Comment on Ice obtains access to Israeli-made spyware that can hack phones and encrypted apps
BrianTheeBiscuiteer@lemmy.world 7 months ago
Found an article that says this software is usually in-memory only and restarting regularly will purge it (obviously you could get reinfected): zdnet.com/…/is-meta-secretly-scanning-your-phones…
geneva_convenience@lemmy.ml 7 months ago
rc__buggy@sh.itjust.works 7 months ago
Every early morning. Mine is right before my alarm goes off, so the notification sounds just meld.
Also, no one should be using biometric data to log into thier phones. 6 digit pin isn’t very obtrusive once you get used to it
WhyJiffie@sh.itjust.works 7 months ago
worthless when there’s cameras in every corner that record as you unlock your phone all 40 times through the day
rc__buggy@sh.itjust.works 7 months ago
Fuck you too, buddy. You’re being recorded as you input your absurdly long password into your phone. They probably got it on camera. haha
WhyJiffie@sh.itjust.works 7 months ago
my password? which one? I very rarely type any passwords in public… but fuck me for having forethought!
lIlIlIlIlIlIl@lemmy.world 7 months ago
6 digit pin will be broken in less than 40 minutes by a graybox. A 6-digit pin is way more vulnerable than someone who uses a 30-digit password + biometrics
xthexder@l.sw0.com 7 months ago
That’s for breaking a bcrypt hash, and I don’t believe there’s any way to extract the pin hash from a phone since it happens inside a secure hardware layer (like a TPM). If it is possible, the attacker would most likely have to physically destroy your phone to get at it. To bruteforce a 4 digit pin with retry lockout timers, it takes 16 hours to try all combinations, according to a tool I found that auto-enters pins via usb keyboard emulation.
lIlIlIlIlIlIl@lemmy.world 7 months ago
What lockouts? appleinsider.com/…/iphone-hacking-tool-graykey-te…
rc__buggy@sh.itjust.works 7 months ago
Sure bro, put a 30 character password into your phone every time you want to find the nearest fucking coffee shop.
lIlIlIlIlIlIl@lemmy.world 7 months ago
I just needed this info out there, I don’t really care what you do - I just need to make sure Lemmy stays safe and you’re spouting leaky insecurity disguised as best practices.
Best of luck
lIlIlIlIlIlIl@lemmy.world 7 months ago
If you’re in the USA and a cop gets your phone they’re going to pop it onto a graybox and will be digging through your shit up to their elbows. I wish I were wrong
lIlIlIlIlIlIl@lemmy.world 7 months ago
With biometrics I only enter it once a week, at the very most. It’s insane to me that people want their phones to be less secure, but best of luck to you and your super secure TSA lock on your phone lol
ChunkMcHorkle@lemmy.world 7 months ago
After I didn’t see the mentioned content I looked around Zdnet, and I think you might have meant to link this article instead:
zdnet.com/…/rebooting-your-phone-daily-is-your-be…
Bad click, it happens. Good article, though. Thanks!
BrianTheeBiscuiteer@lemmy.world 7 months ago
So weird. I don’t even remember viewing that article. Maybe it was a link just above my address bar.