3 ms·
That's simply because you haven't looked. There was literally a black hat talk on exploiting cellular networks this year. Every year there seems like there's a
by byteknight 3y ago
That's simply because you haven't looked. There was literally a black hat talk on exploiting cellular networks this year. Every year there seems like there's a new exploit. Just because it doesn't make it to your particular side of the internet doesn't mean it's not happening.
Now, can anyone definitively prove that they are back doors and not mistakes or exploits? No. But that's thanks to the age old "Never ascribe to malice that which is adequately explained by incompetence."
- Akronymus 3y ago> There was literally a black hat talk on exploiting cellular networks this year. Is that talk recorded somewhere?
- ccooffee 3y agoI assume GP is referring to Title: "Over the Air, Under the Radar: Attacking and Securing the Pixel Modem" Summary/Slides: https://www.blackhat.com/us-23/briefings/schedule/#over-the-air-under-the-radar-attacking-and-securing-the-pixel-modem-33009 https://www.blackhat.com/us-23/briefings/schedule/#over-the-... YouTube (48 minute): https://www.youtube.com/watch?v=QrkB_enz2Pk https://www.youtube.com/watch?v=QrkB_enz2Pk
- ActorNightly 3y ago>There was literally a black hat talk on exploiting cellular networks this year. Talk at black hat =/= everyones devices are de facto vulnerable. For as tech savy as this forum is, its surprising how many people are not well read up on security. The summary of vulnerability is this - if you use a cellular network, your baseband chip vulnerability is next to irrelevant. Your location can be triangulated from radio signals, and its likely that there are messaging contacts and calls that are logged that use the respective celluar services. Now for pure data transmission from a secure messaging app. Most of the communication for privacy is done using end to end encryption apps like Telegram. While those can be compromised, those require a direct targeted attack on the device, you cant just remotely do this over the internet.