NSA's Tips to Keep Your Phone from Tracking You
wired.com
wired.com
> Turn on Airplane Mode
> Decline location-sharing or at the very least restrict it to only when the app is open
These seem obvious but I guess need repeating. The last one is only an option for Android 10+ users which apparently only account for ~25% of Android devices out there. So 75% of Android users can't even do this yet. Not sure about iOS but I know they've had it longer at least.
> Reset you phone’s Advertising ID
This one I personally was not aware of
> Don't use iOS and Android's FindMy or FindMyDevice features
What happens if I lose my phone though? I wonder what the numbers are on people who have successfully retrieved their phone using these compared to people who can see where their phones are but never got it back.
> consider using a trusted VPN provider.
I clicked on their link and just skipped straight to their "Advanced User" recommendation, because this is HN, and they recommend Mullvad. Curious to see what HN users think of that one.
https://gs.statcounter.com/os-version-market-share/android
https://source.android.com/devices/tech/config/tristate-perm...
There is no signup information when creating an account, and one of the payment options is "cash in an envelope". Even if they're lying and do keep logs, it's as disconnected from your identity as I think is possible (assuming you do use that payment option instead of the others).
It's also what Mozilla VPN runs on.
I was intrigued by this line in your post, and it turns out it's true. I'm not all that paranoid, but I kinda like that idea.
Also, right now there's a caveat about it:
"Cash payments are delayed due to corona
6 May 2020 NEWS
If sending cash is your preferred method for topping up your Mullvad VPN account, please plan ahead. The coronavirus is causing delays in postal delivery.
To avoid being stuck with no time on your account, send your payment well in advance. Mail coming from the US is taking four weeks longer than usual, and even post from countries in southern Europe and England are delayed."
Can anyone explain what the practical difference is between using Mozilla VPN and using Mullvad directly?
They're the best VPN provider, hands down. They offer the best privacy protections of any provider at a very reasonable price, and the service itself is excellent.
Then just add your contacts and other files from your phone to a monthly/weekly (depending on your personal preference) backup schedule.
I have all of my home data set to backup automatically monthly. I just make sure my phone is plugged into my desktop the last Saturday of the month. Problem solved.
I learnt a lot from that dude and have been using mullvad for years since since it's the only VPN provider I've ever personally met. Oh yeah, decent speeds etc as well :P
It feels awesome to be validated.
Years ago now, living in the US Virgin Islands, while drunk, I left the Ritz (great beach and bar) and requested that they get me a cab to my usual local bar that was stumbling distance to home. Upon arrival I realized I didn’t have my phone.
I’d left my laptop at the office, so I ran back there and used Find My iPhone. It was moving, so I assumed it was in the cab I’d been in. I locked it, added a display message, and used the office phone to call the Ritz and tell them... they called the cab company, and within 10 minutes the phone was back at the Ritz.
I’m positive that this was only because I’d used the cab company the Ritz contracts with and their drivers are terrified of losing a lucrative job, but it was a successful recovery in a territory not known for honesty.
Had I not had FMI enabled I probably wouldn’t have connected the dots, assumed I’d lost it on the beach, and lost my phone forever. As it was, I got my phone back and it only cost me an extra cab ride. I’ll never turn off FMI again, though.
Completely anecdotal, but my point is the system can actually work. At the very least I can lock the device and wipe its data.
If you are truly security paranoid, you write it off and get a new one. It will hopefully be secure enough that whoever got it won't be able to access it because they lack the passcodes, biometrics and bluetooth 2fa tokens you use to unlock it. If the cost of this scares you, perhaps the NSA/Mossad/whatever should not be in your threat model.
When my wife got her iPhone stolen in Rome, we were able to use the Find My Friends feature to watch it move across the country, and eventually end up in Tunisia. This was before you could remotely wipe an iPhone, so there was nothing I could do other than send angry text messages to whomever stole it.
There is no way to turn off iBeacon tracking on iPhones.
At this point you need to walk around with a faraday cage evidence bag to not have your phone stop fucking transmitting & receiving radio waves.
