Live data from Hacker News

Hezbollah pager explosions kill several people in Lebanon

reuters.com

291–300 of 1001 posts

Re: Hezbollah pager explosions kill several people in Lebanon

#291

[flagged]

The ugly question is how much collateral is fine. Hezbollah confirmed the deaths of 3 people, two of its fighters and this girl. Of course, this will surely escalate the war between Israel and Hezbollah so its surely negative even if the collateral ends up being very low because Hezbollah received most of the pagers.

Re: Hezbollah pager explosions kill several people in Lebanon

#292

From Israel's perspective, this supply chain attack was undoubtedly a clever move, but I can't help but wonder about its long-term consequences. Although it was aimed at harming Israel's adversaries, third-party countries may now hesitate to involve Israel in their supply chains. There's also the risk that other major producers could replicate this tactic, potentially leading to further escalation in the region or be…

> In the short term, it's a smart strategy for Israel, but they've likely opened Pandora's box in the process.

Did they? Supply chain attacks, intercepted parcels, none of this is new - the US, going by the Snowden leaks, has a long history of tampering with parcels in transit, which is why a few of the "libre phone" vendors offer to seal the parcel, the device and all screws in random glitter glue and take photos prior to shipping so that any attempt at tampering in transit is not hideable (there is no known way to recreate a glitter pattern).

Re: Hezbollah pager explosions kill several people in Lebanon

#293
post #179

If we try to do what we are best at here at HN, let’s focus the discussion on the technical aspects of it. It immediately reminded me of Stuxnet, which also from a technical perspective was quite interesting. I already wonder if this was anything that was planted in the devices perviously, or if the ones responsible had similar devices, and managed reverse engineer them and craft a payload to them, that could be sent…

If the footage on Twitter is legit, then there was a small detonation, with a bang, not a burning battery with a 'whoosh' and flames. Which indicates that the internals of the pager had been replaced with something rather more explosive than a lithium battery.

Lithium ion batteries in devices are sandwiched layers enclosed in a kind of 'pouch', right? So what if you manufactured one of these that looked identical to the normal battery, but only had half a battery inside, and the rest of it was plastic explosive. Maybe put a tiny chip in there that, when a particular pattern of current draw happens, fires a detonator. Then, some firmware hack in the device proper that responds to some event and actuates that current draw pattern. It wouldn't even look suspicious if you opened it up.

Re: Hezbollah pager explosions kill several people in Lebanon

#294

Sucks to be them, why they even use pagers is laughable, unencrypted or encrypted. Cell infrastructure is easily traceable. I just feel sorry for the innocent lives involved in all of this, no one deserves to be caught up in either side of the conflict.

> Sucks to be them, why they even use pagers is laughable, unencrypted or encrypted. Cell infrastructure is easily traceable.

That's the point why they're using pagers: pagers are passive only. A cellphone can guide a rocket to its target, a pager just listens and cannot be used to guide a rocket, to act as a listening bug or confirm someone's presence (or absence).

Re: Hezbollah pager explosions kill several people in Lebanon

#295
post #264

From Israel's perspective, this supply chain attack was undoubtedly a clever move, but I can't help but wonder about its long-term consequences. Although it was aimed at harming Israel's adversaries, third-party countries may now hesitate to involve Israel in their supply chains. There's also the risk that other major producers could replicate this tactic, potentially leading to further escalation in the region or be…

Do you think Hezbollah was buying stuff from Israel, or otherwise using Israeli supply chains? I think it's far more likely that Mossad has infiltrated whatever foreign (non-Israeli) supply chain they were using. So this can happen regardless of whether you're using Israeli supply chains or not.

> I think it's far more likely that Mossad has infiltrated whatever foreign (non-Israeli) supply chain they were using.

Yeah. Wasn't there something in the Snowden leaks about the CIA intercepting servers in-transit to install implants on them? I'm sure Israel is doing something similar.

Re: Hezbollah pager explosions kill several people in Lebanon

#296
post #179

If we try to do what we are best at here at HN, let’s focus the discussion on the technical aspects of it. It immediately reminded me of Stuxnet, which also from a technical perspective was quite interesting. I already wonder if this was anything that was planted in the devices perviously, or if the ones responsible had similar devices, and managed reverse engineer them and craft a payload to them, that could be sent…

We can't really do much more than speculate right now, but it seems like the most likely answer is that a shipment of pagers was intercepted and implanted with explosives. Israel has done this before to assassinate a prominent bomb maker. https://en.wikipedia.org/wiki/Yahya_Ayyash#Assassination

Given history, given adversary, given all facts known thats practically sure. Usually Mosad doesn't say anything so we won't get much more anytime soon.

There will be few movies and documentaries about this for sure once things calm down a bit. I presume they used pagers instead of phones to not be so easily trackable via google/apple software and hardware?

Re: Hezbollah pager explosions kill several people in Lebanon

#297

This seems like it would have the potential for a lot of collateral damage due to the possibility that modified pagers might enter general distribution. That is to say, how do they insure that a given shipment of pagers are only going to Hezbollah as opposed to some of them going to people like aid workers?

[flagged]

[flagged]

Re: Hezbollah pager explosions kill several people in Lebanon

#298

From Israel's perspective, this supply chain attack was undoubtedly a clever move, but I can't help but wonder about its long-term consequences. Although it was aimed at harming Israel's adversaries, third-party countries may now hesitate to involve Israel in their supply chains. There's also the risk that other major producers could replicate this tactic, potentially leading to further escalation in the region or be…

I'm not at all convinced that's the case, unless it comes out that the targeting was extremely broad (like if Israel was just putting bombs in every pager going into Lebanon rather than targeting a specific shipment going to Hezbollah) I don't think there's really any new risk for other countries.

From the amount of injured it seems more like a broad attack than a targeted one.

Most likely they knew some of them would go to hezbollah, and that was enough, collateral damage be damned.

Re: Hezbollah pager explosions kill several people in Lebanon

#299
post #271
post #179

If we try to do what we are best at here at HN, let’s focus the discussion on the technical aspects of it. It immediately reminded me of Stuxnet, which also from a technical perspective was quite interesting. I already wonder if this was anything that was planted in the devices perviously, or if the ones responsible had similar devices, and managed reverse engineer them and craft a payload to them, that could be sent…

These pagers were 100% a supply chain attack. Intercepted and modified with small explosives embedded in them or swapped the entire shipment out with ones with a small explosives in them. There is no possibility these explosions are from battery overloads via an exploit or firmware hack.

Likely, there are many many more of them out there, just did not fall into the dragnet of phone numbers that were set to activate.
Post reply on HN