this post was submitted on 09 Jan 2024
267 points (96.5% liked)

Privacy

39651 readers
255 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

much thanks to @gary_host_laptop for the logo design :)

founded 5 years ago
MODERATORS
 

The Beijing institute developed the technique to crack an iPhone’s encrypted device log to identify the numbers and emails of senders who share AirDrop content, the city’s judicial bureau said in an online post. Police have identified multiple suspects via that method, the agency said, without disclosing if anyone was arrested. “It improves the efficiency and accuracy of case-solving and prevents the spread of inappropriate remarks as well as potential bad influences,” the bureau said.

Further read: https://sfj.beijing.gov.cn/sfj/sfdt/ywdt82/flfw93/436331732/index.html

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 116 points 2 years ago* (last edited 2 years ago) (2 children)

Or China is just saying they cracked Air Drop to try to scare protestors from using this feature. If they cracked it, why would they make it public that they cracked it when they could catch dissidents using it without their knowledge? Not to mention making it public puts pressure on Apple to patch it, which would destroy their access. Doesn’t make much sense to make this public if it is true.

[–] [email protected] 97 points 2 years ago (1 children)

Whenever a government or government agency announces a successful exploit, I presume they've already exhausted it and moved on to another one that won't be patched or publicly divulged for many years.

[–] [email protected] 5 points 2 years ago (2 children)

I don't buy it. This smells like a way of causing fear in those who want to share information.

[–] [email protected] 7 points 2 years ago

¿Por que no Los dos?

[–] [email protected] 3 points 2 years ago* (last edited 2 years ago)

iMessage ~~is insecure~~ security isn't as robust as most people think, and this has been known for years.

People still use it

[–] [email protected] 22 points 2 years ago* (last edited 2 years ago) (3 children)

It would be easy for apple to debunk this if it wasn't true. I'd stay away from it and use proven secure means.

[–] [email protected] 7 points 2 years ago (3 children)

There’s no way to prove that something is secure. (It reduces to the halting problem.)

[–] [email protected] 5 points 2 years ago (1 children)

You can still have more certainty or less. If it's open-source - it doesn't guarantee safety by any means, sure, but if it's proprietary like this one - you don't even get a chance to check what's going on.

[–] [email protected] 2 points 2 years ago (1 children)

Just make a machine to prove it /s

[–] [email protected] 4 points 2 years ago (1 children)
[–] [email protected] 3 points 2 years ago

That's it, job done. We have our answer, everyone!

[–] [email protected] 1 points 2 years ago

Nothing is ever completely secure if it's connected to the internet. It just likely isn't worth it to hack into. That's why macs used to be "virus proof".

Well, yes, because Windows was a much more lucrative target.

[–] [email protected] 5 points 2 years ago* (last edited 2 years ago) (1 children)

How can Apple debunk it?

If I told you I know of a way by which I can "hack" the lock of your house to enter it, how can you prove whether I'm lying or not? Specially if I'm not willing to show you how I do it, and I haven't given you any proof of having actually done it that you can try to dispute.

[–] [email protected] 5 points 2 years ago (2 children)

sending email and phone number with each airdrop doesn't sound right. Apple isn't a good company but they aren't dumb. Why would you send that info?

[–] [email protected] 5 points 2 years ago* (last edited 2 years ago)

They aren't saying that the email/number is part of the message. What the are saying is that they are able to decrypt the logs in order to identify the senders .

It could be they cross-reference matching some internal ids / tokens / physical addresses of the devices together with all the data the Chinese government already has (or can obtain) ...or it could be a bluff.. who knows... there's not enough information, and what we know is probably distorted.

[–] [email protected] 3 points 2 years ago

Why would they? They have all their production logistics in China.