Okay so if I ever decide to become a ranking member of a foreign military and get targeted by another foreign intelligence agency, my device may be compromised? Crazy how that works.

@Boring@lemmy.ml
link
fedilink
18
edit-2
8M

Brother… apple couldn’t find my airtag when it was dropped somewhere in my yard… How would apple find a submarine 5 miles below sea level in a faradayed submarine?

You’re not wrong and I’m not disagreeing, but AirTags are basically just Bluetooth trackers that emit a signal picked up by Apple devices. They don’t contain cellular or GPS so I don’t think this is a fair comparison.

They send BT signal to any apple device and the device uses their GPS/data to forward the location to the find my network.

Exactly. But an Apple Watch can have a cellular/WiFi connection so it’s not dependent on having other Apple devices around to update its coordinates on iCloud.

Fair point. But GPS signal from a submarine is almost impossible considering GPS needs LOS.

LTE has a range about 10miles and 5G is also LOS. So its brings it down to unlikely that an Apple watch could connect to cellular.

Considering this is underwater and radio waves attenuate very quickly in the water, this is very unlikely to produce any valuable tracking as a majority of the packets would get dropped if any make it to the cellular tower at all.

Only real way someone could track this submarine via cellular would be if they used a cell site simulator and downgraded the signal to 2g, which would be possible with Chinese cellular providers… But this would require already knowing where the submarine is and/or having stingrays all over the ocean.

Yeah that’s why I was saying I don’t necessarily disagree, I just don’t think an AirTag’s tracking (in)ability is fair to compare with that of a full-fledged cellular device.

Dailymail is an absolute rag. Believe nothing from them unless its heavily corroborated by other reliable sources

@PipedLinkBot@feddit.rocks
bot account
link
fedilink
38M

Here is an alternative Piped link(s):

Deeeear Daily Mail

Piped is a privacy-respecting open-source alternative frontend to YouTube.

I’m open-source; check me out at GitHub.

Daily mail has less credibility than graffiti on a bathroom stall

From the misleading snippets I saw, my best guess was that someone (either through incompetence or malice/desire for a better story) turned “hacked a smartwatch and listened in on an after the fact meeting” into “tracked a submarine”.

Tracking a submerged submarine through a smartwatch is bullshit.

  • This is all hearsay from a tabloid.
  • Any device could have been hacked in this way, there’s nothing special about Apple watches that made then susceptible to being tracked.
  • How were they tracking an Apple watch inside a submarine? Radio signals don’t travel well through water and I doubt they had Internet down there either.
mo_ztt ✅
link
fedilink
138M

This is a masterclass in how to write a slanted story.

It’s definitely interesting that MI6 spied on the PLA through an Apple smartwatch. Did that happen because it was an Apple smartwatch? Or did they just break into it the same way they would break into a Microsoft, Samsung, or Jetstream device?

I don’t actually know the answer to that question, but the way the story is phrased makes me think that if it was the first one, we definitely would have heard about it explicitly.

Apple does have the ability to track at least the geolocation of its gadgets. As well as access other data, especially those stored in cloud services. Apple specialists can also remotely install any software on their gadgets, including spyware and malware, under the guise of updates without the owner’s knowledge.

I had the ability to wake up and eat a pile of wood chips this morning, but I didn’t. Has Apple actually done any of these things? Or are you just trying to make them sound shitty by implication, for reasons of your own?

US tech is backdoored just as hard as chinese stuff. None of the companies involved need to know when and for what the government uses backdoors, so they generally don’t.

mo_ztt ✅
link
fedilink
1
edit-2
8M

I don’t really know, any more than you do, but I assume that this is true yes. There’s a whole fascinating story to be written about it. This story isn’t it. Among other things, blaming Apple for that situation when they’ve explicitly told the US government to get fucked in re its surveillance requests when they had no reason to, is obviously misleading to the reader and unfair to Apple.

(Actually I’d take issue with “just as hard as Chinese stuff,” since Tiktok is more explicitly malicious than pretty much any other category of compromised software, which is saying quite a lot. But in general I agree with you.)

Tiktok is indeed more malicious than any other app I can think of, but it isn’t a backdoor.

mo_ztt ✅
link
fedilink
28M

According to this guy, that’s exactly what it is – he claimed that at least on the Android version, it’s got functionality to download arbitrary new binaries and start running them when instructed to by its central servers. That’s alongside other worrying things like always-on location tracking and storage, code injection to any web site you visit through their browser, and perusal of all your contacts and messages.

I remember seeing the same thing claimed in more authoritative analyses of the thing, but for some reason I can’t find them now, so we have to take it with a grain of salt I guess. But in my mind (based on my memory of reading things like the link above) it’s extremely maliciously designed.

Downloading and running binaries isn’t anything to worry about. Many apps do that to circumvent the update delays that apple and google put in place.

Browsers also download and run code from any website you visit. The security measures make sure that this code can’t just do anything, just like on android.

mo_ztt ✅
link
fedilink
0
edit-2
8M

Many apps do that to circumvent the update delays that apple and google put in place.

Source?

Browsers also download and run code from any website you visit.

Accurate, yes.

The security measures make sure that this code can’t just do anything, just like on android.

Lol can I send you an Android binary to run which has the ability to use your camera and microphone and read your text messages, files, and contacts? Like Tiktok does. Don’t worry, it can’t just do anything.

So the argument isn’t that downloading a running a new binary will somehow give Tiktok new capabilities within the security model that weren’t there for the previous code. The argument is that (a) the security measures in place are way too weak and (b) the ability for any individual device to download and run new custom functionality on-demand enables someone to add new functionality to any individual device, outside the main channel of updates for everyone’s devices. What do you think the word “backdoor” means, if not that?

Ripped right from wikipedia: “A backdoor is a typically covert method of bypassing normal authentication or encryption in a computer, product […].”

Given you can’t be arsed to google that on your own, I don’t see s point in arguing.

Create a post

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

  • Posting a link to a website containing tracking isn’t great, if contents of the website are behind a paywall maybe copy them into the post
  • Don’t promote proprietary software
  • Try to keep things on topic
  • If you have a question, please try searching for previous discussions, maybe it has already been answered
  • Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
  • Be nice :)

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

  • 0 users online
  • 84 users / day
  • 537 users / week
  • 1.5K users / month
  • 6.58K users / 6 months
  • 1 subscriber
  • 2.36K Posts
  • 55.4K Comments
  • Modlog