TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

SiriSpy – iOS bug allowed apps to eavesdrop on your conversations with Siri

551 点作者 mnem超过 2 年前

17 条评论

freeplay超过 2 年前
I think they burried the lede here. Conversations with Siri are probably pretty generic but being able to evesdrop on keyboard dictation is pretty severe. I know people that use dictation for the majority of their text messages and email.
评论 #33351434 未加载
评论 #33348582 未加载
评论 #33349148 未加载
评论 #33349904 未加载
walterbell超过 2 年前
If an iOS app did not have &quot;Background App Refresh&quot; permission, could it still have exploited this vulnerability?<p>Can physical microphones be removed from Apple devices by a repair shop, while still allowing use of wired&#x2F;wireless headsets?<p>We need Purism-style hardware kill switches for microphones, cameras and radios.
评论 #33350875 未加载
评论 #33352065 未加载
评论 #33349022 未加载
评论 #33356989 未加载
_hhkc超过 2 年前
&quot;iOS bug allowed apps to eavesdrop on your conversations with Siri&quot; should be &quot;iOS bug allowed apps to eavesdrop on your interactions with Siri and dictation over bluetooth&quot;
sneak超过 2 年前
If you care about privacy, you should disable Siri and Dictation and blacklist guzzoni.apple.com.
nick88msn超过 2 年前
Is there actually people using siri? It’s pretty useless here in Italy. Most conversations I guess could be something like “raise the volume” “call mom” or stuff like that.
评论 #33354422 未加载
2T1Qka0rEiPr超过 2 年前
The struck-through:<p>&gt; and then receive a reply in the form of &quot;here&#x27;s what I found on the web...<p>Really made me chuckle. As a non-Apple user who has to put up with Homepods, this rings so very true.
traceroute66超过 2 年前
I&#x27;m an avid iPhone user but have never had the need or the desire to use Siri.<p>I suggest people do what I do, load a profile that disables Siri - easily created using the Apple Configurator tool (under &quot;Restrictions&quot; untick &quot;Allow Siri&quot;).<p>N.B. I&#x27;ve never looked closely under Settings on the phone itself, there may well be Siri off option there ? But I just load profiles as I find its easier for hardening.
atlex2超过 2 年前
Confused why you can’t use this to transcribe from any AirPods in your vicinity? I thought anyone could subscribe to a btle gatt attribute.
评论 #33353319 未加载
greenicon超过 2 年前
I wouldn’t have expected Opus in the AirPods. Unexpected from Apple and a quite interesting workaround around the mode switching.
评论 #33354067 未加载
tinus_hn超过 2 年前
Wonder if it’d also be possible to send commands to Siri, that could also have some implications.
runjake超过 2 年前
A $7,000 bounty for eavesdropping and TCC (app permissions) vulnerabilities. Insulting.
评论 #33351078 未加载
评论 #33350250 未加载
评论 #33350046 未加载
评论 #33354807 未加载
评论 #33353315 未加载
评论 #33350275 未加载
lapcat超过 2 年前
Don&#x27;t forget that iOS and macOS silently re-enable Bluetooth on every software update. <a href="https:&#x2F;&#x2F;lapcatsoftware.com&#x2F;articles&#x2F;bluetooth.html" rel="nofollow">https:&#x2F;&#x2F;lapcatsoftware.com&#x2F;articles&#x2F;bluetooth.html</a>
评论 #33349080 未加载
评论 #33348999 未加载
jdelman超过 2 年前
$7k feels like a paltry sum for this discovery. Rambo is doing yeoman&#x27;s work.
评论 #33348282 未加载
henriquez超过 2 年前
Seems like $70,000 would have been a more fair bounty. This is a really nasty bug.
评论 #33348995 未加载
评论 #33348498 未加载
hazyc超过 2 年前
Is anyone else an avid iPhone user, yet also someone who never uses Siri? I&#x27;ve used an iPhone exclusively for the past 8 years, and I can count on one hand the number of times I&#x27;ve used Siri. Interestingly, the one person I know who loves using Siri is my 70yr old dad.
评论 #33348755 未加载
评论 #33349862 未加载
评论 #33348680 未加载
评论 #33349231 未加载
评论 #33349090 未加载
评论 #33350554 未加载
评论 #33348659 未加载
评论 #33348739 未加载
评论 #33348647 未加载
评论 #33350247 未加载
评论 #33351334 未加载
评论 #33348835 未加载
评论 #33349821 未加载
评论 #33348989 未加载
评论 #33349104 未加载
评论 #33349473 未加载
评论 #33357901 未加载
评论 #33350478 未加载
评论 #33348688 未加载
评论 #33348681 未加载
评论 #33348670 未加载
评论 #33349053 未加载
评论 #33349107 未加载
评论 #33354439 未加载
评论 #33350847 未加载
评论 #33350627 未加载
评论 #33348770 未加载
评论 #33350528 未加载
评论 #33349205 未加载
QuackyTheDuck超过 2 年前
Sigh … I so much want Apple to get their shit together. To me it feels like software quality reached a new low.
评论 #33349978 未加载
评论 #33348492 未加载
评论 #33348483 未加载
评论 #33348398 未加载
mikece超过 2 年前
I don&#x27;t want stories like this to be the reason I&#x27;m glad I switched to Graphene OS. I don&#x27;t want anyone hacked or spied on.
评论 #33348872 未加载
评论 #33354572 未加载
评论 #33348442 未加载