Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
willstrafach
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
10 ms
·
31.
▲
by
willstrafach
7y ago
> Corellium heavily modifies iOS. Parallels and whatnot run unmodified Mac (not i)OS. Not quite. The optional "modifications" are pretty much the small byte patches in the kernel and bootloader which are normally done in a jail
32.
▲
by
willstrafach
7y ago
This test would not yield a useful result in this particular case, as the data is processed locally on-device and is not sent to a remote server.
33.
▲
by
willstrafach
7y ago
Technically, that is the hardware product codenames (Closely tracking with AirPods it seems, B188 and B288)
34.
▲
by
willstrafach
7y ago
Absolutely. You can reverse engineer components of iOS to find this out, and analyze outgoing network traffic as a quick way to see what data is going out to remote servers. The icon, in this case, was a helpful indicator allowing others to
35.
▲
by
willstrafach
7y ago
Myself and my colleagues do exactly this every day. Relevant to current story: https://twitter.com/chronic/status/1202386593387966464 I am sure many companies in the information security field are doing the same.
36.
▲
by
willstrafach
7y ago
I have tried to get in touch with you all, but got no response from the e-mail address provided via Twitter when inquiring about collaboration. No log pact sounds wonderful.
37.
▲
by
willstrafach
7y ago
This would indeed be possible, although slow, and only when the affected app is open.
38.
▲
by
willstrafach
7y ago
https://www.libimobiledevice.org/
39.
▲
by
willstrafach
7y ago
Oy Creanova Hosting Solutions Ltd.
40.
▲
by
willstrafach
7y ago
Likely booting the OS from a RAM-disk and mounting as read-only.
41.
▲
by
willstrafach
7y ago
Would not work, as this is indeed a lower-level function.
42.
▲
by
willstrafach
7y ago
They do this. https://developer.apple.com/library/archive/releasenotes/Gen...
43.
▲
by
willstrafach
7y ago
> but if they can get their hands on iOS images They are freely available for download from Apple. See here for handy index: https://ipsw.me/
44.
▲
by
willstrafach
7y ago
ARM-based servers
45.
▲
by
willstrafach
7y ago
Not from a device. The iOS system software can be downloaded from Apple’s update servers.
46.
▲
Apple just patched a modem bug that’s been in Macs since 1999
(wired.com)
3 points
by
willstrafach
7y ago
|
0 comments
47.
▲
by
willstrafach
7y ago
A surprising number of trackers do not use pinning, so this has a pretty high success rate actually.
48.
▲
by
willstrafach
7y ago
Keep in mind, only applies to externally bundled SDKs. Some of them are designed to be compiled into the (encrypted) main app binary.
49.
▲
by
willstrafach
7y ago
Working on this. It is very tricky to do for iOS in an App Store compliant manner, but doable. Apple has already approved it.
50.
▲
by
willstrafach
7y ago
> They claim they will remove apps that sell your location data They most definitely do not remove such apps. Use an app like Charles Proxy or Burp Suite to inspect the traffic of your phone when running the “Perfect365” app. It is reall
51.
▲
by
willstrafach
7y ago
> Does enabling location tracking suddenly causes Firebase to report location data without our knowledge? > Does enabling calendar access suddenly cause Firebase to read the calendar data on its own and report that, too? These are goo
52.
▲
by
willstrafach
8y ago
> participants To avoid giving the wrong impression to folks, it is worth noting that ‘participating’ means they produced requested communications on an ongoing basis pursuant to orders from a judge.
53.
▲
by
willstrafach
8y ago
Have you already started on this concept? Myself and our team are working on some of the ideas you listed for an upcoming app ( https://itunes.apple.com/us/app/guardian-firewall/id13637963... ). It would be gre
54.
▲
by
willstrafach
8y ago
I am sure about that. Your linked informational page leaked out when someone sent WikiLeaks a dump from a classified Confluence used by CIA’s cyber folks. The tool itself, however, had not leaked.
55.
▲
by
willstrafach
8y ago
The tool was never leaked previously.
56.
▲
by
willstrafach
8y ago
I am curious about this: > we let users know exactly what data they will be sending and how we use it Many apps will just say “see privacy policy” or similar when requesting access. See [1] for examples. That is an approach I would consi
57.
▲
by
willstrafach
8y ago
Important detail - The agreement says that Apple may do this for the exact reason at hand here - Preventing misuse/abuse of enterprise certificate.
58.
▲
by
willstrafach
8y ago
You could probably detect it by looking at the Common Name of the TLS certificate in use when making network connections. https://twitter.com/chronic/status/1090399087827083264?s=21
59.
▲
by
willstrafach
8y ago
You are correct! Many apps do not do pinning currently.
60.
▲
by
willstrafach
8y ago
Proof also can be found here: https://code.nsa.gov
More ›