2011年4月22日星期五

The iPhone tracking fiasco and what you can do about it

By Thomas Ricker posted Apr 21 2011 11: 46 AM now you have no doubt have a certain iOS database file called consolidated.db listen. It made a splash yesterday, when a couple of researchers, Alasdair Allan and Pete Warden, of was O'Reilly Media announced the duo had "iPhone tracking software" "discovered hidden on the phones." Here's the rub: they not discover, at least not initially. The file is known, that large amounts of geolocation keep data from WiFi access points and cell towers, with forensic experts have been searching since the retail launch of the iPhone 4 back a physical book on the subject back released 2010. hell Sean Morrissey and Alex Levinson in June in the December 2010, the entire excerpts of which can be found easily on Google. So either the team of O'Reilly is disingenuous with its claims is, or is it lazy.

Regardless, the story laid dormant for months, until was the Reilly-team was able to visualize the data in a very personal way. Running of the team iPhoneTracker open-source software which detailed our worldly travel locations displayed is absolutely fascinating. Presentation of the data file in the hands of the stalker, is downright creepy misdirected detective, or a jealous lover.

But as it is possible that a problem like this has the entire tech avoided community for more than a year? And more importantly, you can do what about it? Read on to find out.

Update: A timely discovery of Vishal--here is a note from Apple General Counsel Bruce Sewell [PDF] to Congressman Edward Markey and Joe Barton, a detailed look at your privacy policy, probably on this issue.

Sure, the visualization is powerful, but is the emotional energy that surrounds all questions related to Apple. Throw in big brother privacy concerns and have just unleashed the perfect storm in the blogosphere Echo Chamber. But we heard a look nary until yesterday outside the forensic circles spent. Ryan Block, lover of fine coffee and Engadget Editor Emeritus, postulates an answer to our question about at GDGT, theorize that perhaps the forensic community, in contrast to the security environment that is so insular, lack the incentive to the public with such privacy concerns. Finally criminals changed their behavior, if they know what track you are. But who is the so-called "criminals" in this case?

For this we have to dig in Apple's privacy policy, you accept something every time, when you click blind away Apple's terms and conditions. The policy was last updated on 21 June 2010-on the same day that Apple iOS 4 released. Guess what? It talks a lot about the collection and use non-personally identifiable information, including location data. Here are a few paragraphs of choice:

Collect we ? non-personal information data in a form that allows a direct connection with a specific person. We collect, use, transfer and non-personal information for any purpose.
Apple cited some examples:
We may collect information such as such as profession, language, zip code, area code, unique device identifier, location, and time zone, which used an Apple product, so that we better understand customer behavior and improve our products, services, and advertising.
The company later refers specifically to location services:
, Location-based services in Apple products, Apple and our partners and licensees may collect, use and sharing of accurate location data, including the real-time geographic location of your Apple computer or device. This location data is collected anonymously on a form that personally identifies you not and is from Apple and our partners and used to offer licensees and improving location based products and services. For example, we may share geographical location with application providers, if you their location services. Subscribe to the
problem is, the position, the data are very personally and not anonymous, because directly on your phone-the most personal device, we is even stored. The consolidated.db is also replicated (clear by default) on any PC or Mac, sync your iPhone with and then additional backup devices you can each (Windows Home Server, time capsule, etc.).

But what is actually trapped by the consolidated.db file? Is the exact location of the device really, i. e. You? No, really, it is not. According to "iOS forensic analysis for iPad, iPhone and iPod touch", is written by Sean Morrissey and Alex Levinson, collected data of the geolocation of the cell towers where the Medion device communicates with. It is an approximation of your site. However, the researchers go on to say that, "This data, along with corresponding data from airlines, a phone to a specific position on a particular date and time link can." Levinson concludes however that the data is never transmitted to Apple, and used exclusively by integrated iOS apps such as cards and camera.

Apple is not alone in this behavior. Only last month, ran the New York Times a story titled, "it is tracking your every move and you may not even know." In this case however "it" refers not to Apple, it refers to the cell phone companies that track your location, have to provide the best possible service. The meant 35,000 longitude and latitude coordinates over a period of six months for a very unhappy Deutsche Telekom subscribers who had to go to court in Germany to find out, what did collected his provider. You see, such as the United States, German air carriers not auskunftspflichtig the data that they collect.

Don't get us wrong, we are Apple not off the hook here within - we want to know also why the company collect and so much of our maintain location data for so long must. And why is it so easily accessible? But we, give as a consumer, better attention we want to shout reserved, foul the right.

This issue really concerns you then there are a few things you can do now, control of your privacy. First, you can go into iTunes and encrypt your iPhone and iPad backup. Secondly, you can delete the consolidated.db files to your different disks. Finally, if, can the free Untrackerd app, continuously the consolidated.db file install it jailbroken. That should deal with you while we, Apple wait to react.

web coverage


View the original article here

没有评论:

发表评论