this post was submitted on 06 Nov 2023
215 points (92.8% liked)
Technology
59685 readers
2941 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related content.
- Be excellent to each another!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, to ask if your bot can be added please contact us.
- Check for duplicates before posting, duplicates may be removed
Approved Bots
founded 1 year ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
This is another example of very specific situations in INFOSEC. It's unlikely that you will become a victim to this key logger attack. And of course the title suggests that Apple's Find My network is compromised. This is not the case. But it is being utilized, in this instance, against Apple's rules and regulations.
The real hack here is that the victim had their keyboard modified or was given a compromised keyboard that broadcasts Bluetooth signals, that are then picked up on the Find My network. It could be transmitted via Cellular, Bluetooth, WiFi, audible sound, monitoring energy differentials, etc. It's the HMI hardware that's been compromised. Apple will likely develop updates to their Find My network, but the compromised keyboard could then be modified to use some other service or broadcast methods. Apple fixing the Find My network to recognize bad actors will not prevent this style of attack.
I think the main concern is how easy and ubiquitous it is, while also being pretty hard to detect. No other transmission method lends itself so perfectly to this kind of attack.
And I wouldn't say it's that unlikely. Every publicly accessible keyboard could be targeted, like in schools or universities. Buy an identical model to those that are used in the computer room, modify it, switch it out, and wait for people to enter their emails and passwords.
Not with Apple's network anymore apparently. But if you read the original PoC from 2021 they said Amazon's Echo devices have the same potential.
Ultimately, even the researchers have indicated the slow and unreliable nature of the attack (which now no longer works).
I just watched a video by a German tech magazine the other day, with Fabian Bräunlein (the original researcher) demonstrating a keylogger using the Find My network. It's only 3 days old, so I don't think the main problem is fixed at all.