Hacker Teaches iPhone Forensics To Police
Ponca City, We love you writes "The Mercury News reports that former hacker Jonathan Zdziarski has been tapped by law-enforcement agencies nationwide to teach them just how much information is stored in iPhones — and how to get it. 'These devices are people's companions today,' says Zdziarski. 'They're not mobile phones anymore. They organize people's lives. And if you're doing something criminal, something about it is probably going to go through that phone.' For example, every time an iPhone user closes out of the built-in mapping application, the phone snaps a screenshot and stores it. Savvy law-enforcement agents armed with search warrants can use those snapshots to see if a suspect is lying about whereabouts during a crime."
"For example, every time an iPhone user closes out of the built-in mapping application, the phone snaps a screenshot and stores it." - TFS What?
I ate your fish.
You would think most criminals would know not to carry a cell phone at all, since the cell towers tracks and record their location at every moment.
Say, can I borrow your cell phone tomorrow afternoon? Just for an hour or so.
In this news on slashdot.org are many, many good reasons for not buying or using iPhone or iSpy as it shall be called from today.
It is also illegal when your electronics spy on you. So in fact apple software breaks the law by taking a screen shot of the map application and storing it.
Vlad farted
Hilariously, it seems like the purpose of the article is to make us feel safer.
Most smart people find other work for two reasons:
1) When you are smart, you have options. Smart is a talent people want, particularly practical smarts of the problem solving nature. So you find that when you have that, you have options of where to work and what to do. Makes crime less attractive.
2) Smart people can better understand the consequences for crime, and the likelihood of getting caught especially on repeated attempts. So even if crime is tempting, they don't do it because they are smart enough to think ahead and realize it isn't worth the risk over all.
Most criminals are just not that bright. A friend of mine has worked with the public defender's office and the stories he has of the stupid criminals they try to defend and just amazing. They get caught and busted by their own stupidity more than anything else. They love to run their mouths to the police, they never plan their crimes, etc, etc. More or less the only time they were able to get someone off the hook was when the police made a mistake. Otherwise, the criminals sunk themselves.
Besides the criminals cognitive abilities...
Since the can be tracked and so forth, especially if the operators save what celltower they have been using.
I would love to see a combination of passwordmaker's ( http://passwordmaker.org/ ) functionality and encfs ( http://www.arg0.net/encfs ) or the like.
Then one could still have 14033 for unlockning ones phone, with all data. And yes, that was my real password. All you have to do now is find me.
Clue, I has a N900.
Professional criminals are professional because they're inherently paranoid. Every action is thought out well in advanced. If you're getting caught with evidence on your phone, well...you're not very professional at criminal activity now are you? Ahh, but the police and FBI will say otherwise just to garner how damn good they are.
Face it, no organization wants to admit there are criminal elements in the world that can and have never been caught. This is reality, not a Hollywood movie with ending in favor of the good guys.
Or at least ones with half a brain do. I'm not much of a criminal, but were I to become one, the last thing I'd use would be a smartphone. It's just not economical to toss in the garbage if you feel like you're being watched.
Okay I know it sounds gross.. but hear me out first..im 15 btw.
so my teacher let me sit at her desk cause she's cool like that and i raised my hand first. im on my period (sry TMI i know) and i have a heavy flow. i could feel the blood coming out and i didnt get a chance to change my tampon that day. so i pretended to drop my pencil and i went under the desk and i slipped on a tampon from my purse. i believe in female rights and i support breast feeding in public, etc.. so i dont see a problem with this, as long as no one else sees anything. but as i was taking out the used tampon the guy that i kinda like (who im also friends with) came over to get a sheet of looseleaf and he saw everything. i mean i shaved and everything but he saw blood running down my leg and it smelled fishy. and he told EVERYONE and he wont talk to me and people are saying that im grimy, a whore, unclassy, white trash, etc. and i dont know what to do, advice?
This is just making it even easier than it already was.
