TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

The UDID leak is a privacy catastrophe

119 点作者 gnufs超过 12 年前

13 条评论

wamatt超过 12 年前
After reading this, I'm still a bit confused as to why this is a catastrophe?<p>Should we change our paypal passwords? Or worry about getting more spam? etc Why should an end user (eg my mom) care?<p>I'm not saying there aren't serious repercussions, just having a hard time seeing exactly what they are.
评论 #4473991 未加载
api超过 12 年前
No, the UDID is a privacy catastrophe.
评论 #4474293 未加载
评论 #4476372 未加载
prof_hobart超过 12 年前
Given that the UDID has been deprecated in iOS5 and Apple are now rejecting apps that use it, I'd be interested to see what level of actual vulnerability there is these days.
评论 #4474409 未加载
评论 #4475117 未加载
dekz超过 12 年前
&#62; If your UDID is contained in the list, take a minute to help us identify the traitor that did give your information to the FBI without any your agreement and without warrant !<p>Wouldn't it also be useful to gather information about who WASN'T on the list and what Apps they have? Maybe device type as well.
评论 #4474108 未加载
评论 #4475492 未加载
评论 #4473901 未加载
ganley超过 12 年前
If I don't play games, much less belong to any social gaming networks, does this affect me at all?
评论 #4474122 未加载
FredericJ超过 12 年前
If you've been exposed take some time to help us identify who gave this UDID's to the FBI. (Already working with 3 exposed device owners) <a href="http://news.ycombinator.com/item?id=4473833" rel="nofollow">http://news.ycombinator.com/item?id=4473833</a>
评论 #4473907 未加载
DenisM超过 12 年前
A quick reminder for iOS developers:<p>Apple has provided a number of replacements for UDID, that address some of the UDID uses without it being as much of a privacy problem. It's all still under NDA, so I posted my summary on the Apple's developer forums (iOS developer login required): <a href="https://devforums.apple.com/message/723147" rel="nofollow">https://devforums.apple.com/message/723147</a>
david_shaw超过 12 年前
Has anyone verified that this UDID leak isn't just the old "Goatse Security" leak re-branded? I'm not saying I have any evidence to that, but it seems strange that the "ownage" document didn't mention anything about how the hack was done.<p>Along those lines, has there been any talk of the attack vector? To get a list like this, it would seem that AT&#38;T (as was the case with "Goatse Security") or Apple would need to be compromised to get this list.
评论 #4474555 未加载
评论 #4474052 未加载
robbiep超过 12 年前
If you disallow an app from sending you push notifications, will it still have your UDID/Device ID? Or if you never enable it, does the app &#38; app server never get it?
评论 #4474080 未加载
panacea超过 12 年前
That ended ubruptly and without much in the way of resolution?
评论 #4473743 未加载
gmac超过 12 年前
The post adds approximately nothing to the headline.<p>It's also worth noting that Apple has deprecated the UDID, and new and updated apps are no longer able to access it.
nodesocket超过 12 年前
Forgive me if I am mistaken, but don't all you need is a UDID to send a push message to a device? I.E. via Urban Airship.
评论 #4473748 未加载
ideawave超过 12 年前
The server is really slow, is this being run an an FBI laptop? (asking for people to upload their UDID)