Hacker News new | past | comments | ask | show | jobs | submit login

The NSO group used links and attachments in iMessage. These protections would mitigate those attacks.



They used an "invisible 0-click exploit"; where you don't even actually receive a text message or need to click any links or attachments. https://citizenlab.ca/2020/12/the-great-ipwn-journalists-hac... Would Lockdown Mode prevent those?

And what about the SMS equivalent? https://www.firstpoint-mg.com/blog/step-by-step-silent-sms-a... Apparently the German authorities sent 440,000 "silent SMSs" for tracking purposes in 2010: https://www.heise.de/newsticker/meldung/Zoll-BKA-und-Verfass...


> They used an "invisible 0-click exploit"; where you don't even actually receive a text message or need to click any links or attachments.

AFAIK, yes, because Lockdown Mode disables any non-audited plugin code from running in response to the receipt of an iMessage message (which is what "disable formats other than images, link previews" et al really means under the covers.)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: