3 ms·
I'd wager that they have a enterprise certificate to sign the iOS app with. Then it's a matter of sending the spy victims to a URL, installing the app and grant
by z33k 7y ago
I'd wager that they have a enterprise certificate to sign the iOS app with. Then it's a matter of sending the spy victims to a URL, installing the app and granting access to photos/ location/ whatever.
- tomovo 7y agoNope.. the user would also have to open Settings and explicitly mark the vendor certificate as trusted.
- LocalH 7y agoIt says the devices were unlocked then the device was connected. I would assume the device is in the custody of the Chinese authority at this point. Thus, they can just go into Settings and trust the cert.
- olliej 7y agoChanging trust settings on device requires the password. Better question is: what are they able to pull off the device while it's unlocked?