Wondering what kind of sensory data they meant here, I had a look at the citation[0]. If anyone else is curious:
>We describe PinMe, a novel user-location mechanism that exploits non-sensory/sensory data stored on the smartphone, e.g., the environment’s air pressure and device’s timezone, along with publicly-available auxiliary information, e.g., elevation maps, to estimate the user’s location when all location services, e.g., GPS, are turned off. Unlike previously- proposed attacks, PinMe neither requires any prior knowledge about the user nor a training dataset on specific routes. We demonstrate that PinMe can accurately estimate the user’s location during four activities (walking, traveling on a train, driving, and traveling on a plane).
Wonder if they can track someone who is "lost in remote area without hope of being rescued."
Maybe if the phone is set on Survival Mode?
Almost like a video stream. Once in a while a keyframe and a stream of changes in between.
With the cheap IMU in phones, you very quickly reach the 100+ meter margin. That is why you usually combine it with other sources of localization to keep the margin down. If no other sources are available, the localization provided by the IMU become next to useless.
Ditto the proximity sensor: it's just a photocell and a simple room light could comprise a beacon. Flashing over, say 30hz would be invisible to us.
https://setup.smartlink.pitneybowes.com/advancedTroubleshoot...
It doesn't matter. We've invested so heavily in offense that we can tell people how to defend themselves and we'll still own them.
Here's one of my favorite talks,
NSA TAO Chief on Disrupting Nation State Hackers
https://www.youtube.com/watch?v=bDJb8WOJYdA
This is the NSA Chief of Tailored Access Operations telling people how to defend themselves against the NSA (and other similar capabilities organizations), and it's all really valuable. None of it is fancy ML 0day detection or whatever, it's just about understanding your network better than an attacker can.
I’m sure NSA has an important role in managing the cyber risks of US citizens, in addition to the offensive ops.
https://www.nsa.gov/what-we-do/research/selinux/
> The NSA, the original primary developer of SELinux, released the first version to the open source development community under the GNU GPL on December 22, 2000.
Edit:
Found a source on the parent's claim.
https://linux.slashdot.org/story/02/08/19/1750212/did-ms-lob...
https://www.nytimes.com/2001/09/07/business/us-vs-microsoft-...
> Last year, Microsoft even hired Ralph Reed, the political consultant who was at the time a senior adviser to the Bush campaign. His job was to urge Mr. Bush to take a softer approach toward the company if elected president.
GWB dropped the antitrust case again Microsoft after elected to be the President of USA
> InfoWorld | OCT 27, 2004 3:00 PM PST
https://www.infoworld.com/article/2679783/ballmer--windows-t...
And SE for Android was first proposed by a NSA employee in 2011, well after Microsoft's whinging https://selinuxproject.org/~jmorris/lss2011_slides/caseforse...
But let's be real, if you truly can evade them, you've probably already received a job offer.
Defense will always be harder than offense. The best you can do is make it extremely EXPENSIVE for an attacker. But can you outspend the NSA on your defense? (the answer is NO)
Not even Snowden thought it wise to reveal secrets related to ongoing operations. That would have been TOO expensive for him. We would not have known his name if he had done that.
Suffice to say, these attackers will already have ensured they maintain persistence even with closing their initial entry points.
Likewise, the NSA has many avenues to get into a device, or (more practically, when it concerns most of the public instead of specific users and devices they need access too) they use mechanisms that aren't affected.
As they've proven, they have a huge catalog of malware and similar, but that's for actual targets. People they already believe to be threats or targets, that they need to directly attack.
But for the majority of the public? The information will come from the companies themselves, not the user devices. Why would you spend thousands or millions on developing and maintaining an application you can put on everyone's devices, and may be removed, or even just disabled due to an upgrade (until you can patch it) when you can find and obtain data from a company that already has common apps on a device, across the public, and the public not only knows they are there, they WANT the app and will take steps to complain if access is rejected? And the companies will gather as much as they legally can (and sometimes more), put it into databases, sort it, categorize it, etc?
Why would you duplicate ALL of that, when you can just take the finished product, the sorted data that's stored, either legally and knowingly, or unknowingly from a company?
