Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Just a wild and crazy guess here...but if you take this tweet thread: https://twitter.com/adrianzenz/status/1145778611242319874 in context with the following hint:

"To be targeted might mean simply being born in a certain geographic region or being part of a certain ethnic group." (https://googleprojectzero.blogspot.com/2019/08/a-very-deep-d...)

...and then if you think about what's been going on in Hong Kong recently -- search iPhone and Hong Kong in both languages and you'll find some interesting posts on Twitter that appear not to want folks to know that:

"All that users can do is be conscious of the fact that mass exploitation still exists and behave accordingly; treating their mobile devices as both integral to their modern lives, yet also as devices which when compromised, can upload their every action into a database to potentially be used against them." (https://googleprojectzero.blogspot.com/2019/08/a-very-deep-d...)

...it kind of reveals itself.



What’s the relation to the first link though? That looks like an old twitter thread.


Did you look at the screenshot and read the translation? Appears to be a real-time tracking database of Uighurs...


In the first link? Yes, but what does the first link have to do with this attack? I see nothing that ties the two together. Am I missing something in the Google link that relates to that? The list of target services doesn’t even look similar.


“The command-and-control server can also query for a list of all 3rd party apps and request uploads of their container directories.”




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: