Live data from Hacker News

Your iPhone just got less secure. Blame the FBI

washingtonpost.com

31–40 of 255 posts

Re: Your iPhone just got less secure. Blame the FBI

#33

If Apple refused to comply with the FBI's request, why should the FBI owe Apple a disclosure of this vulnerability they found? Keep the downvotes coming, lads! They're meant for burying spam and junk comments, not expressing disagreement, but I enjoy them anyway.

If I find a vulnerability and exploit someone's device, it's not okay under law. Why is a government institution exempt from law in a supposedly exemplary democracy?

[deleted]

Re: Your iPhone just got less secure. Blame the FBI

#34

If Apple refused to comply with the FBI's request, why should the FBI owe Apple a disclosure of this vulnerability they found? Keep the downvotes coming, lads! They're meant for burying spam and junk comments, not expressing disagreement, but I enjoy them anyway.

If I find a vulnerability and exploit someone's device, it's not okay under law. Why is a government institution exempt from law in a supposedly exemplary democracy?

Because it's not someone's device anymore. It's government evidence?

Re: Your iPhone just got less secure. Blame the FBI

#35

Schneier knows this, and this is a particularly idealistic op-ed, but this is just how the exploit market works and while it would be nice if law enforcement would take the white-hat road, the hazard here is still vastly better than some kind of legal precedent for requiring backdoors. The good thing about the exploit market is that it is naturally self-limiting: you don't burn a zero-day on a dragnet; you limit its…

There's a bit of irony to this, too. If Apple had been more cooperative earlier, law enforcement probably would've taken the white hat approach. Apple protected users from the FBI, but is now potentially unable to protect them from organised crime.

Re: Your iPhone just got less secure. Blame the FBI

#36

Schneier knows this, and this is a particularly idealistic op-ed, but this is just how the exploit market works and while it would be nice if law enforcement would take the white-hat road, the hazard here is still vastly better than some kind of legal precedent for requiring backdoors. The good thing about the exploit market is that it is naturally self-limiting: you don't burn a zero-day on a dragnet; you limit its…

There's a bit of irony to this, too. If Apple had been more cooperative earlier, law enforcement probably would've taken the white hat approach. Apple protected users from the FBI, but is now potentially unable to protect them from organised crime.

Re: Your iPhone just got less secure. Blame the FBI

#37
Why did the FBI drop the lawsuit against Apple in the first place? They both made it sound like the stake was much higher than unlocking the one device.

Or, the FBI managed to unlock this phone and so they can unlock any other devices too, now-and-forever? They don't need a backdoor any more?

Wouldn't the logical next step from Apple's side be to protect their users in their future devices? Wouldn't then the FBI have to sue them again?

Feels like we are missing key facts here, and I wonder why Apple is not talking now.

Re: Your iPhone just got less secure. Blame the FBI

#38
post #29

I think this just feeds off the myth that the iPhone was invulnerable to exploit. The average washington post reader isnt going to know the intricacies of mobile security. NPR and to some extent this article makes it seem like the iPhone was previously secure, and now less so. There is no data supporting either hypothesis, but its likely that this was not a new exploit found that the FBI used. I am curious, however,…

I have a CS degree and I don't know the intricacies either.

Re: Your iPhone just got less secure. Blame the FBI

#39

If Apple refused to comply with the FBI's request, why should the FBI owe Apple a disclosure of this vulnerability they found? Keep the downvotes coming, lads! They're meant for burying spam and junk comments, not expressing disagreement, but I enjoy them anyway.

If I find a vulnerability and exploit someone's device, it's not okay under law. Why is a government institution exempt from law in a supposedly exemplary democracy?

The phone exploited was owned by the government.

Re: Your iPhone just got less secure. Blame the FBI

#40
post #24

I am sure they just hired some interns to code = 0000 While code_is_valid not true: enter code reboot device code++ Edit: I am pretty sure there's a delay in code execution registering a wrong pin hence by rebooting the phone, the wrong pins won't get detected.

Good one, though I can see there is a problem with this "algorithm"! haha :-)
Post reply on HN