The Rootkit Of All Evil – CIQ
xda-developers.com
xda-developers.com
I've been running some sort of dodgy leaked nightly build from samsung that doesn't have any carrier shite on it since I got the thing, so maybe it hasn't been there all along. Either way it's high time for some new firmware.
As others have said here, you can remove this stuff all you want, all you're doing is shutting off the simplistic application layer backdoors. There is absolutely nothing you can do about the backdoors built into the baseband firmware itself, which is what law enforcement agencies use.
Well, absolutely nothing except flashing your own open source baseband firmware from the fine folks at the OsmocomBB project. Unfortunately that project only targets a very small set of simple featurephones, which won't do much to excite HN types. What may whet your appetite however, is the possibility to inject arbitrary packets straight into the GSM network! The possibilites for fun, learning, and prison time are endless.
http://www.youtube.com/watch?v=_0LCgxe24Po [27C3: Running your own GSM stack on a phone]
Also, is this something that is US-only?
Though if you're paranoid it's probably best to buy a simlock-free phone instead of choose from the carrier. It can even be cheaper overall if you take a sim-only carrier subscription.
Is the data sent by CIQ charged to the user?
Regardless of the answers, this is bad, bad stuff. Given where we are with something as basic as SOPA, I doubt we'll ever see anything done to protect consumers against this type of privacy invasion.
http://en.wikipedia.org/wiki/Baseband_processor
There is strong indications this is used to essentially pre-empt/backdoor the main OS for monitoring and surveylance purposes, and many models suffer from serious security weaknesses.
http://www.zdnet.com/news/fbi-taps-cell-phone-mic-as-eavesdr...
http://en.wikipedia.org/wiki/Covert_listening_device#Remotel...
http://threatpost.com/en_us/blogs/mobile-attacks-reign-black...
Isn't this similar to your syslog (on linux atleast)?
There is no indication that this logging is being used for anything but debugging purposes in case of failure or crash.
This data is collected and sent off-device without your consent or knowledge.
Also syslog collects information on events, not specific keystrokes or commands issued and so on.