Apple’s iMessage encryption promises may have been false

iPhone 6 Plus Review  Image Source: BGR If you listen to Apple’s statements about protecting iMessage and FaceTime communications, you’...

iPhone FBI iMessage FaceTime BackdooriPhone 6 Plus Review Image Source: BGR
If you listen to Apple’s statements about protecting iMessage and FaceTime communications, you’d think Apple has the best encryption game in town. Not only that, but Apple isn’t playing ball with the government, as it’s looking to protect your data more than it wants to cooperate with intelligence agencies.
But a new report looking into the iPhone’s security measures that are supposed to protect your data suggests that everything we’ve been told about iMessage encryption may have been false in at least one aspect: Your data might only be safe if you’re not a suspect.
Nicholas Weaver, a computer security researcher at the International Computer Science Institute in Berkeley, wrote an interesting piece in Lawfare that dives right into the safety of the iPhone. According to him, iMessage and FaceTime conversations can be wiretapped by the FBI or any authority with the proper paperwork, in spite of what Apple has told us.
“We’re not reading your email. We’re not reading your iMessage,” Apple CEO Tim Cook told Charlie Rose in mid-September last year. “If the government laid a subpoena to get iMessages, we can’t provide it. It’s encrypted and we don’t have a key. And so it’s sort of — the door is closed.”
Before pointing out the flaw – or intentional design – that leaves a backdoor open in iMessage or FaceTime, Weaver says that an iOS device may be the most secure general purpose device on the market so long as you configure it correctly. But even so, the iPhone, iPod touch or iPad can offer information to law enforcement agencies.
For example, the IMEI of an iPhone is a unique number that can help the FBI identify a suspect as long as he or she is using the device over a carrier network. The FBI could also track the user as long the device is active, with the proper warrant.
The data on the phone, including iMessages, can also be tapped into, though it may be harder at first. The 4-digit passcode can be brute-forced and a user can be convinced to unlock the device using a fingerprint. Furthermore, if the iPhone is backed up in iCloud, the FBI can obtain the backup including all iMessages from Apple.
Indeed, the FBI might have problems with deciphering live iMessage conversations, but it can obtain plenty of metadata about them with Apple’s help. And Apple can’t pretend that metadata doesn’t exist because it needs it to make iMessage conversations possible. For example, if you’re a suspect, the FBI will know whom you talked to, for how long, and how big the files you exchanged were. It won’t immediately know what you talked about with your friends, though.
But Weaver says there’s a flaw in iMessage that would let the FBI – with Apple’s explicit help following a warrant – see all the iMessages you send and receive on your devices What happens when you send an iMessage to someone who’s also an iOS user is that there’s a data exchange between your device, Apple’s servers, and the recipient’s device – Weaver uses an Alice-messages-Bob example, so let’s stick with those names.
Alice’s iPhone asks Apple’s servers the following things before sending a message: “I am Alice, please tell me all my public keys” and “I am Alice, please tell me all of Bob’s public keys.” The first message is needed so nobody can add a device to Alice’s account without her knowledge to spy on her, and the second request is made so the iMessage reaches all the devices that Bob has (iPhone, iPad, iPod touch, Mac and Watch can receive iMessages). This exchange happens every time a message is sent, without anyone’s knowledge.
After receiving responses from Apple’s servers, Alice’s iPhone encrypts the message with all the public keys and sends the result to Apple, which forwards it to Bob. Apple has no access to the contents of the message itself, but because it handles the delivery system, it can assist the FBI in wiretapping iMessages.
With Apple’s help, the FBI can tap into both of those requests so it’ll see all the iMessages Alice sends to Bob, and all the iMessages Alice receives from anyone. And that would all happen without anyone’s knowledge – to the suspects and their contacts, iMessage exchanges would continue to be a seamless process.
Obviously, the catch with this approach is that the FBI needs a per-case warrant – in other words, even if a backdoor into iMessage and FaceTime exists, it can’t apparently be used for casting a wide data collection net.
Apple so far has not responded for requests to comment on these claims.

