Today, Project Zero released a 0-click exploit chain for the Pixel 9. While it targets the Pixel, the 0-click bug and exploit techniques we used apply to most other Android devices.
https://t.co/tMhM7OFLBp
An iPhone has so many privacy and security features that it’s very easy to miss them. Now’s a good time to dive in and get to know them all. https://t.co/7QWYVmdroz
Last month with @rj_gallagher we published an investigation into the shady SMS market and its implications for security. For those who want to go deeper @gabriels_geiger and I have written a more technical briefing https://t.co/qaBkNCW99G
Pretty wild security fail in a big operator's IMS - @o2 and @mavenir allowing their debug SIP headers through the P-CSCF to the UE, exposing the cell ID, IMSI and IMEI of the B party...
🚀Introducing Landrun: a CLI command to sandbox any Linux process using Landlock, no root, no containers, no headaches.
Huge thanks to @l0kod (Landlock) and Günther Noack (Go lib) for making this possible!
https://t.co/oU7EEhhRZk
#Landlock#Linux#Security#Sandbox#Kernel
😍
In my field of fun hacking reversing unknown protocols I always find some checksum or CRC or hash that needs to be identified.
The CRC catalogue is priceless for those moments.
https://t.co/QyBA93vYMr
Testing again Galileo OSNMA on a small RISC-V microcontroller. @n6rfm wanted some help troubleshooting his system, so I built and tested a known-good firmware image for him. The Galmon data feed is down, so I'm using my own uBlox receiver.
CAMEL had always been one of those weird #3GPP protocols that was hard for me to find info on or play with, I had a chance to work with it last year and get familiar with CAMEL, so here's the basics of CAMEL charging flows:
https://t.co/edXuSRs6G4
This is a game-changer announcement by Apple around cryptography. It is the “HTTPS moment for AI” in some ways..
Here is what this means: your private confidential data can be pooled with other data sources and used to securely improve your UX and that of the wider community without even revealing your private data at all: it stays encrypted end-to-end. This is a win-win, a rare non-zero-sum game in technology.
For example, consider a picture on your device. It gets converted to vector embeddings (the numbers you see below), then encrypted and sent to the “Homomorphic Encryption” (HE) process running on a server which returns a fully encrypted result back, without decrypting (revealing) the encrypted user private data sent initially - even for it’s own processing. This is search over fully encrypted data!
The user gets a notification that the picture region here looks like the Eiffel Tower in this example.
Thus this system enables using the network hivemind to securely to improve the UX across so many applications in the time ahead. It will especially benefit AI products which have a direct relationship with end-users as now the standalone tool with access to confidential data can also benefit from network effects for optimal UX.
Information wants to be free and mashed together endlessly, and this pushes in that direction.
cc @AravSrinivas@sama -> FHE is a key enabling technology over a 5 year horizon. This is how you leapfrog Google.
It's possible to disable 2G on iPhones when you have Lockdown mode enabled. Apple has included this to mitigate against bidding-down / downgrade attacks to GSM from cell-site simulators (IMSI catchers / false base stations).