TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Signal CEO Hacks Cellebrite iPhone Hacking Device Used by Cops

19 pointsby gmemstrabout 4 years ago

3 comments

DevNullDeviceabout 4 years ago
&gt; I was recently out for a walk when I saw a small package fall off a truck ahead of me. As I got closer, the dull enterprise typeface slowly came into focus: Cellebrite.<p>While I&#x27;m skeptical of the method of acquisition, would be interesting if they actually got the hardware and could publish details.<p>Update : other news outlets reporting with more details, but not confirmation [0]<p>[0] <a href="https:&#x2F;&#x2F;arstechnica.com&#x2F;information-technology&#x2F;2021&#x2F;04&#x2F;in-epic-hack-signal-developer-turns-the-tables-on-forensics-firm-cellebrite&#x2F;" rel="nofollow">https:&#x2F;&#x2F;arstechnica.com&#x2F;information-technology&#x2F;2021&#x2F;04&#x2F;in-ep...</a>
评论 #26896091 未加载
stuntabout 4 years ago
&gt; Along with his colleagues, Marlinspike analyzed the device and found that it included several vulnerabilities that could allow an attacker to include an &quot;otherwise innocuous file in an app&quot; that when it gets scanned by a Cellebrite device exploits it and tampers with the device and the data it can access.<p>&gt; Marlinspike published details about the exploits outside of normal &quot;responsible disclosure&quot; guidelines and suggested that he is willing to share details of the vulnerabilities as long as Cellebrite does the same with all the bugs the company uses to unlock phones, &quot;now and in the future.&quot;<p>Pretty sure Cellebrite isn&#x27;t going to do that because of their business model.<p>&gt; In their analysis of the device, Signal researchers also found that it contained packages signed by Apple, and likely extracted from the Windows installer for iTunes version 12.9.0.167. According to Marlinspike, this could be a copyright violation.<p>I like to know how Apple will react to this!
评论 #26895861 未加载
a0-prwabout 4 years ago
&quot;It fell off the back of a truck&quot; XD