If it was really necessary, it is possible to triangulate the location of your phone by determining which towers your phone was communicating with.
If your phone has a location feature, you'll notice that when you try to disable it you will be presented with the options "Location On" or "911 Only". There doesn't seem to be any way to completely disable this feature. At least this is the case on Motorola and Blackberry phones.
If you are concerned about someone being able to track your location via your cell phone, the safest way to ensure it won't happen is to pull the battery.
=
instead of "checking if the suspect" is lying, how about "verifying what he says". Would sound nicer, especially taking into account that the screenshots were not originally designed for tracking persons.
I really thing there are two types of criminals. Those that are intelligent and plan out what they do, and for the most part try to avoid getting arrested because they can't take the battery out of their cell phone. And those that are high on crack and probably unaware of how a cell phone even works.
Nobody would ever be clever enough to generate false data.. for an iAlibi? ..or clever enough to hack into and plant incriminating evidence? (not that there's ever been a security breach!)
..don't panic
If you're a criminal and you're using a cell phone or, especially, a smart phone to conduct your criminal activities, you deserve what you get. Stupidity often solves a lot of problems that way.
Just WTF is a "former hacker"? That's like a "former scientist" or a "former student" or - - I suppose if you accept "hacking" to mean "criminal cretin living in his mother's basement breaks into email accounts and spreads bots around the internt" - then someone COULD be a "former hacker". A real hacker never stops hacking. It's more than a way of life - it's a way of thinking!
"Windows is like the faint smell of piss in a subway: it's there, and there's nothing you can do about it." - Charlie Br
The fact that you do not use an iPhone will be presumed objective evidence that (not) doing so was to avoid getting caught. The rumor created here is that Google Earth goes live next year and all activity will be recorded. That's the kind of change we voted for - Hope not!
Do ALL people who work on horse farms have an IQ higher than Einstein's? Or is it just most of them? Or is he just basically a freak case that proves nothing?
I guess you grandfather smoked 80 cigarettes a day since he was 12 and he got run over by a truck one day short of his 120th birthday while training for a marathon.
Confucius say, "Find worm in apple - bad. Find half a worm - worse."
Your iPhone is clearly not your friend, and this isn't the only story about why today. It's the fink waiting to rat you out at the first opportunity. Go look up the new Safari html 5 database tracking that uniquely identifies you to advertisers. Until the phone comes with strong enough encryption to defeat this hacker in addition to remote wipe that truly wipes the phone, you shouldn't be sleeping too well at night, courtesy of Mr. Steve Jobs.
"It's the height of ridiculousness to say for those 9 lines you get hundreds of millions."
While they are at it they can hack it to make it not suck?
Perhaps I misunderstand something here but wouldn't the 'locating data' only tell something about the whereabouts of the PHONE?
That is what TFA header should be
http://arstechnica.com/apple/news/2010/09/rldguid-tracking-cookies-in-safari-database-form.ars ....
I wonder how many will soon be tracked via Flash-based cookies and deep stored history options.
The Safari database seems to be an open and safe way to track a user via a normal 'ad' after a site visit.
Stop giving state task forces and feds signals intelligence via a next generation of toys in your pocket.
Go simple and swap any used device out asap.
Try a collection of dumb devices with no networking or life long databases.
Recall the Malcolm X script... "Don't never write nothing down
Cause if they can't find no [iphone] they ain't got no proof..."
The serial numbers, hidden databases, location services ect, almost makes you think someone really put thought into tracking.
Any ex CIA director's investment banks seed money linked to funding this stuff?
Domestic spying is now "Benign Information Gathering"
"...Savvy law-enforcement agents armed with search warrants can use those snapshots to see if a suspect is lying about whereabouts during a crime."
Yes, and now that it has been announced to the world, saavy criminals will figure out a way to turn off this caching.
It really does amaze me sometimes the blind ignorance in thinking there are no criminals out there that are computer saavy that also might happen to read articles online.
Sometimes, the best "secrets" are ones that you keep that way.
