probably set for life - being looped into all sorts of movie sharing rings that you regularly seed for... but breaking into it fresh - it's tough.

Re: Lithuania says throw away Chinese phones due to censorship concerns

#295

Earlier quoted context omitted.

> Restrict apps, but can still log in via browser. This isn't paradoxical. You treat the browser as a less trusted security domain than a phone, which usually has a secure boot chain, strong sandboxing, encrypted disk, reliable hardware cryptography etc, and therefore provide a different/better service on the phone. If a phone is missing one of these expected components then you're not the target market for the app,…

I disagree. My main bank allows several high-risk actions to be performed when logged in from a web browser, which are entirely impossible from the mobile banking app. It's completely ridiculous that I can't use my mobile banking app for day to day low risk, low volume transactions if my phone is rooted, yet I can do anything and everything with high values of cash and credit from a Linux machine running any web brow…

> yet I can do anything and everything with high values of cash and credit from a Linux machine running any web browser I wish, as root.

Don't give them any ideas. They'll just ban Linux browsers now.

Re: Lithuania says throw away Chinese phones due to censorship concerns

#296
post #62

I wonder why is anybody still surprised. China has no qualms invading privacy of anybody. They will try any and every way to get whatever they need and they are pretty effective at it. Ever read about making business in China? What we call cheating or stealing is a standard business practice there. If you point it out they will back off and try somewhere else, ad nauseam. It is practically part of Chinese culture and…

> Chinese culture and upbringing

You can't post slurs like this to HN. Nationalistic, racial, and/or ethnic flamewar is not welcome either. I'm sure you can make your substantive points without any of that.

https://news.ycombinator.com/newsguidelines.html

Re: Lithuania says throw away Chinese phones due to censorship concerns

#297
post #259
post #62

I wonder why is anybody still surprised. China has no qualms invading privacy of anybody. They will try any and every way to get whatever they need and they are pretty effective at it. Ever read about making business in China? What we call cheating or stealing is a standard business practice there. If you point it out they will back off and try somewhere else, ad nauseam. It is practically part of Chinese culture and…

Your post reminds me of the time people in China rioted because students were not allowed to cheat on their exams. There really is something cultural going on there.

That has because the exams were national university entrance exams and the new stronger anti-cheating measures were only being applied in one city.

The parents in that city felt that widespread cheating was normal everywhere else essentially turning admissions into a lottery with a big disadvantage to anyone who did not cheat.

Re: Lithuania says throw away Chinese phones due to censorship concerns

#298
> The capability in Xiaomi's Mi 10T 5G phone software had been turned off for the "European Union region", but can be turned on remotely at any time, the Defence Ministry's National Cyber Security Centre said in the report.

While a lot of comments are rightly focusing on the censorship aspect of it, IMHO, the most concerning part of this is that this intrusive capability, while disabled for the EU region can be remotely enabled at any time. This implies that Xiaomi, and most likely all Chinese phone vendors and by extension CCP, has backdoors in all these devices.

This re-enabling is probably just the tip of the iceberg, wonder what all they can do via these backdoors?

Re: Lithuania says throw away Chinese phones due to censorship concerns

#300
post #152

From the shared PDF page 23... "It has been established that during the initialisation of the system applications factory-installed on a Xiaomi Mi 10T device, these applications contact a server in Singapore at the address globalapi.ad.xiaomi.com (IP address 47.241.69.153) and download the JSON file MiAdBlacklistConfig, and save this file in the metadata catalogues of the applications. A list of applications for whic…

Is it me or is this an extremely clumsy way of doing censorship? Why not do this at network or server-side level? Why not use some kind of hash (ala Apple'e proposed child pornography hunter)? In this design, everyone would have to have this plain text configuration file ... also other brands (Oppo, Huawei etc.) would have to have it. What if it needs an update? Suppose the hui muslims starts causing trouble ... Or i…

Censorship in depth.

local, network, and content host

Post reply on HN