COMMENTS

Name

10 , 1 , 6 , 1 , Accessories , 2 , Ads , 2 , Adventure , 1 , Airlines , 1 , Airport , 1 , Alarm clock , 1 , Alcatel , 1 , alexa , 1 , Alibaba , 1 , Amazon , 11 , Amazon go , 1 , Amusement Park , 1 , Android , 103 , Android 7.0 , 1 , Android Auto , 3 , Android Wear , 1 , APK , 1 , App , 1 , Apple , 73 , Apple Store , 2 , Apple TV , 1 , appletv , 1 , Apps , 29 , Ara , 1 , Architech , 1 , Art , 1 , Asteroid , 1 , Aston Martin , 1 , Audiophiles , 1 , Autodesk , 1 , Automobiles , 4 , Autonomous Race , 1 , av , 1 , Ban , 1 , Battery , 2 , Beat Headphone , 1 , Best Buy , 1 , Beta , 1 , biggest upgrade , 1 , BMW , 1 , BMW i8 , 1 , Bugatti , 1 , Bugs , 4 , Calendar , 1 , Camera , 2 , Carbon Fiber , 1 , Carplay , 1 , Cars , 18 , Clock , 1 , Cortana , 2 , culture , 3 , Data center , 1 , Deals , 1 , Display , 1 , Droid , 1 , Drone , 7 , E-Bikes , 1 , Electric Cars , 2 , Electronics , 1 , Energizer Energy , 1 , Environment , 1 , Experiments , 1 , Facebook , 10 , facebooktv , 1 , facebookvideo , 1 , Ferrari Land , 1 , Firefox , 1 , Fitness Tracker , 1 , Formula 1 , 1 , Gadgets , 3 , Galaxy S8 , 5 , Game , 4 , Games , 27 , Gaming , 13 , Ganes , 1 , gear , 8 , Gionee , 1 , Gmail , 1 , Google , 36 , Google Maps , 2 , Google Now , 2 , Google Station , 1 , Google Wifi , 1 , GoogleHome , 2 , GOT , 3 , GT , 1 , Guide , 1 , Hack , 2 , Hackathon , 1 , Hangouts , 1 , Headphone , 1 , Here Maps , 1 , home , 1 , Honor V9 , 1 , hoverbikes , 1 , HTC One X10 , 1 , Htc10 , 1 , Huawei , 4 , Hub , 1 , Hydrocarbon , 1 , Hyperloop , 1 , iCloud , 1 , iMac , 7 , Images , 1 , iMessage , 1 , Immigration , 1 , Impacts , 1 , India , 1 , Industry , 1 , Intel , 1 , Internet , 7 , IOS , 18 , iOS 9 , 2 , ios10.3 , 1 , iPad , 5 , iPhone , 14 , iphone 6 , 1 , iPhone 7 , 1 , iPhone 8 , 7 , ISRO , 2 , iTunes , 2 , KTM , 1 , LastPass , 1 , Launcher , 2 , Law , 1 , Leaks , 1 , Legal , 1 , LG , 8 , LTE , 1 , M , 5 , Mac , 8 , Maps , 2 , Mario , 2 , Marshmellow , 2 , Meizu , 1 , Messenger , 2 , Methane , 1 , Microsoft , 23 , Minions , 1 , mobile , 26 , mobiles , 7 , Movies , 1 , Mozilla , 3 , Music , 6 , NASA , 11 , Netflix , 1 , News , 14 , Nexus , 6 , Nokia , 4 , Nokia 3310 , 1 , Nougat , 2 , oneplus , 2 , OS , 1 , Pc , 1 , PDF , 1 , Peugeot , 1 , Pixel , 2 , Pixel 2 , 1 , pizza , 1 , Play Store , 3 , PlayStation , 3 , Pokemon Go , 3 , Porsche , 1 , PowerSource , 5 , Practo , 1 , Prank , 1 , Prime , 1 , Processor , 1 , PS , 1 , qrcode , 1 , Qualcomm , 2 , Resarch , 2 , Reviews , 2 , robot , 1 , robots , 9 , Rocket , 6 , Runtastic , 2 , Samsung , 24 , Sandisk , 1 , Satellite , 4 , science , 5 , SD Card , 2 , SDK , 1 , Secure Storage , 1 , Security , 1 , services , 2 , Shazam , 1 , Shield , 1 , Siri , 1 , Skype , 1 , slack , 1 , Smartphones , 13 , SmartWatch , 5 , snapchat , 2 , snapcode , 1 , Snapcodes , 1 , Snapdeal , 2 , Snapdragon , 1 , SoftBank , 1 , software , 4 , Solor Roof , 1 , Sony , 13 , Sony Xperia , 1 , soundhound , 1 , Space , 14 , SpaceX , 2 , Sportscar , 1 , Square , 1 , Supercars , 3 , Supercomputer , 1 , T-Mobile , 1 , tablet , 1 , Tablets , 3 , Taxi , 1 , Tech , 94 , Tesla , 3 , Torrent , 2 , Tracker , 1 , Transportation , 1 , Trump , 2 , Turing , 1 , TV , 6 , Uber , 3 , Ubuntu , 1 , Update , 9 , Viber , 2 , Videocaling , 1 , VoiceRecognition , 1 , Volvo , 1 , VR , 5 , Watch , 3 , Web , 1 , Whatsapp , 3 , WiFi , 1 , Windows , 19 , Windows 10 , 1 , work , 1 , Xbox , 3 , Xiaomi , 3 , Xiomi Redmi Note 4 , 1 , Yacht , 1 , Yahoo , 2 , Yankee , 1 , Yota , 1 , Youtube , 4 , YU , 1 , Zelda , 1 ,
ltr
item
beebox: Apple’s iMessage encryption promises may have been false
Apple’s iMessage encryption promises may have been false
http://i2.wp.com/cdn.bgr.com/2014/09/iphone-6-plus8.jpg?w=625
beebox
https://beeboxx.blogspot.com/2015/08/apples-imessage-encryption-promises-may.html
https://beeboxx.blogspot.com/
https://beeboxx.blogspot.com/
https://beeboxx.blogspot.com/2015/08/apples-imessage-encryption-promises-may.html
true
4610475561207823747
UTF-8
Loaded All Posts Not found any posts VIEW ALL Readmore Reply Cancel reply Delete By Home PAGES POSTS View All RECOMMENDED FOR YOU LABEL ARCHIVE SEARCH ALL POSTS Not found any post match with your request Back Home Sunday Monday Tuesday Wednesday Thursday Friday Saturday Sun Mon Tue Wed Thu Fri Sat January February March April May June July August September October November December Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec just now 1 minute ago $$1$$ minutes ago 1 hour ago $$1$$ hours ago Yesterday $$1$$ days ago $$1$$ weeks ago more than 5 weeks ago Followers Follow THIS CONTENT IS PREMIUM Please share to unlock Copy All Code Select All Code All codes were copied to your clipboard Can not copy the codes / texts, please press [CTRL]+[C] (or CMD+C with Mac) to copy