I'm sorry, but how many criminals carry iPhones? I thought criminals used Blackberrys to arrange their complex board meeting schedules.
Apple can easily change this and / or make so if you jailbreak then EULA says you no longer have the right to use ios? so you are stealing ios? Just like how they calm that useing payed boxed copys of osx non apple systems is stealing.
I am a [European] lawyer and the Directive is clearly not applicable. The highlighted text explains the addresses:
The first general obligation in the Directive is to provide security of services. The addressees are providers of electronic communications services. This obligation also includes the duty to inform the subscribers whenever there is a particular risk, such as a virus or other malware attack.[5]
The second general obligation is for the confidentiality of information to be maintained.[6] The addressees are Member States, who should prohibit listening, tapping, storage or other kinds of interception or surveillance of communication and “related traffic”, unless the users have given their consent or conditions of Article 15(1) have been fulfilled.
Searching your phone is covered by other laws.
You're so full of shit it's funny. You seem completely clueless about how the various devices you use operate. Do you honestly believe Android, Windows or Linux don't cache information? This has nothing to do with "spying" on the user, haha!
It is indeed not "illegal" for your phone to cache information for reuse at a later time, in fact it's quite common and useful, if you don't like you should stop using computers. Apple's software does not break any laws by taking a screenshot.
I hope to God you're a very, very young person because your post was worthless drivel mostly based upon some kind of hatred of a brand(!). This is not a war between Android and Apple. Here I thought Icelandic people were pretty cool. I guess not.
As the article states, Jonathan Zdziarski has been doing this for several years. He's the author of iErase/iWipe (which seems to have been in the App Store previously but is Cydia-only now), runs iPhoneInsecurity.com, and has a blog with quite of bit of stuff related to iPhone forensics and security. He even has a post specifically addressing the "screenshot leak".
Actually it sounds like an opportunity for someone to write an app to clear ALL the data you don't want stored periodicly. If Steve won't let it into the store, then it proves that he and his purposes are evil.
Why would anyone use an expensive smart phone to handle communications for illegal enterprises? Cheap, pre-paid, zero audit trail phones are the way to go. Why ditch a $600 phone every few days?
Cheap Nike air Jordan shoes33$,Air Force 1 33$, Nike dunks SB shoe,Nike Shox shoe. Wholesale Cheap Nike shoes with discount jersey, High quality T-shirts,ED hardy t-shirts,ED Hardy hoodies,ED hardy shoes,ED hardy Jeans,Evisu shoes,GUCCI shoes,LV Handbag,Chanel Handbagwelcome to ==== http://www.clothes6.us/ ==== Nike shox(R4,NZ,OZ,TL1,TL2,TL3) $33 Handbags(Coach lv fendi d&g) $33 Tshirts (Polo ,ed hardy,lacoste) $16
Jean(True Religion,ed hardy,coogi) $30
Sunglasses(Oakey,coach,gucci,Armaini) $12
New era cap NY $9
Bikini (Ed hardy,polo) $18
$9
========= http://www.clothes6.us/ ======
========= http://www.clothes6.us/ ====== Cheap Nike air Jordan shoes33$,Air Force 1 33$, Nike dunks SB shoe,Nike Shox shoe. Wholesale Cheap Nike shoes with discount jersey, High quality T-shirts,ED hardy t-shirts,ED Hardy hoodies,ED hardy shoes,ED hardy Jeans,Evisu shoes,GUCCI shoes,LV Handbag,Chanel Handbagwelcome to ==== http://www.clothes6.us/ ==== Nike shox(R4,NZ,OZ,TL1,TL2,TL3) $33 Handbags(Coach lv fendi d&g) $33 Tshirts (Polo ,ed hardy,lacoste) $16
Jean(True Religion,ed hardy,coogi) $30
Sunglasses(Oakey,coach,gucci,Armaini) $12
New era cap NY $9
Bikini (Ed hardy,polo) $18
$9
========= http://www.clothes6.us/ ======