News:

Willkommen im Notebookcheck.com Forum! Hier können sie über alle unsere Artikel und allgemein über Notebook relevante Dinge disuktieren. Viel Spass!

Main Menu

Post reply

Other options
Verification:
Please leave this box empty:

Shortcuts: ALT+S post or ALT+P preview

Topic summary

Posted by Neenyah
 - April 13, 2024, 00:01:27
Quote from: NikoB on April 12, 2024, 21:57:52I know for sure that normal people like me, because I've been on the forums for over 25 years.
Like make fun of you, yeah.
Posted by NikoB
 - April 12, 2024, 21:57:52
You see, stupid troll, I know for sure that normal people like me, because I've been on the forums for over 25 years. I emphasize normal. And I'm glad to help them. I don't care much about the rest, like you - you and others like you are like annoying insects, absolutely useless from the point of view of helping in the development of civilization.

But unfortunately we have to endure you like mosquitoes. Although mosquitoes at least provide benefits to the ecosystem as part of the food chain...
Posted by Neenyah
 - April 12, 2024, 16:26:10
See? I didn't mention relatives anywhere (doesn't matter if I have them or not), I said "people":

Quote from: Neenyah on April 11, 2024, 21:35:41Plus I have people who would miss me, unlike you.

Just for you, retarded and illiterate as you are, to read that word as relatives.

Quote from: NikoB on April 12, 2024, 15:50:04I highly doubt that you have relatives who will miss you, troll.

Meaning that it's actually you projecting and you are the one without them. But then again it's not really surprising given the fact that no one likes you so...
Posted by NikoB
 - April 12, 2024, 15:50:04
I highly doubt that you have relatives who will miss you, troll.
Posted by Neenyah
 - April 11, 2024, 21:35:41
Quote from: NikoB on April 11, 2024, 21:11:12If you had a conscience, you would have committed suicide long ago.
Nah, if I did who would show you over and over again how completely retarded you are? 🤨 Plus I have people who would miss me, unlike you.
Posted by NikoB
 - April 11, 2024, 21:11:12
If you had a conscience, you would have committed suicide long ago.
Posted by Neenyah
 - April 11, 2024, 14:01:09
Quote from: NikoB on April 11, 2024, 13:03:00Neenyah, a slippery clown who prefers to avoid key topics and not respond to the point. =)
End your pathetic life for once, ok?
Posted by NikoB
 - April 11, 2024, 13:03:00
Neenyah, a slippery clown who prefers to avoid key topics and not respond to the point. =)
Posted by Blaster
 - April 11, 2024, 10:03:11
WOW another reason to keep buying aPPLE garbage prodcuts for the Isheep
Posted by Neenyah
 - April 10, 2024, 20:37:00
Quote from: NikoB on April 10, 2024, 20:21:21
Quote from: Neenyah on April 10, 2024, 15:41:43Whitelisted devices (to make the update possible) which are whitelisted while being physically present inside of official Apple stores. If they get stolen you can bet that Apple is going to immediately blacklist them (and change potentially leaked keys). And who is going to steal the device; Best Buy so they can try to hack the device just to sell updated iPhones in their stores?
I had a good laugh. If there is a key, what the hell are whitelists? The phone itself checks the correctness of the key; it does not know about any lists.
And yet again you demonstrate the lack of ability to read, to think and to understand, but at the same time you are an expert in pulling particular sentence or two out of context and then doing your own random rant about it.

Whitelisted devices which run Presto, you clown, that's what I'm talking about and that's been clear to everyone here but you (shocking). Not iPhones.

Quote from: NikoB on April 10, 2024, 20:21:21If there is a non-updated phone in the warehouse, it does not know anything about any listings.
See? Your brain is simply permanently turned off, there is no other explanation, lol.
Posted by NikoB
 - April 10, 2024, 20:21:21
Quote from: Neenyah on April 10, 2024, 15:41:43Whitelisted devices (to make the update possible) which are whitelisted while being physically present inside of official Apple stores. If they get stolen you can bet that Apple is going to immediately blacklist them (and change potentially leaked keys). And who is going to steal the device; Best Buy so they can try to hack the device just to sell updated iPhones in their stores?
I had a good laugh. If there is a key, what the hell are whitelists? The phone itself checks the correctness of the key; it does not know about any lists. If the key is considered current on it (and it cannot be otherwise), it will allow an update to the wrong software signed with the stolen key. The phone doesn't know that the key was stolen. )))

This is exactly how a couple of years ago all the keys for signing BIOS on MSI laptops of dozens of series were leaked. If the owner has not updated the BIOS, he can easily correct the BIOS code and sign his version with this key. The BIOS chip will happily accept this code, without knowing anything that the keys were stolen from MSI.

If there is a non-updated phone in the warehouse, it does not know anything about any listings.

Now at the customs of even "free" and "democratic" countries, including the United States, there are totalitarian requirements to present a smartphone, as soon as it falls into the hands of customs officers with such a system, they can implant you with anything, having access keys. Breaking an Apple server, which could lead to a massive scandal? For what? When now you can individually do whatever you want with the phone of any victim, as soon as it fell into the hands of government agents for a while...
Posted by Bizarro_NikoB
 - April 10, 2024, 17:30:58
Quote from: Neenyah on April 10, 2024, 16:49:01Yes Bizarro, I agree with your whole comment so I won't quote it whole to keep clarity here, but I'll quote just this part:
Quote from: Bizarro_NikoB on April 10, 2024, 16:43:51If the technology exists and has been patented, then the govt has access to that patent.
And that's exactly what I meant before with "if government wants to spy or whatever there are way easier methods to do that than to wait for Apple to add this to their official stores and then sneak in and hack the system".

So this, as it is now, is basically nothing different than it was before (because hacking servers where updates are "laying" is about equally easy as this here if there is involved someone with plenty of resource power behind such as government). It's still on people to judge for themselves how much do they trust Apple to keep the system safe (as they claim it to be).

Ah, ok. Yeah we're on the same page then. I agree.
Posted by Neenyah
 - April 10, 2024, 16:55:47
Quote from: RobertJasiek on April 10, 2024, 16:48:56For a stronger implementation, the whitelisting certificates (and not just the device IDs) must be stored in the hardware and be safe against brute force. In that case, leaking from within Apple might be required. If managed properly, this would be hard. If managed poorly, it would only be a matter of time until desaster.

Correct, I agree.

Device A (the device where iPhones are stored and where they get updated while being sealed in the package) is whitelisted. iPhones have their IMEI and other serial numbers, codes and such, probably a lot of different thing that only Apple knows in detail.

Device B is also whitelisted. Device B gets compromised somehow (stolen, hacked into, you name it...). Apple can automatically simply block all iPhones which were ever stored inside of it, just like they can block stolen iPhones and basically render them completely unusable (brick them effectively), by those mentioned numbers (IMEI & co.).

And given the fact that Apple loves money more than anything it's safe to assume that this move was done after making sure that the system is as safe as possible because it's easier to invest a loooot of money into securing their own system than a looooooooot more money to replace all potentially tampered devices and most likely get huge amounts of lawsuits.
Posted by Neenyah
 - April 10, 2024, 16:49:01
Yes Bizarro, I agree with your whole comment so I won't quote it whole to keep clarity here, but I'll quote just this part:
Quote from: Bizarro_NikoB on April 10, 2024, 16:43:51If the technology exists and has been patented, then the govt has access to that patent.
And that's exactly what I meant before with "if government wants to spy or whatever there are way easier methods to do that than to wait for Apple to add this to their official stores and then sneak in and hack the system".

So this, as it is now, is basically nothing different than it was before (because hacking servers where updates are "laying" is about equally easy as this here if there is involved someone with plenty of resource power behind such as government). It's still on people to judge for themselves how much do they trust Apple to keep the system safe (as they claim it to be).
Posted by RobertJasiek
 - April 10, 2024, 16:48:56
Quote from: Neenyah on April 10, 2024, 15:41:43Whitelisted devices
[...] Check the video

While the video explains nothing, whitelisting can be a good concept. However, whitelisting can be implemented well or badly. Barcodes have been mentioned, but if that should be all for whitelisting, it is a very weak implementation because barcodes can be abused easily even if their source files do not leak. For a stronger implementation, the whitelisting certificates (and not just the device IDs) must be stored in the hardware and be safe against brute force. In that case, leaking from within Apple might be required. If managed properly, this would be hard. If managed poorly, it would only be a matter of time until desaster.