5 ms·
>keylogging code on the SIM card or baseband processor That won't work. >Has Apple publicly claimed that they will also refuse to push individualized compromi
by abritishguy 12y ago
>keylogging code on the SIM card or baseband processor
That won't work.
>Has Apple publicly claimed that they will also refuse to push individualized compromising code updates to devices on demand by gov't authorities?
No, and even though I strongly doubt the government would even try to do this and even more strongly doubt Apple would comply, their new tech (apple pay and touch ID use hardware support to even protect against this sort of breach which shows that they are certainly thinking about it). I'm pretty sure Apple won't even have the ability to silently push an OS update (if they did then someone could find out because it would be in the OS and then all hell would break loose) - it would have to be accepted by the target which means there is a reasonably large chance of detection.
- kabouseng 12y agoNot on the sim card, but on the base band processor it very probably will work, since the base band on many cell phone cores share the memory with the application processor.
- abritishguy 12y agoWell it certainly doesn't work like that on an iPhone.
- kabouseng 12y agoPlease illuminate me then as to what the iPhones processor architecture looks like, seeing as iPhones also use Qualcomm basebands, same as most Android devices...
- abritishguy 12y agoThe baseband processor has no access to the parts of memory it is not meant to, possibly some of the early iPhones did but currently they are properly isolated.
- kabouseng 12y agoPlease substantiate with a link.
- sigterm 12y agoConsidering iPhone has their custom processor design, this information is most likely confidential. However, it isn't inconceivable that some sort of memory protection method similar to IOMMU can be added to the internal fabric to prevent baseband processors (or any other peripherals) from accessing arbitrary physical memory.
- kabouseng 12y agoThats fine, I just wasn't sure how abrittishguy can state his assertions so absolutely as facts.
- function_seven 12y agoThe baseband firmware is cyptographically signed by Apple (and would thus require their complicity in backdooring) and the A7 models have a so-called Secure Enclave, which handles the encryption and decryption of memory contents. Link: http://www.apple.com/ipad/business/docs/iOS_Security_Feb14.pdf http://www.apple.com/ipad/business/docs/iOS_Security_Feb14.p...
- kabouseng 12y agoThank you very much, I'll definitely read through the doc through the course of the day. But a cursory glance still does not mean that rogue software on the baseband cannot compromise your phone, but it is getting more and more difficult to place rogue software on the baseband. "And would require Apple's complicity" - Or perhaps rather Qualcomms's...
- kabouseng 12y agoWhy the downvote?
- cwyers 12y agoThey still don't have physical keyboards.