And you ensure that while you can maintain that access, either to the company or the device, you direct the users and company on how to protect themselves from random attacks, or other entities that want to target the users, often with automated software that hits the "low hanging fruit".
It's also surprisingly good for your mental state.
I broke my phone earlier this year, and when leaving the house to go shopping or whatever, it was absolutely liberating not to feel chained to a device. It was like a weight off my head and shoulders.
Now I'm back to carrying a phone because my wife requires it.
"Most likely?" More than Facebook or Google or some other human profiling company?
Since then I really enjoy life again without any notifications, it's just wonderful.
"Does disabling Wi-Fi prevent my Android phone from sending Wi-Fi frames?"
About halfway through my walk I looked at my phone screen and noticed that my phone was still showing cellular bars. It wouldn't communicate and the LTE symbol was gone, but the signal bars remained. Made me wonder what turning cellular off actually meant, was it still connected but data was off? Are the bars just a client side thing and no comms were going out? No idea.
There is no label, it just looks like a cellular icon. When you press it it turns grey, indicating off like this: https://i.redd.it/76b0j4im36f41.jpg
Very intuitive! /s Glad I wasn't doing it for a more serious reason (in which case I would have just left the phone at home, but still..).
edit: comment chain got too deep to reply to. But I think the fact that I failed to see a difference is clear evidence that the airplane mode icon is NOT an adequate indicator.
Airplane mode means turn off all wireless, everyone knows that much. But that isn't what I wanted, I still wanted bluetooth with nothing else and as such turned off the unwanted radios individually.
Airplane mode intuitively to me means just a quicker/easier way to toggle them in one swoop, not a completely different action that you can't accomplish with the individual buttons.
AFAIK both android and ios disables wifi/bluetooth when you turn on airplane mode, but you can turn them back on without exiting airplane mode.
>override the user and activate the mobile radio under exceptional conditions
Not sure about this one, but to my knowledge there isn't any.
Airplane Mode + WiFi back on stops the battery loss from the phone hunting for a tower all day.
Airplane mode will disable all radios but will allow the user to enable WiFi and BT. Some older Androids will keep the Wifi and BT on if you're connected to something though :(
There have been a number of cases where someone was a suspect in a crime because their phone was in the area. I'm thinking it might be better to keep the data service shut off all the time and just use wi-fi calling when I get to where I'm going. Phones don't work on the subway and are a distraction when driving, so maybe solve multiple problems that way.
If you're asking about ability then yes: a grid-connected tower will both be able to produce stronger radio waves and last much longer (indefinitely versus some battery), but that's not legal, not what they do in practice, and wouldn't make sense: if the tower is so much stronger, then only your phone would be able to receive the tower. The tower wouldn't hear your phone's reply if the phone were significantly weaker. Since both generally want the maximum possible range, they'll transmit as much as regulations allow. A tower might have bigger and more sensitive antennae, but not so much that the transmissions are significantly different in power output. Both are safe to be nearby, but in case of long phone calls with the cell phone at your literal ear, your brain does heat up a measurable amount (if you have the right equipment), or so I've heard.
To confirm this "both sides need to be roughly equally strong to hear each other" story, do a 30 seconds search online, or for a practical example you could look at the dBm (decibel-milliwatt) values your WiFi devices' output (the access point versus the stations; it's not the same as cellular but in the case of WiFi both are under your control so you might be able to observe both values).
I'm not sure if it's still the majority on average when your handset is idling, but I suspect it still is on the whole. I also suspect when walking around a dense urban centre that the handsets of other people nearby (in combination) also provide more RF than the base station.
In locations where there is a poorer signal, personal RF exposure is likely to be higher, as the handset transmits at a higher power level to be "heard" by the base station far away.
Counter-intuitively, this means where people successfully campaign to remove a mobile mast in order to reduce RF exposure, people's RF exposure can actually increase in a halo region around where the mast was, though decrease closer to where the mast was.
For people who really want to reduce ambient mobile RF exposure, they need to campaign for all people in their neighbourhood to turn off their handsets (and for the remaining people who don't to not use all the freed up bandwidth). That's a tough thing to achieve though.
EDIT> Inverse square law. Presumably those other emitters aren't right by your head.