../../MikeMacBook.jpg

Exploiting vulnerabilities in Cellebrite UFED and Physical Analyzer from an app's perspective

Looking at both UFED and Physical Analyzer, though, we were surprised to find that very little care seems to have been given to Cellebrite’s own software security. Industry-standard exploit mitigation defenses are missing, and many opportunities for exploitation are present. And For example, by including a specially formatted but otherwise innocuous file in an app on a device that is then scanned by Cellebrite, it’s possible to execute code that modifies not just the Cellebrite report being created in that scan, but also all previous and future generated Cellebrite reports from all previously scanned devices and all future scanned devices in any arbitrary way (inserting or removing text, email, photos, contacts, files, or any other data), with no detectable timestamp changes or checksum failures.

Got my first Covid vaccine shot, so far so good.

Now, time to go subscribe to Office365.

(original)

Why doesn’t Google have a iMessage competitor on android? It doesn’t seem like it would be that difficult.

(original)

RT @BogochIsaac: The AstraZeneca #COVID19 vaccine will now be available to those 40 years & older in Ontario, starting April 20 (previously…

(original)

RT @EFF: Don’t be fooled: Google’s latest announcement on third-party cookies doesn’t mean it will stop tracking you. We’ve built a new sit…

(original)

Verizon, AT&T, and T-Mobile kill their cross-carrier RCS messaging plans — Ars Technica

The Rich Communication Services (RCS) rollout continues to be a hopeless disaster. A year and a half ago, the cellular carriers created the “Cross-Carrier Messaging Initiative (CCMI),” a joint venture between AT&T, Sprint, T-Mobile, and Verizon that would roll out enhanced messaging to the masses in 2020. Now, Light Reading is reporting that initiative is dead, meaning that the carriers have accomplished basically nothing on the RCS front in the past 18 months.

RT @EFF: A switch has silently been flipped in millions of instances of Google Chrome: those browsers will begin sorting their users into g…

(original)

RT @iamdavidmiller: Daily reminder that both of these companies were granted monopolies by Canada that made their founders very rich indeed…

(original)

RT @DuckDuckGo: After months of stalling, Google finally revealed how much personal data they collect in Chrome and the Google app. No wond…

(original)

I wish I could manage my iCloud mail rules through mail on my iPad or iPhone (or even Mac).

(original)

RT @WhySharksMatter: I’m just gonna keep suggesting this until it happens: a nature/wildlife show set in the Star Wars universe. No battles…

(original)